Presentation is loading. Please wait.

Presentation is loading. Please wait.

Cyber Quest 2016 Cyber Quest 2016 Coordinated Working Group (CWG) #2

Similar presentations


Presentation on theme: "Cyber Quest 2016 Cyber Quest 2016 Coordinated Working Group (CWG) #2"— Presentation transcript:

1 Cyber Quest 2016 Cyber Quest 2016 Coordinated Working Group (CWG) #2
UNCLASSIFIED//FOR OFFICAL USE ONLY Cyber Quest 2016 Coordinated Working Group (CWG) #2 Mar 2016 UNCLASSIFIED//FOR OFFICAL USE ONLY

2 Location: U.S. Army Reserve Center Room 122-124
CWG #2 Agenda – 15 Mar 2016 Location: U.S. Army Reserve Center Room Participation: All Cyber Quest 2016 Participants 0900 Welcome Dale White, Dep Dir, CBL 0915 Introduction, Agenda, Objectives, Video MAJ Roberts 0930 Cyber Quest Update, Timeline, Road to War MAJ Roberts User Defined Operational Picture/Data Sources Review/Update Mike Jones 1100 Data Integration Introduction Mr. Andersen 1200 LUNCH ALL Lower Tactical Network Introduction Horace Carney 1430 Upper Tactical Network Introduction (WIN-T) Joe Collette 1530 Training Requirements Greg Wells 1600 Overview of 16 March Agenda/Release MAJ Stannard 1800 NO HOST SOCIAL (CAROLINA ALE HOUSE)

3 Location: U.S. Army Reserve Center Room 122-124
CWG #2 Agenda – 16 Mar 2016 Location: U.S. Army Reserve Center Room Participation: All Cyber Quest 2016 Participants 0900 Welcome Back MAJ Roberts 0915 EW Sensor Technology Sponsor Breakout – Data Integration Breakout - 124 Harris Corporation Data Sources - SA L WIN-T NMS Phaser Rockwell Collins Thales 1205 LUNCH \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ALL CTI Lower Tactical Network 1400 EITC Upper Tactical Network (WIN-T) 1430 General Dynamics 1500 GTRI

4 Location: U.S. Army Reserve Center Room 122-124
CWG #2 Agenda – 16 Mar 2016 Location: U.S. Army Reserve Center Room Participation: All Cyber Quest 2016 Participants 0900 Welcome Back MAJ Roberts 0915 Breakout Session Opportunity (As needed) Cyber Quest 2017 Objectives- 124 1015 Academia Participation 1130 CWG 2 Out-brief to Technology Sponsors 1205 CWG 2 ENDS

5 Working Group Objectives
To review all documentation/administrative requirements; To highlight key experiment dates, events, and milestones; Delineate roles and responsibilities for all participants; To produce a draft network design document and identify resource shortfalls; To produce a draft DODAF document identifying data systems integration requirements; To develop a draft Cyber Quest 2016 Technology Integration Schedule; To document technology training requirements; To address Cyber Quest 2016 vignette/simulation requirements;

6 Directions Cyber Battle Lab Signal Towers parking parking

7 Army Expeditionary Warrior Experiment (AEWE)
VIDEO

8 EXPERIMENT UPDATE, TIMELINE, MILESTONES, EXPECTATIONS

9 2016 Framework Cyber Quest 2016 Timeline and Milestones Execution
Final Report SEP 2016 2016 Framework TechNet CQ Briefing 2 AUG 2016 Experimentation Event 11 – 29 JUL 2016 Excursions Assessments JUN 2016 Integration CWG 3 - MAY 2016 Integration Orders APR 2016 CWG 2 - MAR 2016 CWG 1 - JAN 2016 Selection Technology Selection 8 – 11 DEC 2015 Results: Tech Pre-Select 20 NOV 2015 Tech Pre-Selection Panel 17 – 19 NOV 2015 Tech Call Deadline 13 NOV 2015 Industry Briefing Day 4 NOV 2015 Tech Call – Industry BAA 22 OCT 2015 Initiation Army Cyber Council Council of Colonels 21 SEP 2015 CARR Brief SEP Proposal Consolidation SEP 2015 ACC Brief OCT 2015 Proposal Engagement (Wide) SEP 2015 Proposal Selection (Core) 8 SEP 2015 Cyber Quest 2016 Initiation AUG 2015 11 Month Cycle

10 Execution Duration (3 weeks)
Location (CBL, FOB Ready, Ft Gordon and SRS) Focused at Infantry BCT TOC Unified COP/CPCE v2 Live, Constructed, Virtual Environment Cyber Range Connectivity Phase 3 to 4 operational transition Notional SIPR Networks (Unclassified) Battle Rhythm (6hr scenario day + real world) 4x 12hr plays Requires an Experimentation Force (EXFOR) Blue Force, Red Team, Green Cell, White Cell No Fear of Failure (Sandbox) Reporting

11 Experimental Focus Areas
Cyber Quest Operational View Experimental Focus Areas Integrate Cyber and Electronic Warfare Situational Awareness (SA) capabilities Converge Cyber/ EW User Defined Operational Pictures (UDOPs) Tactical radios as sensors with input to Cyber SA tool. DOTMLPF implications of using a Cyber SA tool; TTPs for the CEMA cell; Demo tactical radios as Electronic Warfare solutions; - Tactical hand held radios 200 – 2500 MHz range; - Tactical radios with anti-jamming capabilities; Scenario JTF (V/C) transitioning from MCO (PH III) to stability operations (PH IV) while reacting to red force kinetic and non-kinetic attacks Focus on an At-The-Halt (ATH) IBCT CP (Live) controlling an ATH Infantry Battalion CP and OTM Infantry Companies (V/C) Red Forces will use a variety of Offensive Cyber and Electronic Warfare (EW) attacks to stimulate Defensive Cyber Operations and EW Response Actions Intent: Focus on the BCT; Fully populate BCT TOC systems Leverage outputs for Cyber and EW SA capabilities Red Forces IN BN CP (V/C) National Asset (V/C) EW EWO IBCT CP (Live) CEMA DIV TAC CP (V/C) CEMA ISB JTF / ExCSE (V/C) CEMA CSSB (V/C) CPT

12 Cyber Quest – Operational Flow
Action – Reaction – Counteraction Red Cell (Threat) Blue Cell (Friendly) Action – Reaction – Counteraction Cyber Event Cyber SA Display in TOC CEMA Cell AMDWS/TAIS/CPOF EWPMT/Cyber SA Tool AFATDS/BCS3 Battle Lab X EW/S2/6 Regional Hub Node (RHN) Submit Cyber Effects Request Form (CERF) Provides CPT Experience in: -Remediation -Reporting -DCO (Defense in Depth) -Incident Response Handlers (IRH) IBCT (select staff) (255S Provides Cybersecurity Capability) Outputs to inform: Best Practices & White Papers -System Vulnerabilities -Enemy Methodology -Force Design -System Integration -Process Improvements -Lessons Learned -Team Dynamics -Key Performance Parameters (KPP) -Tactics, Techniques, and Procedures (TTPs) “CERF” CPT (DST) Cyber Protection Brigade (CPB) Tasking JFHQ-C Army Cyber Operations Integration Center (ACOIC) Provides: -Team Building -Tool Validation -Training Synergy LEGEND LOS CABLE REQUEST LIVE

13 Cyber SA Display in CEMA Cell
Cyber Quest – Execution Operational View Cyber SA Display in CEMA Cell (Live/Constructive) BCT TOC Feeds EWPMT/Cyber SA Tool (Vendor Provided) Feeds Red Cell (Threat) Blue Cell (Friendly) Action – Reaction – Counteraction Cyber Event AMDWS/TAIS/CPOF AFATDS/BCS3/DCGS-A MC Systems Feeds Scenario Stimulation OPORD/Annex Graphics Vignettes/Storyboard Scenario Products Facilitation Simulation Interface (Constructive) OneSAF FIRESIM EMANE (Constructive) Monitoring Social Media (Live) E W Emplaced sensors intercepts emitters Battle Lab FEB Branch Battle Lab EW M&S Branch (Virtual) (Live)

14 Cyber Quest Calendar – March 2016
Sunday Monday Tuesday Wednesday Thursday Friday Saturday 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 Scenario Orders/Road to War (Battle) RMF Support TBD OneSAF Build (Includes STARTEX positions/Movement Tracks (Battle) ABCT Seminar Wargame (Fort Benning GA) (FEB) CQ Coordination Working Group #2 Scenario/Script review with ARCYBER (FEB All) UC 16.1 GAMEX (Fort Leavenworth KS) (FEB) Scenario Order/RTW: complete DRAFT of CQ scenario order and RTW OneSAF Build: Create .csv file from ORBAT worksheet; develop STARTEX positions and movement table in SPEED for transfer into OneSAF Scenario/Script review: One-on-one dialogue with ARCYBER rep to validate CQ scenario event scripts End to End Thread Testing: Review event threads; validate event triggers, measure event step timings to validate duration of each scripted event Scenario Orders/ Road to War Refinement: make necessary modifications to scenario order and RTW TBD End to End Thread Testing (Triggers, Timing, & Step Validation) (FEB All) UC 16.1 GAMEX (Fort Leavenworth KS) (FEB) TBD Scenario Orders/Road to War Refinement (Battle/Collins) UC 16.1 Analysis Scrum (Fort Lee VA) (FEB) Live Experimentation Branch M&S Branch Futures Experimentation Branch Vendor Specific

15 Cyber Quest Calendar – April 2016
Sunday Monday Tuesday Wednesday Thursday Friday Saturday 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 Scenario V&V (Battle) UC 16.1 Analysis Scrum Block Leave (FEB All) Masters Week (Augusta area Schools Spring Break) RMF Support ExCIS Software Training (Austin TX) (FEB All) Scenario V&V: final verification and validation of CQ scenario order and RTW ExCIS Software Training: User level training of ExCIS software suite for use with AFATDS Mission Command System Configuration & Testing: Final opportunity for integration and testing of mission command systems configuration (CPOF, AFATDS) with models and simulations tools (ONESAF, FIRESIM) COMMEX: rehearsal of HICON/LOCON events and scripts ( , VoIP, CPOF) Integration: Scenario Orders / Admin Instructions TBD Mission Command System Configuration & Testing COMMEX (Includes HICON/LOCON Interaction) (FEB All) TBD Live Experimentation Branch M&S Branch Futures Experimentation Branch Vendor Specific

16 Cyber Quest Calendar – May 2016
Sunday Monday Tuesday Wednesday Thursday Friday Saturday 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 TBD Develop System Specific Data Products SW Lock TBD Develop System Specific Data Products CQ Coordination Working Group #3 TBD Threat/EXCON/HICON/LOCON Synchronization & Rehearsals New software introduction and software version “lock” two months prior to execution of CQ CQ Coordination WG#3: Live Experimentation Branch final coordination meeting prior to execution of CQ TBD Threat/EXCON/HICON/LOCON Synchronization & Rehearsals ATEC SRs COMPLETED Live Experimentation Branch M&S Branch Futures Experimentation Branch Vendor Specific

17 Cyber Quest Calendar – June 2016
Sunday Monday Tuesday Wednesday Thursday Friday Saturday 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 TBD Vendor System Testing Network / Vendor System Integration TBD Full up Dress Rehearsals TBD Functional Testing Full up Dress Rehearsals Vendor specific events for the month of June: Network/Vendor system integration Functional testing: manual “knob turning” to validate functionality of each vendor system Create & Load Data Products / Radio Config Files: Finalize LDIF for system and platform integration and develop/test radio configurations [LDAP Data Interchange Format (LDIF) is a standard plain text data interchange format for representing LDAP (Lightweight Directory Access Protocol)] End to End Thread Testing: vendor system testing of mission threads Create & Load Data Products / Radio Config Files End-to-End Thread Testing Full up Dress Rehearsals TBD Environment Build Complete TBD Live Experimentation Branch M&S Branch Futures Experimentation Branch Vendor Specific

18 Cyber Quest Calendar – July 2016
Sunday Monday Tuesday Wednesday Thursday Friday Saturday 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 4th of July Weekend (DONSA) Instrumentation V&V 4th of July Weekend (DONSA) VALEX COMMEX Military Role Player Training and Integration CQ Build / Train PACEX CQ Rotation 1 CQ Rotation 2 CQ Rotation 3 CQ Rotation 4 Instrumentation V&V: final testing and validation of instrumentation between models and simulations, role player and vendor systems VALEX: final validation exercise between EXCON/HICON/LOCON systems with Role Player systems COMMEX: final communications exercise to verify all systems are functional and operational Military Role Player Training and Integration: Cyber 101 Academics, Cyber Quest Scenario and Road to War Briefing CQ Rotation 5 VIP Day / Demo AAR Live Experimentation Branch M&S Branch Futures Experimentation Branch Vendor Specific

19 Cyber Support Element-Ft. Leavenworth, KS.
US Army Cyber Center of Excellence (Cyber CoE) Cyber SA Notional Dashboard Focus Areas to Inform Cyber Quest All diagrams are pre-decisional and could be changed at the discretion of the CSE-FLKS Cyber Support Element-Ft. Leavenworth, KS.

20 Cyber SA Planning and Management Tool (PMT)
Focus Area 1: Cyber SIGACTS Notional Display Cyber SA Planning and Management Tool (PMT) < < < < < < Maps Cyber Overlay Cyber SIGACTs Network Status Cyber-EW Ops Mission Impact Last 24 hours Query Known Actor, Cyber, Unmitigated Unknown Actor, Cyber, Redirected URL, Unmitigated Known Actor, Cyber, Unmitigated Unknown Actor, Cyber, Redirected URL, Unmitigated Unknown Actor, Cyber, Redirected URL, Unmitigated Unknown Actor, Cyber, Redirected URL, Unmitigated Emitters / OB < Planning < Threat Activity < < < EMS Interference Social Media

21 Cyber SA Planning and Management Tool (PMT)
Focus Area 2: Cyber Overlay Notional Display Cyber SA Planning and Management Tool (PMT) < < < < < < Maps Cyber Overlay Cyber SIGACTs Network Status Cyber-EW Ops Mission Impact Create Export to COP < < < < < Emitters & OB Planning Threat Activity EMS Interference Social Media

22 Cyber SA Planning and Management Tool (PMT)
Focus Area 3: Network Status - Friendly Notional Display Cyber SA Planning and Management Tool (PMT) < < < < < < Maps Cyber Overlay Cyber SIGACTs Network Status Cyber-EW Ops Mission Impact Friendly Enemy Unknown Neutral Asset Compliance Force Prot Cond. < Emitters & OB Planning < < < < Threat Activity EMS Interference Social Media

23 Cyber SA Planning and Management Tool (PMT)
Focus Area 4: Network Status - Enemy Notional Display Cyber SA Planning and Management Tool (PMT) < < < < < < Maps Cyber Overlay Cyber SIGACTs Network Status Cyber-EW Ops Mission Impact Friendly Enemy Unknown Neutral Asset Compliance Force Prot Cond. < Emitters & OB Planning < < < < Threat Activity EMS Interference Social Media

24 Cyber SA Planning and Management Tool (PMT)
Focus Area 5: Emitters & Order of Battle Notional Display Cyber SA Planning and Management Tool (PMT) < < < < < < Maps Cyber Overlay Cyber SIGACTs Network Status Cyber-EW Ops Mission Impact FILTERS GSM 3G 4G WiFi Radar OB Active Tracking CTR MTR/RCKT Early Warning CTR MTR/RCKT Early Warning CTR MTR/RCKT Early Warning Unknown Neutral Enemy Friendly < < < < < Emitters & OB Planning Threat Activity EMS Interference Social Media

25 Cyber SA Planning and Management Tool (PMT)
Focus Area 6: Mission Impact Notional Display Cyber SA Planning and Management Tool (PMT) < < < < < < Maps Cyber Overlay Cyber SIGACTs Network Status Cyber-EW Ops Mission Impact Intrusion Alerts Vulnerability Network Health Emitters / OB < Planning < Threat Activity < < EMS Interference Social Media <

26 Cyber SA Planning and Management Tool (PMT)
Focus Area 7: Social Media Notional Display Cyber SA Planning and Management Tool (PMT) < < < < < < Maps Cyber Overlay Cyber SIGACTs Network Status Cyber-EW Ops Mission Impact Trends Alerts Web Search < < < < < Emitters & OB Planning Threat Activity EMS Interference Social Media

27 CyberQuest Lower/Upper Tactical Network Introduction
2016/03/15 Horace Carney/Joe Colette CTR Support, Cyber Battle Lab US Army Cyber Center of Excellence & Fort Gordon

28 Operational Environment OV-1 (LVC)
EW/CYBER SA Drive CEMA cell response actions/planning Drive commander decisions Drive Cyber vs EW response actions TSMO Effect Decision ICOE SA Vendor1-4 UCD SA Vendor1-4 EWPMT Big Data SA Vendor1-4 SA Vendor1-4 Data processing Cyber Battle Lab IBCT CP (Live) CPOF BCCS DCGS-A AFATDS WIN-T/ DCO Cyber data Determine utility Refine TTPs/CONOPS WIN-T Inc 2 NOSC-B Cyber Red vs Blue Visualization Triggering Queuing WIN-T Inc 2 NOSC-B DCO-IDM Feeds Operational scenario centered on the Infantry Brigade Combat Team (BCT) Tactical Operations Center (TOC) WIN-T Inc 2 SNE WIN-T Inc 2 SNE Data Ingest Sensor improvement – C2 Data ingest Remote sensor triggering Cyber effects Blue Forces Red Forces EW EW Peer vs Near-peer Tactical Radios and EW Sensors SensorVendor1-5 SensorVendor1-5

29 Proposed Lower Tactical Architecture for Cyber Quest
FT HUACHUCA Proposed Lower Tactical Architecture for Cyber Quest WIN-T INC 2 NETWORK Classification: Notional SECRET 1-29 INFANTRY BN BN SNE CO SRW/ SATCOM A/1-29 INFANTRY CO (HEADQUARTERS) SIDEHAT X 2 OPS NCO CO XO CO HQ 1/A/1-29 INFANTRY Thales: Special EW Mission Module (EW module) Phaser Corporation: (Wifi/4G LTE sensor) Rockwell Collins: Handheld dismounted RF sensing capability/TTNT mesh network Harris RF sensor L3 DF Capability PSG 1-SL AN/PRC 154A 2-SL Platoon SRW network AN/PRC 154A AN/PRC 154A A-TL B-TL A-TL B-TL Company SRW network AN/PRC 15A AN/PR 54A AN/PRC 154A AN/PRC 154A

30 BCT CP, FOB READY, FORT GORDON
UPPER TI ARCHITECTURE RHN BCT CP, FOB READY, FORT GORDON Classification: Notional SECRET NOSC-B STT (INC 1) INC 1 SSSV4 TCN (MAIN) CPP (RADIO NETS ONLY) TCN (TAC) TA-17 TA-6 STT (MAIN) SNE SNE TA-21 COMPANY CP, TA-?? SNE (CNRI) LOWER TI LEGEND RHN-E CYBER BATTLE LAB POP 442ND ASSETS NOT IN CQ TA-26 CABLE LINK NODES IN RESERVE SATELLITE LINK TCN (X4) POP (X4) SNE (X4) POP

31 Joe Collette COM: (706) DSN: FAX: (706)

32 CyberQuest Data Architecture Introduction
2016/03/15 Ken Groombridge CTR Support, Cyber Battle Lab US Army Cyber Center of Excellence & Fort Gordon

33 Vendor SA capabilities Message Types From To PLI OneSAF DDS PosRPT GEO
FIRESIM ExCIS CPOF Message Types From To PLI OneSAF DDS PosRPT GEO LOB ENSIT STATUS CPOF DB AFATDS EWPMT EITC Raytheon GTRI EITC IRONHIDE GD PLI DDS Sensor Data DCGS CTI THUNDERSTORM PLI K05.1 Sensor Data Sensor Data Sensor Data Sensor Data NETTWARRIOR THALES MMR L3 AN/PRD-13 ROCKWELL HARRIS PHASER

34 Operational Architecture
BCCS Stack OneSAF Systems OneSAF Systems OneSAF Systems DDS CPOF Services OneSAF Systems OneSAF Systems OneSAF Systems MC Adapter Enterprise Services (MS EXCH,SP, SCCM, ETC.) EWPMT FireSim ExCIS Workstation EWPMT AFATDS Client CPOF Client Ft. Huachuca MI COP (Ft. Huachuca) Google Earth / Browser DSGS-A Client DSGS-A

35 GRAPHICS DDS 2 2 2 2 TGS S2MC GCCS-A DTSS Subscribe Subscribe Publish
GRAPHICS:AFATDS POS-RPT GRAPHICS:AMDPCS POS-RPT GRAPHICS:ASAS-L ENEMY-SIT: GRAPHICS:BCS3 POS-RPT POS-RPT/*:FBCB2 OBS-POS GEO-REF:FBCB2 POS-RPT:GCCS-A GRAPHICS: WEATHER:IMETS GRAPHICS:MCS POS-RPT:MCS OBS-POS GRAPHICS:MIP POS-RPT GEO-REF:MIP OBS-POS GRAPHICS:TAIS SIGACT:CPOF CMDS-INTENT:CPOF (none) S2MC POS-RPT/DTRACS POS-RPT/PANATRACS POS-RPT/STS POS-RPT/VSSTAR POS-RPT/DYNAFLEET POS-RPT/GDMS GRAPHIC OPORD TASK-ORG POS-RPT GRAPHICS:AFATDS POS-RPT ENEMY-SIT:ASAS-L POS-RPT:FBCB2 POS-RPT:GCCS-A GRAPHICS:MCS POS-RPT:MCS OPORD TASK-ORG TMC WS GRAPHICS:AFATDS POS-RPT TARGET:AFATDS AIR-TRK:AMDPCS GRAPHICS:AMDPCS POS-RPT GRAPHICS:ASAS-L ENEMY-SIT IND-WARN:ASAS-L CTFP GRAPHICS:BCS3 POS-RPT OPORD:BCS3 COMBAT-PWR TASK-ORG:BCS3 POS-RPT/*:FBCB2 OBS-POS:FBCB2 GEO-REF POS-RPT:GCCS-A GRAPHICS WEATHER:IMETS GRAPHICS:MIP POS-RPT OPORD:MIP ORG-STAT TASK-ORG:MIP GEO-REF OBS-POS:MIP IND-WARN GRAPHICS:TAIS ACO UAV-VIDEO:CGS GROUND-TRACKS MTI:CGS SIGACT:CPOF GRAPHICS POS-RPT OPORD ORG-STAT TASK-ORG OBS-POS M-AEXCH POS-RPT GRAPHICS GRAPHICS:AFATDS POS-RPT GRAPHICS:AMDPCS POS-RPT GRAPHICS:ASAS-L ENEMY-SIT GRAPHICS:BCS3 GRAPHICS:MCS POS-RPT:MCS  OBS-POS:MCS GRAPHICS:MIP POS-RPT:MIP GRAPHICS:TAIS POS-RPT/*:FBCB2  OBS-POS:MIP OBS-POS:FBCB2  Only non-hostile tracks GCCS-A TGS ENEMY-SIT: POS-RPT GRAPHICS UAV-VIDEO MTI GROUND-TRACKS Subscribe GRAPHICS POS-RPT TARGET GRAPHICS:AMDPC SPOS-RPT GRAPHICS:ASAS-L ENEMY-SIT GRAPHICS:BCS3 POS-RPT POS-RPT/*:FBCB GRAPHICS POS-RPT:GCCS-A GRAPHICS GRAPHICS:MCS POS-RPT GRAPHICS:TAIS AFATDS Subscribe Publish Publish SYNCH Publish Subscribe or Sync Subscribe Subscribe Publish Publish POS - RPT : FBCB2, MCS OBS POS : FBCB2 SIGACT : CPOF MTI : CGS Ground Tracks : CGS UAV VIDEO : CGS TARGET : AFATDS WEATHER2 : IMETS GRAPHICS : MCS, BCS3 DDS Node DCGS-A ENEMY SIT ( BCS3, AMPS, AMDWS , MCS, TAIS , AFATDS, DTSS ) GRAPHICS ( AMDWS , MCS, AFATDS, CGS, TAIS, DTSS, BCS3 Indications and Warnings ( ? ) TAIS GRAPHICS:AFATDS POS-RPT TARGET:AFATDS AIR-TRK:AMDPCS GRAPHICS:AMDPCS POS-RPT GRAPHICS:ASAS-L ENEMY-SIT IND-WARN:ASAS-L CTFP GRAPHICS:BCS POS-RPT OPORD:BCS TASK-ORG POS-RPT/*:FBCB2 POS-RPT:GCCS-A WEATHER:IMETS GRAPHICS:MCS POS-RPT:MCS OPORD ORG-STAT:MCS TASK-ORG SIGACT:CPOF CMDS-INTENT OBS-POS:CPOF TASK-ORG SIGACT:CPOF CMD-INTENT GRAPHICS:CPOF GRAPHICS ACO DDS Publish Subscribe Sub Subscribe Publish CPOF GRAPHICS:AFATDS POS - RPT:AFATDS TARGET:AFATDS AIR TRK:AMDPCS GRAPHICS:AMDPCS RPT:AMDPCS GRAPHICS:ASAS L ENEMY SIT:ASAS GRAPHICS:BCS3 RPT:BCS3 OBS POS:FBCB2 RPT/*:FBCB2 RPT:GCCS A GRAPHICS:GCCS GRAPHICS:TAIS ACO:TAIS GRAPHICS:MCS RPT:MCS TASK ORG:MCS POS:MCS FSCM:AFATDS PLANS/ORDERS:AFATDS SALUTE:AFATDS SITREP:AFATDS SPOTREP:AFATDS SALUTE:AMDPCS PLANS/ORDERS:AMDPCS SITREP:AMDPCS SPOTREP:AMDPCS AIR ROUTES:AMPS PRAHICS:AMPS PLANS/ORDERS:AMPS HVT/HPT:ASAS PLANS/ORDERS:ASAS PLANS/ORDERS:BCS3 SUPPLY STAT:BCS3 POSS RPT:BFT GRAPHICS:BFT SITREP:BFT SPOTREP:BFT GRAPHICS:DTSS SITREP:FBCB2 SPOTREP:FBCB2 GRAPHICS:FBCB2 PLANS/ORDERS:FBCB2 SALUTE:FBCB2 MDMP:GCCS PLANS/ORDERS:GCCS SITREP:GCCS GRAPHICS:ISYSCON PLANS/ORDERS:ISYSCON RPT:JTCW GRAPHICS:JTCW PLANS/ORDERS:JTCW SALUTE:JTCW SITREP:JTCW SPOTREP:JTCW PLANS/ORDERS:MCS PLANS/ORDERS:TAIS POS:CPOF ORG:CPOF SIGACT:CPOF CMD INTENT:CPOF GRAPHICS:CPOF FSCM:CPOF PLANS/ORDERS:CPOF SITREP:CPOF SPOTREP:CPOF RPT:CPOF MDMP PRODUCTS:CPOF SYNCH SYNCH Publish Publish Subscribe Publish IMETS GRAPHICS:AFATDS POS-RPT AIR-TRK:AMDPCS GRAPHICS POS-RPT:AMDPCS GRAPHICS:ASAS-L ENEMY-SIT GRAPHICS:BCS POS-RPT POS-RPT/*:FBCB2 POS-RPT:GCCS-A WEATHER:IMETS GRAPHICS:MCS POS-RPT OPORD:MCS GRAPHICS:TAIS  OBS-POS:CPOF  TASK-ORG  SIGACT:CPOF  CMD-INTENT  GRAPHICS:CPOF WEATHER AMDWS AIR-TRK MISSION GRAPHICS SA-UNITS POS-RPT SA-SENSORS SA-WEAPONS C-RAM SA-GEOMETRIES GRAPHICS:AFATDS ACO:TAIS POS-RPT:AFATDS WEATHER:IMETS GRAPHICS:ASAS-L IND-WARN:ASAS-L ENEMY-SIT:ASAS-L OPORD:MCS POS-RPT:BCS3 TASK-ORG:MCS TASK-ORG:BCS3 POS-RPT/*:FBCB2 GRAPHICS:GCCS-A POS-RPT:MCS GRAPHICS:MCS GRAPHICS:TAIS BFT OBS-POS GEO-REF POS-RPT/EPLRS POS-RPT/LBAND POS-RPT/MTS POS-RPT:AFATDS TARGET:AFATDS POS-RPT:CBFSA POS-RPT:GCCS-A POS-RPT:MCS Publish 2 2 2 2

36 DDS 2 2 2 2 Subscribe or Sync TMC WS AFATDS Subscribe Publish Publish
GRAPHICS:AFATDS POS-RPT TARGET:AFATDS AIR-TRK:AMDPCS GRAPHICS:AMDPCS POS-RPT GRAPHICS:ASAS-L ENEMY-SIT IND-WARN:ASAS-L CTFP GRAPHICS:BCS3 POS-RPT OPORD:BCS3 COMBAT-PWR TASK-ORG:BCS3 POS-RPT/*:FBCB2 OBS-POS:FBCB2 GEO-REF POS-RPT:GCCS-A GRAPHICS WEATHER:IMETS GRAPHICS:MIP POS-RPT OPORD:MIP ORG-STAT TASK-ORG:MIP GEO-REF OBS-POS:MIP IND-WARN GRAPHICS:TAIS ACO UAV-VIDEO:CGS GROUND-TRACKS MTI:CGS SIGACT:CPOF GRAPHICS POS-RPT OPORD ORG-STAT TASK-ORG OBS-POS M-AEXCH GRAPHICS POS-RPT TARGET GRAPHICS:AMDPC SPOS-RPT GRAPHICS:ASAS-L ENEMY-SIT GRAPHICS:BCS3 POS-RPT POS-RPT/*:FBCB GRAPHICS POS-RPT:GCCS-A GRAPHICS GRAPHICS:MCS POS-RPT GRAPHICS:TAIS AFATDS Subscribe or Sync Subscribe Publish Publish POS - RPT : FBCB2, MCS OBS POS : FBCB2 SIGACT : CPOF MTI : CGS Ground Tracks : CGS UAV VIDEO : CGS TARGET : AFATDS WEATHER2 : IMETS GRAPHICS : MCS, BCS3 DDS Node DCGS-A ENEMY SIT ( BCS3, AMPS, AMDWS , MCS, TAIS , AFATDS, DTSS ) GRAPHICS ( AMDWS , MCS, AFATDS, CGS, TAIS, DTSS, BCS3 Indications and Warnings ( ? ) DDS Publish Sub Subscribe CPOF GRAPHICS:AFATDS POS - RPT:AFATDS TARGET:AFATDS AIR TRK:AMDPCS GRAPHICS:AMDPCS RPT:AMDPCS GRAPHICS:ASAS L ENEMY SIT:ASAS GRAPHICS:BCS3 RPT:BCS3 OBS POS:FBCB2 RPT/*:FBCB2 RPT:GCCS A GRAPHICS:GCCS GRAPHICS:TAIS ACO:TAIS GRAPHICS:MCS RPT:MCS TASK ORG:MCS POS:MCS FSCM:AFATDS PLANS/ORDERS:AFATDS SALUTE:AFATDS SITREP:AFATDS SPOTREP:AFATDS SALUTE:AMDPCS PLANS/ORDERS:AMDPCS SITREP:AMDPCS SPOTREP:AMDPCS AIR ROUTES:AMPS PRAHICS:AMPS PLANS/ORDERS:AMPS HVT/HPT:ASAS PLANS/ORDERS:ASAS PLANS/ORDERS:BCS3 SUPPLY STAT:BCS3 POSS RPT:BFT GRAPHICS:BFT SITREP:BFT SPOTREP:BFT GRAPHICS:DTSS SITREP:FBCB2 SPOTREP:FBCB2 GRAPHICS:FBCB2 PLANS/ORDERS:FBCB2 SALUTE:FBCB2 MDMP:GCCS PLANS/ORDERS:GCCS SITREP:GCCS GRAPHICS:ISYSCON PLANS/ORDERS:ISYSCON RPT:JTCW GRAPHICS:JTCW PLANS/ORDERS:JTCW SALUTE:JTCW SITREP:JTCW SPOTREP:JTCW PLANS/ORDERS:MCS PLANS/ORDERS:TAIS POS:CPOF ORG:CPOF SIGACT:CPOF CMD INTENT:CPOF GRAPHICS:CPOF FSCM:CPOF PLANS/ORDERS:CPOF SITREP:CPOF SPOTREP:CPOF RPT:CPOF MDMP PRODUCTS:CPOF Publish Subscribe Publish BFT OBS-POS GEO-REF POS-RPT/EPLRS POS-RPT/LBAND POS-RPT/MTS POS-RPT:AFATDS TARGET:AFATDS POS-RPT:CBFSA POS-RPT:GCCS-A POS-RPT:MCS 2 2 2 2

37 CyberQuest Cyberspace Threat Emulation (AKA Red Teaming)
2016/03/17 Ken Groombridge CTR Support, Cyber Battle Lab US Army Cyber Center of Excellence & Fort Gordon

38 CyberQuest Threat Emulation
Cyberspace Threat Emulation is required to stimulate the sensors in order for them to produce output which in turn is ingested and reported by cyberspace situational awareness tools.

39 CyberQuest Threat Emulation
Goal: Introduce a plethora of realistic events on the network to stimulate the sensors as to ascertain the information provided by cyberspace situational awareness tools

40 CyberQuest Threat Emulation
Not the Goal: Determine the security posture of programs of record, sensors, or cyberspace situational awareness tools Cyberspace situational awareness tools will not be in the scope of the exercise; however, these tools should be programmed with security in mind

41 CyberQuest Threat Emulation
How will this be accomplished: There will be representative client systems (physical/virtual/both) on the network which will be within scope Traffic will be sent to and from these systems in order to provide stimulus for sensors

42 CyberQuest Threat Emulation
Event Generation: Threat emulation events will be preconfigured/scripted so that they can be accurately repeated for each scenario

43 CyberQuest Threat Emulation
Ken Groombridge COM: (706) DSN: FAX: (706)

44 TRAINING Execution Soldier
Time needed to train one soldier to use your technology Number of personnel requiring training to properly demonstrate technology Equipment available for training Number of trainers available to conduct training Training location requirements (computer for power point, indoors, outdoors, tables, etc.) Execution Soldiers Special equipment needed to use technology Equipment available for operations Number of technicians available for support during the exercise Operational restrictions (not shock protected, not water proof, etc.) CBL Staff Special equipment needed to support technology (RF white noise needed, SRW network required, etc.) Interoperability requirements (specific feeds or networks needed to pass data, etc.)


Download ppt "Cyber Quest 2016 Cyber Quest 2016 Coordinated Working Group (CWG) #2"

Similar presentations


Ads by Google