What Is It?
The Proactive Computer Network Defense and Information Assurance (CND/IA) prototype will aide the warfighter in identifying and mitigating real-time threats while ensuring continuity of essential operations and access to assured data during attacks.
How Does It Work?
The new cyberdefense architecture will have three main integrated critical components: sensors and gateways, security-enabled protocols and a common operational security decision system. Dynamically reconfigurable and located throughout the network, sensors and gateways will provide enhanced anomaly detection capabilities and robust security features to aid in heightening threat awareness as part of the decision support system. Hardened and dynamic, security-enabled protocols will ensure data delivery and provide configuration and control of network-based security components. To support integrated decision-making for network warfare, a common operational system will aggregate, correlate and visualize the network security posture information, and provide automated decision support to dynamically manage the sensors and gateways.
What Will It Accomplish?
CND/IA will provide cybersecurity situational awareness to support cyber-physical and computer network operations. It will enable the warfighter to understand and quantify the network security posture to support mission planning and mission outcome, and provide a capability to dynamically control network security components to address changing threat environments.