Information Sys Security Program
Abstract
The Information Systems Security Program (ISSP) ensures the protection of Navy and Navy hosted joint telecommunication and Information Technology (IT) systems from cyber exploitation and attack. The ISSP extends cybersecurity to ensure confidentiality, integrity, and availability of these systems and content processed, stored, or transmitted therein by performing the acquisition, modernization and sustainment of cybersecurity platforms and systems; cyberspace operations include both defensive and offensive measures, which preserve the ability to protect data, networks, net-centric capabilities, and other designated systems while projecting power by the application of force in or through cyberspace. The ISSP includes the protection of the Navy's National Security Systems (NSS). The ISSP must be rapid, predictive, adaptive, and tightly coupled to cyberspace technology. The ISSP provides cybersecurity systems and infrastructure based on mission impacts, cybersecurity threats, information criticality, vulnerabilities, and required defensive countermeasure capabilities. The ISSP focuses on efforts that address the risk management of cyberspace, which provides capabilities to protect, detect, restore and respond. The ISSP provides the Navy with the following cybersecurity elements: (1) defense of NSS, including other mission requirements (details held at a higher classification), naval weapons systems, critical naval infrastructure for Command, Control, Communications, Computers, & Intelligence (C4I) afloat and ashore networks, joint time and navigation systems, and industrial control systems, using modern cryptographic solutions and cyber security tools; (2) technologies for the Navy's Computer Network Defense (CND) service provider that accelerates the Navy's ability to prevent, constrain, and mitigate cyber attacks and critical vulnerabilities; (3) Navy Cyber Situational Awareness (NCSA) technologies that provides the operational context for cyber threat intelligence and Situational Awareness (SA), from external boundaries to tactical edge infrastructures; (4) assurance of the Navy's Cryptography (Crypto) telecommunications infrastructure and the wireless spectrum; (5) sensing cyber threats across all Navy ashore and afloat networks to expand the capabilities of monitoring, assessing, and detecting adversary activities across multiple enclaves through the collection of tools in SHARKCAGE; (6) assurance of joint-user cyberspace domains, using a Defense-In-Depth (DiD) security architecture and its alignment with the Joint Information Environment (JIE)/Joint Regional Security Stack (JRSS); (7) assurance technologies, including Key Management (KM) and Public Key Infrastructure (PKI).
Document Details
- Document Type
- R2 Budgetary Justification
- Publication Date
- Oct 01, 2024
- Source ID
- 0303140N_7_1319_PB_2024
- Change Summary Explanation
- TECHNICAL: Key Management (KM): NSA changed methodology from Spirals and Spins to Releases. The KMI program will implement an Agile Development approach that will incorporate the tenets of a Development, Security, and Operations (DevSecOps) development methodology for the continued development of KMI CI-3 capabilities implementing Releases 0 thru 7. SCHEDULE: Navy Cryptography (Crypto): - Shifted KGV-11M deliveries to Q2-Q4 FY24. Key Management (KM): - CI-3 Full Rate Production Decision (FRPD)/Fielding Decision (FD) shifted from Q1FY24 to Q2FY24 in accordance with NSA schedule. NSA reassessed the Technical Requirements Package to include CI-3 as a result of Department of Defense Chief Information Officer (DODCIO) guidance to address Tier 1 updates in CI-3, resulting in additional scheduling delays. - CI-3 Release 0 Development, Integration and Test begins Q4FY23 in accordance with NSA schedule. - CI-3 Release 1 Development, Integration and Test start shifted from Q2FY23 to Q2FY24 in accordance with NSA schedule. - CI-3 Release 2 Development, Integration and Test start shifted from Q4FY23 to Q4FY24 in accordance with NSA schedule. - CI-3 Releases 3-7 Development, Integration and Test will commence 6 months after the prior release starting in Q2FY25. - Key Management Infrastructure (KMI) Tech Refresh completion shifted from Q2FY26 to Q1FY27 in accordance with NSA schedule. FUNDING: Overall funding has a net decrease of $0.362M in subprojects. The most significant funding change is in the Computer Network Defense (CND) program for increasing Continuity of Operations (COOP) development, and Navy Cryptography (Crypto) program for increasing Crypto Modernization (CM) development efforts.
- Service Agency Name
- Navy
Entities
Organizations
- United States Navy
Related Documents
- Child Project: Communications Security R&D
- Child Accomplishment: Computer Network Defense (CND)
- Child Accomplishment: Navy Cryptography (Crypto)
- Child Accomplishment: Key Management (KM)
- Child Accomplishment: Public Key Infrastructure (PKI)
- Child Accomplishment: SHARKCAGE
- Child Accomplishment: Navy Cyber Situational Awareness (NCSA)
- Child Accomplishment: Cybersecurity Coordination
- Child Cost Item: 9d7d157b8cd498f819dab423de66bcba
- Child Cost Item: a4993b9f31378d5367fc658f49fcf8da
- Child Cost Item: 458d29c6d64daa4f0d9ea9f803317ac6
- Child Cost Item: f55442a5e8a4628b543ff07848be2260
- Child Cost Item: 592deff35b7fbe2e2cad7e43e7117564
- Child Cost Item: 3bd764f3aa63ac4eb06ec112f3331750
- Child Cost Item: 75c2c0f87fdd4b6eb0d737abd89f1453
- Child Cost Item: 3e7f0f232dec52278a69a4c1ddb7ee6d
- Child Cost Item: cd6de992efbe66f12170acd33a8277e3
- Child Cost Item: 95fd4e970e67784230a3362c2c8ac579
- Child Cost Item: 97d1680be0e68d7b2656c5f1171cd2cc
- Child Cost Item: fae9bb8730f788c365eee1d53a196aee
- Child Cost Item: f48ba58e15ac99dfde1966e8525a3de8
- Child Cost Item: d3987e66e80fa3e6b22a5c8890924ced
- Child Cost Item: 3388fa8c662149809257bee6a831cc6d
- Child Cost Item: f8a9b9d1dbd47bcf925dfede5fe6ca1f
- Child Cost Item: 40fbbca5c0f7298f3e85e85a2bb7ad01
- Child Cost Item: 27f3cc06361ffa85656a13833d160728
- Child Cost Item: 2003b6c74bcdab621d9bfa64b6e8cd9b
- Child Cost Item: 42bfecb062276b58e9352281094f1e21
- Child Cost Item: 059e27b83b6d3643f494c5ea0ff0cc9c
- Child Cost Item: df577653aa7845457dac56a055f62f9f
- Child Cost Item: a1904caba881b0c600c07682149de528
- Child Cost Item: e8576e26dc2a5b6f9fed749ac10f8f9f
- Child Cost Item: d77fccc78426d51ad66f249a308c44df
- Child Project: Information Assurance
- Child Accomplishment: Information Assurance (IA)
- Child Cost Item: 7155c693da245e5b4861e386c3c5b771