recommended reading

Pentagon Plans to Deploy More Than 100 Cyber Teams by Late 2015

Gen. Keith Alexander, head of Cyber Command, said the combat mission forces will include 27 teams and would “support the combatant commands in their planning process for offensive cyber capabilities.”

Gen. Keith Alexander, head of Cyber Command, said the combat mission forces will include 27 teams and would “support the combatant commands in their planning process for offensive cyber capabilities.” // Manuel Balce Ceneta/AP file photo

Within three years, the Pentagon’s Cyber Command will deploy more than 100 teams focused predominantly on defending military networks rather than attacking adversaries’ systems, according to Defense Department officials.

The department recently reorganized Cyber Command, which since 2010 has directed offensive and defensive operations in cyberspace, into three “mission forces.” Two of those forces will engage in digital assaults, while the third will shield the dot-mil domain. The Washington Post first reported the organizational structure in late January.

The organization defending military networks -- cyber protection forces -- will comprise more than 60 teams, a Pentagon official said. The other two organizations -- combat mission forces and national mission forces -- will conduct offensive operations. National mission forces will employ 13 teams focused on securing U.S. private networks powering critical infrastructure such as transportation systems and other vital industries, the official said.

At a Senate Armed Forces hearing last Tuesday, Gen. Keith Alexander, head of Cyber Command, said the combat mission forces will include 27 teams and would “support the combatant commands in their planning process for offensive cyber capabilities.”

Preparations are “on track” to stand up all three forces by September 2015 he said, crediting military service chiefs for pushing the formations.

The mix and number of service members, contractors and civilians in each team is still unknown. The military services have different cyber skill requirements -- needs that have been complicated by a national talent shortage. And each service is working through the financial constraints of sequestration -- blanket spending cuts that kicked in governmentwide on March 1.

Training is “the key part” of building up the teams, Alexander said.

Cyber offensive and defensive forces will be embedded within each geographic military command, Pentagon officials said in February.

Regarding the national mission forces, Defense officials told Nextgov in January that those teams will be “prepared to conduct full spectrum cyber operations in order to mitigate threats to our nation and its critical infrastructure."

Dispatching cyber troops to U.S. networks has since raised questions about military overreach. A 2003 presidential directive stipulates that the Department of Homeland Security, not Defense, must play the primary role in any governmentwide effort to protect U.S. critical infrastructure. 

During last week’s hearing, Alexander clarified the role of national mission forces:  “This defend-the-nation team is not a defensive team. This is an offensive team.” The Pentagon would deploy that offensive cadre if the nation were attacked in cyberspace, he added.

Alexander works closely with DHS Secretary Janet Napolitano, he said. Alexander, Napolitano and FBI Director Robert Mueller “all see eye to eye on the importance of cyber, of supporting each other in these cyber missions,” he said.

Alexander described Homeland Security officials as “the lead for domestic cybersecurity” and said they “help protect federal networks and critical infrastructure.”

Alexander added, however, “To act quickly we must have clear lanes of responsibility and rules of engagement.”

Threatwatch Alert

Thousands of cyber attacks occur each day

See the latest threats

JOIN THE DISCUSSION

Close [ x ] More from Nextgov
 
 

Thank you for subscribing to newsletters from Nextgov.com.
We think these reports might interest you:

  • Featured Content from RSA Conference: Dissed by NIST

    Learn more about the latest draft of the U.S. National Institute of Standards and Technology guidance document on authentication and lifecycle management.

    Download
  • PIV- I And Multifactor Authentication: The Best Defense for Federal Government Contractors

    This white paper explores NIST SP 800-171 and why compliance is critical to federal government contractors, especially those that work with the Department of Defense, as well as how leveraging PIV-I credentialing with multifactor authentication can be used as a defense against cyberattacks

    Download
  • Toward A More Innovative Government

    This research study aims to understand how state and local leaders regard their agency’s innovation efforts and what they are doing to overcome the challenges they face in successfully implementing these efforts.

    Download
  • From Volume to Value: UK’s NHS Digital Provides U.S. Healthcare Agencies A Roadmap For Value-Based Payment Models

    The U.S. healthcare industry is rapidly moving away from traditional fee-for-service models and towards value-based purchasing that reimburses physicians for quality of care in place of frequency of care.

    Download
  • GBC Flash Poll: Is Your Agency Safe?

    Federal leaders weigh in on the state of information security

    Download
  • Data-Centric Security vs. Database-Level Security

    Database-level encryption had its origins in the 1990s and early 2000s in response to very basic risks which largely revolved around the theft of servers, backup tapes and other physical-layer assets. As noted in Verizon’s 2014, Data Breach Investigations Report (DBIR)1, threats today are far more advanced and dangerous.

    Download

When you download a report, your information may be shared with the underwriters of that document.