Pentagon Creates New 5,000 Strong Cyber Force

Formation of the Pentagon's new  Cyber Mission Force is a key step in improving the US’s ability to respond to hacks by overseas adversaries.

A 5,000-person Pentagon force created to bolster military computer networks and initiate Cyber-attacks against terror groups should shortly be ready to carry out its mission, a key step in improving the US’s ability to respond to hacks by overseas adversaries.

The Cyber Mission Force reached "initial operational capability” recently, said Colonel Daniel J.W. King, a Cyber Command spokesman, in an e-mail. The group’s 133 teams have met basic criteria on personnel, training, resources and equipment, but all of them aren’t necessarily ready to launch attacks, he said.

The force, which falls under the US Cyber Command created in 2009, likely will focus on the highest priorities, such as risks from Russia, China, Iran and terrorist groups including Islamic State, according to Bob Stasio, a fellow at the Truman National Security Project and former chief of operations at the National Security Agency’s Cyber Operations Center.

Until the force becomes fully operational, which is planned in 2018, the question officials directing it will ask first will be, “What’s the minimum operation I need against the biggest threats that I have today, the closest alligators to the boat," Stasio said.

Previously, Cyber operations were scattered in silos across Cyber Command, the NSA and other military branches, according to Stasio. The new centralised force will help cut through the bureaucracy, he added. Officials plan to expand the force by another 1,200 people as part of the process of becoming fully combat ready.

"We continue to generate the mission force," Admiral Michael Rogers, who heads Cyber Command and the NSA, said in a Sept. 13 speech in Washington. "At the same time, we got to tell ourselves we are not where we need to be in this mission."

The operational capability designation means the Pentagon has better streamlined Cyber activities across its bureaucracy, but analysts say it doesn’t necessarily reflect greater security chops as defense officials try to keep up with fast-evolving technology and threats.

"What it means is we have the people, the tools, we’ve practiced and we’re ready," said Mark Young, chief security officer and senior vice president at IronNet Cybersecurity Inc. and a former senior executive at Cyber Command.

Digital Labyrinth

As hacking attacks traced to countries such as Russia and China continue to make US headlines, people "can feel more comfortable, not completely comfortable, but they can feel more comfortable, that we now have a military force that could respond if directed to these activities," Young said.

The mission force is tasked with defending the Defense Department’s data and its labyrinth of thousands of digital networks across the world. It also has to defend the US "against Cyber-Attacks of significant consequence" as well as the nation’s critical infrastructure, King said. Cyber war plans are also in place for the military’s various regional commands.

Setting up the force is also a sign that cyber is more "baked into" the military’s overall strategy, while providing defense officials a grasp of how much it needs to spend on cybersecurity, said Dave Aitel, chief executive officer of Immunity Inc. and a former NSA computer scientist. In its 2017 information technology budget, the Defense Department requested $6.8 billion for cyber operations.

Money Buckets

"You have to kind of look at it as if you’re building a whole new Navy, that’s a very expensive operation," Aitel said. "It gives them better buckets to throw money into and know where that money is going."

There’s work ahead as the military builds out all of its Cyber teams to full capability in the next two years. Even when they reach that stage, officials will still have to keep pace with emerging tech tools and cyber-attack tactics, according to Ben FitzGerald, a senior fellow at the Center for a New American Security, who previously worked as an executive for technology companies with defense contracts.

"Cyber Comm. is still going through a process of establishing the command and control arrangements between their teams, and the support they provide to rest of the Department of Defense, and that’s going to take time to figure out," FitzGerald said. "The key challenge is will they be able to adapt and keep making changes as rapidly as they need to?"

Information-Management

 

 

« Dealing With Insider Data Theft
Ecuador Cut WikiLeaks Assange's Internet Connection »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

Perimeter 81 / How to Select the Right ZTNA Solution

Perimeter 81 / How to Select the Right ZTNA Solution

Gartner insights into How to Select the Right ZTNA offering. Download this FREE report for a limited time only.

Blue Solutions

Blue Solutions

Blue Solutions is a consultancy-led, accredited software distributor who provides IT solutions and support to small and medium enterprises.

Redshift Consulting

Redshift Consulting

Redshift is an information management and information security consulting company offering a full range of services from infrastructure design to security assessments and network monitoring.

Totalsec

Totalsec

Totalsec is a Grupo Salinas company with a team of professionals in cybersecurity and information security providing Security Consulting, Solutions Integration, and Managed Security Services.

Valire Software

Valire Software

Valire provide a solution for the automated detection of internal fraud.

ResponSight

ResponSight

ResponSight is a data science company focusing specifically on the challenge of measuring risk and identifying changes in enterprise/corporate networks using behavioural analytics.

Stage2Data

Stage2Data

Stage2Data is one of Canada’s most trusted cloud solution providers offering hosted Backup and Disaster Recovery Services.

Porto Research, Technology & Innovation Center (PORTIC)

Porto Research, Technology & Innovation Center (PORTIC)

PORTIC brings together several research centers and groups from P.PORTO in a single space, forming a superstructure dedicated to research, technology transfer, innovation and entrepreneurship.

Query.ai

Query.ai

At Query.AI, we are committed to helping companies unlock the power of their security data, so they are empowered to meet security investigation and response goals while simultaneously reducing costs.

QuSecure

QuSecure

QuSecure provides a software-driven security architecture that overlays your current infrastructure and provides next-generation security to protect your entire network from quantum threats.

Varen Technologies

Varen Technologies

Varen Technologies is an innovative consulting partner with highly respected cyber security, analytics, Agile Software Development and IT/maintenance expertise.

Identity Digital

Identity Digital

Identity Digital simplifies and connects a fragmented online world with domain names and related technologies that allow people and businesses to build, market and own their digital identities.

Stacklok

Stacklok

Stacklok are an Open Source first security company enabling safe Open Source Software consumption.

LOCH Technologies

LOCH Technologies

LOCH Wireless Machine Vision platform delivers next generation cybersecurity, performance monitoring, and cost management for all 5G and for broad-spectrum IoT, IoMT and OT wireless environments.

TerraEagle

TerraEagle

Terraeagle is a boutique cyber security services company providing tailor-made solutions. Our core competency is in SOCaaS, MDRaaS & and Incident Response Retainer Services.

NOYB

NOYB

NOYB is a non-profit organization aiming to close the gap between privacy laws and the reality of corporate practice.

NetDescribe

NetDescribe

NetDescribe, part of Xantaro Group, advises and supports companies in building secure and stable IT environments.