Defensive CYBER Tool Development

Abstract

The Defensive Cyber Tool Development (DCTD) group of programs designs, builds, and tests the advanced Cyber tools and infrastructure that enables active defense of the network from Home Station Mission Command Centers (HSMCC) to the deployed tactical Command Post (CP). This capabilities will enable integration of the Cyber Mission Force (CMF) with the regional and local cyber network defense elements. These tools will provide cutting edge hardware and software, integrated with existing infrastructure and tools to facilitate active Defensive Cyber Operations (DCO). Cyber Tool Development will include data analytics solutions to enable the ability to correlate and analyze the massive amount of data coming across the network and provide timely situational awareness. It will also include development, integration, and testing of Defensive Cyber Tools and infrastructure that will facilitate pushing cyber sensor data to the data analytics engine as well as support remote access to prevent or react to a cyber incident. Defensive Cyber Tool Development includes creation of developmental environments for emerging commercial tool assessment as well as Army Cyber Soldier development of tools. Additionally, this program element supports the development of a Cyber Mission Planning tool that is an application-based, scalable, secure warfighting system to support cyberspace operations mission planning and command. The Mission Planning tool helps identify Cyberspace Key Terrain (KT-C) and determines probable attack vectors; and produces a set of relevant internal defense measures, triggers, and decision points. This program element will support the start of several DCO programs beginning in FY19 and supports material solutions for the October 2016 Joint Requirements Oversight Council (JROC) approved Defensive Cyberspace Operations Information Systems Initial Capabilities Document (IS ICD). The hardware and software capabilities enable Army Cyber defense forces to protect, search and discover, maneuver and engage, and mitigate and respond to enemy cyberspace operations. DCO programs will allow near real-time employment of defensive measures that will allow friendly cyber forces to maintain advantage. These programs directly support US Cyber Command Integrated Priority List #2 Produce Advanced Cyberspace Infrastructure and #5 Defensive Forces to execute passive and active defense operations at net-speed.

Open PDF

Document Details

Document Type
R2 Budgetary Justification
Publication Date
Oct 01, 2019
Source ID
0605041A_5_2040_PB_2019
Change Summary Explanation
FY 2019 Base funding in the amount of $13.104 million was added to support ARCYBER DCO Acquisition Authority for rapid development capabilities, prototype funding for engineering, testing, and development of the Tactical DCO Infrastructure, Lightweight Analytics capability, Cyber Protection Team communicator capability, integration of Remote Management Capability, Creation of Real-time tools development environment.
Service Agency Name
Army

Entities

Organizations

  • United States Army

Tags

Communities of Interest

  • Cyber

DTIC Thesaurus Topics

  • Acquisition
  • Active Defense
  • Big Data
  • Contracts
  • Cross Domain
  • Cyber Defense Techniques
  • Cyber Protection
  • Cybersecurity
  • Cyberspace
  • Cyberspace Operations
  • Data Analysis
  • Detectors
  • Information Security
  • Information Systems
  • Intrusion Detection
  • Local Area Networks
  • Test And Evaluation

Fields of Study

  • Computer science
  • Engineering

Readers

  • Cybersecurity.
  • Enterprise Information Systems Architecture and Joint Command Capability Interoperability Support.

Technology Areas

  • Cyber

Related Documents