Naval Surface Warfare Center,

Similar documents
Avionics Cyber T&E Examples Testing Cyber Security Resilience to support Operations in the 3rd Offset Environment

The Perfect Storm Cyber RDT&E

UNCLASSIFIED. FY 2016 Base FY 2016 OCO

Cyber Security Industry Day PEO Submarines

UNCLASSIFIED R-1 ITEM NOMENCLATURE FY 2013 OCO

SPAWAR FLEET READINESS DIRECTORATE STRATEGIC PLAN STATEMENT A: Approved for public release, distribution is unlimited (JANUARY 2017)

JOINT MISSION ENVIRONMENT TEST CAPABILITY (JMETC)

EXHIBIT R-2, RDT&E Budget Item Justification RDT&E, N / BA-05. COST ($ in Millions) FY 2006 FY 2007 FY 2008 FY 2009 FY 2010 FY 2011 FY 2012 FY 2013

Test and Evaluation Methodology and Principles for Cybersecurity

Cybersecurity Industry Day

Integrating Usability Engineering in the Iterative Design Process of the Land Attack Combat System (LACS) Human Computer Interface (HCI)

Joint Mission Environment Test Capability (JMETC)

Integrated C4isr and Cyber Solutions

Navy Cyber Resilience

Cybersecurity Test and Evaluation at the National Cyber Range

Test Resource Management Center Directed Energy T&E Conference A Joint DEPS ITEA Event

UNCLASSIFIED R-1 ITEM NOMENCLATURE

Cybersecurity in Acquisition

Air Force Test Center

Corporate Capabilities

UNCLASSIFIED R-1 ITEM NOMENCLATURE FY 2013 OCO

Health Information Technology - Supporting Joint Readiness

UNCLASSIFIED. UNCLASSIFIED Office of Secretary Of Defense Page 1 of 8 R-1 Line #18

UNCLASSIFIED. FY 2016 Base FY 2016 OCO

UNCLASSIFIED. R-1 ITEM NOMENCLATURE PE D8W: IT Software Development Initiatives. FY 2011 Total Estimate. FY 2011 OCO Estimate

3.5 System Design Documentation and Technical Data Support

Integrating Usability Engineering in the Iterative Design Process of the Land Attack Combat System (LACS) Human Computer Interface (HCI)

Defense Engineering Excellence

Marine Corps Tactical System Support Activity

BAE Systems Customer Solutions Operating Group

UNCLASSIFIED FY 2016 OCO. FY 2016 Base

UNCLASSIFIED. FY 2016 Base FY 2016 OCO

Test & Evaluation/Science & Technology (T&E/S&T) Cyberspace Test Technology (CTT) Project Overview. 2nd Annual ITEA Cyber Security Workshop

Cybersecurity and Program Protection

NDIA SE Conference 2016 System Security Engineering Track Session Kickoff Holly Dunlap NDIA SSE Committee Chair Holly.

Enterprise Services & Unified Capabilities Development & Delivery

Introducing Cyber Resiliency Concerns Into Engineering Education

Engineered Resilient Systems Advanced Analytics and Modeling in Support of Acquisition

Network Working Group Request for Comments: 1679 Category: Informational K. O Donoghue NSWC-DD August 1994

Radiance Capabilities Overview Concepts to Capabilities

Information Warfare Industry Day

Overview of Infrastructure for Cyber, Interoperability, and Distributed Test

UNCLASSIFIED FY 2016 OCO. FY 2016 Base

UNCLASSIFIED UNCLASSIFIED

UNCLASSIFIED R-1 ITEM NOMENCLATURE FY 2013 OCO

PMW 790 Shore And Expeditionary Integration Program Office NDIA San Diego Fall Industry Forum

UNCLASSIFIED. FY 2016 Base FY 2016 OCO

UNCLASSIFIED. R-1 ITEM NOMENCLATURE PE N: Tactical Data Links

Dr. Steven J. Hutchison Principal Deputy Developmental Test and Evaluation

Air Force Test Center

Mission Aware Cybersecurity

DoD Strategy for Cyber Resilient Weapon Systems

Your Challenge. Our Priority.

Innovate Integrate Standardize Improving the C&A Process to Deliver Today s Technology Tomorrow

Implementing a Modular Open Systems Approach (MOSA) to Achieve Acquisition Agility in Defense Acquisition Programs

Net-Centric Enterprise

UNCLASSIFIED. R-1 Program Element (Number/Name) PE D8Z / Software Engineering Institute (SEI) Applied Research. Prior Years FY 2013 FY 2014

UNCLASSIFIED FY 2017 OCO. FY 2017 Base

Assembled Replacement Integrated Circuits (ARICs)

UNCLASSIFIED R-1 ITEM NOMENCLATURE. FY 2014 FY 2014 OCO ## Total FY 2015 FY 2016 FY 2017 FY 2018

Coalition Interoperability Ontology:

Proposed Capability-Based Reference Architecture for Real-Time Network Defense

UNCLASSIFIED R-1 ITEM NOMENCLATURE FY 2013 OCO

INFORMATION ASSURANCE DIRECTORATE

AMRDEC CYBER Capabilities

Joint Federated Assurance Center (JFAC): 2018 Update. What Is the JFAC?

Headquarters U.S. Air Force. NDIA Division Planning Meeting AF Recommended Initiatives for CY2017

Update. HFIA Conference 3 February Page 1 HFIA 16 Jan 03 (JLM)

Department of Defense Emerging Needs for Standardization

Department of Defense Fiscal Year (FY) 2014 IT President's Budget Request Defense Advanced Research Projects Agency Overview

CORPORATE OPERATIONS DEPARTMENT (CODE 10) BRIEF INDUSTRY DAY

Space and Naval Warfare Systems Center Atlantic Information Warfare Research Project (IWRP)

Space Cyber: An Aerospace Perspective

Space and Naval Warfare Systems Center Atlantic

Securing the End Node in a Cloud World

Department of Defense Fiscal Year (FY) 2014 IT President's Budget Request Defense Media Activity Overview

Modular Open Systems Approach (MOSA) Panel on Standards

UNCLASSIFIED. R-1 ITEM NOMENCLATURE PE N: Surface ASW

Cybersecurity Testing

Cybersecurity Risk Mitigation: Protect Your Member Data. Introduction

Cybersecurity (CS) (as a Risk Based Approach) & Supply Chain Risk Management (SCRM) (Levels of Assurance for HwA, SwA & Assured Services?

UNCLASSIFIED FY 2016 OCO. FY 2016 Base

About the DISA Cloud Playbook

NDIA San Diego Chapter 2017 Fall Industry Forum PMW 760 Overview

Cybersecurity vs. Cyber Survivability: A Paradigm Shift

Seagate Supply Chain Standards and Operational Systems

Providing Cybersecurity Inventory, Compliance Tracking, and C2 in a Heterogeneous Tool Environment

Innovation policy for Industry 4.0

DOE and Test Automation for System of Systems T&E

It s just software Or It s all software and it s the new normal

National Initiative for Cybersecurity Education

Shaping the Department of Defense Engineering Workforce

UNCLASSIFIED. UNCLASSIFIED R-1 Line Item #49 Page 1 of 10

Air Force Civil Engineer Center. Director s View. Randy Brown Director 4 May Battle Ready Built Right! 1

Department of Defense (DoD) Joint Federated Assurance Center (JFAC) Overview

SPAWAR Systems Center (SSC) Pacific Unmanned Vehicle (UV) Information Assurance (IA) Support

White Paper. View cyber and mission-critical data in one dashboard

Cyberspace: New Frontiers in Technology Insertion

Code 25 Strike Contract Industry Day

UNCLASSIFIED. UNCLASSIFIED Air Force Page 1 of 8 R-1 Line #192

Transcription:

CAPT Brian R. Durant Commander NSWCDD Technical Director - (540) 653-8103 Dennis M. McLaughlin Technical Director Naval Surface Warfare Center, Dahlgren Naval Undersea DivisionWarfare Center The The Leader Leaders in Warfare in Warfare Development Development and and Baseline Brief January 2015 30 October 2015 Naval Sea Command Cybersecurity Day Distribution A: Approved for Public Release; Distribution is Unlimited.

Naval Warfare Center Enterprise NUWC Keyport Keyport, WA The NSWC operates the Navy's full spectrum research, development, test and evaluation, engineering, and fleet support centers for offensive and defensive systems associated with surface warfare and related areas of joint, homeland and national defense systems from the sea. NSWC Crane Crane, IN Naval Ship Engineering Station Philadelphia, PA NUWC Newport Newport, RI NSWC Headquarters Washington, DC NSWC Carderock West Bethesda, MD NSWC Port Hueneme Port Hueneme, CA NSWC Indian Head Indian Head, MD NSWC Corona Norco, CA The NUWC operates the Navy s full-spectrum research, development, test and evaluation, engineering, and Fleet support center for submarines, autonomous underwater systems, and offensive and defensive weapon systems associated with USW and related areas of homeland security and national defense. NSWC Panama City Panama City, FL Combat Direction Activity Dam Neck, VA EOD Technical Division Indian Head, MD NSWC Dahlgren Dahlgren, VA 2

What We Do for the Program Offices/Fleet Build an Affordable Future Fleet S&T R&D T&E Sustain the Current Fleet Product Delivery Fleet Basic Research FY14 Reimbursable Funding ($M) S&T, $314 7% Fleet, $2,082 44% Products Delivery, $1,217 25% National/Global Scientific Leadership RDT&E, $1,157 24% Applied Research Modeling and Simulation Patents Technical Risk Assessments Rapid Prototyping Analysis of Alternatives Foreign Comparative Testing Human Cost Performance Tradeoffs Cyber Engineering Information Assurance & Cyber Security Sensor, System, & Missile Performance, Quality, Reliability, and Evaluation/Assessment Environmental Testing Metrology & Test, Measurement & Diagnostic Equipment (TDME) Quantitative Fleet Feedback and Pre Deployment Certification Product Assembly Installs Integrated Logistics and Interoperability Tests @ Ranges/Major Facilities Training Modernization & Alterations Distance Depot Maint Repairs Onboard Tech Assists Element and Combat System Certification Technology Refresh Technology/ Obsolescence Management Providing technical expertise across multiple portfolios in multiple warfare areas. 3

Warfare Center Cyber Engineering People, Processes, Facilities, Tools DoD Cyber Policies 8500.01 Cyber Security Shift Left Cyber Certification Cyber T&E Compromised Code Malware / Zero Days Implants Boundary Defense OBJECTIVE Monitor, Protect, Detect, React, Restore from Cyber Events Continuous Monitoring Situational Awareness Cyber resiliency Data Protection at rest, in memory and in transit Develop, Test, and Integrate Cybersecurity Solutions 5200.39 Anti-Tamper 5200.44 SCRM and Counterfeits TBD Software Assurance CYBERSAFE NAVSEA Policies NIST 800-53 Research and Evaluate Real-world Threats Nation State Insider Supply Chain Malware Compromised Code Zero Days Workforce Certified Cyber Engineers Recruiting & Hiring Cyber Training Retention/Attrition Clearances Facilities & Tools Modern Technology for Cyber Engineering RDT&E: Rapid deployment & employment of latest cyber security technology. Labs, Land based test sites, cyber tools, Partners NAVSEA / Warfare Centers USFLTCYBERCOM/C10F USCYBERCOM / NSA NIOC / NCWDG / IDFOR MARFORCYBER SPAWAR / NAVAIR COTF ONR / DIA Industry. PoRs Adopt and Integrate Into Legacy and Future Versions Connectivity JIOR JMETC-MILS NCR DoD IA Range SDREN DEP Rapid Connection C&A IATT ISA ITPR In-service Sustainment 4

NSWC / NUWC Cyber Security Priorities Hull Mechanical & Electrical (HM&E): Equipment is commercial-off-the-shelf - easily reverse engineered by an adversary, current HM&E architecture and equipment do not easily support built-in cybersecurity solutions, requires: Scalable, composable, cyber-physical systems, resilience metrics, defense against insider threats, survivability of time critical systems, system / cyber state awareness, usable security Navigation : Serve multiple enclaves and therefore difficult to separate into isolated enclave. Presents cross boundary enclave security solution challenges. Combat Cyber Security: Real time control systems with stringent latency requirements. RDT&E community must develop and build combat systems that implement a defense in depth (DID) security architecture from the design phase. Cybersecurity Threats: Difficult to match known threat vectors to shipboard systems. Published threats are typically focused on operating systems, software or hardware from enterprise IT systems. Workforce Development: To create an active/aggressive cyber security engineering workforce that plugs into ongoing cyber security engineering challenges and Risk Management Framework (RMF) initiatives Prototyping: Rapid deployment & employment of latest cyber security technology which includes tools, and infrastructure Cyber Situational Awareness and Cyber Resiliency: Combat, HM&E, & Navigation systems must: Provide ability to notify commander when and if they were compromised Identify when system is usable in full or degraded mode Identify alternatives to aid the commander in completing the mission Provide the ability to restore the system to a known, trusted state 5