CYBERSECURITY

& Information Systems Digest

6 MAY 2025

CSIAC collects and publishes articles related to our technical focus areas on the web to share with the DoD community.

soldier reviewing notes while in front of laptop computer
READ OUR LATEST STATE-OF-THE-ART REPORT (SOAR)

CSIAC is pleased to announce publication of our latest SOAR “Cybertest and Evaluation of Defensive Cyberoperations in the U.S. Army.”

This SOAR delves into the cybersecurity testing activities for defensive cyberoperations, which include discovery, vulnerability analysis, continuous monitoring, intel support, mitigation/remediation, event correlation, penetration testing, threat emulation, and malware analysis.

The report was written by Tiffany Williams, Joseph Matthew Friar, Olutoye Sekiteri, and Philip Payne.

Click here to read the SOAR:  https://csiac.dtic.mil/state-of-the-art-reports/cybertest-and-evaluation-of-defensive-cyberoperations-in-the-u-s-army/.

FEATURED ARTICLE

Privacy Framework wheel (Credit: N. Hanacek/NIST)

NIST Updates Privacy Framework, Tying It to Recent Cybersecurity Guidelines

How can society benefit from the use of personal data while also protecting individual privacy? Five years after debuting guidelines that can help organizations balance these goals, the National Institute of Standards and Technology (NIST) has drafted a new version of the NIST Privacy Framework intended to address current privacy risk management needs, maintain alignment…

Read More...

Featured Notable Technical Inquiry

Security-Conscious Password Behavior From the End-User’s Perspective

Even though technical solutions for security problems are widespread, there are no adequate security measures against precarious user behavior.  Even if hashing and encrypting are used correctly in masking the passwords, attackers can bypass these strong points by going for the weakest link.  Most likely, this will happen through sharing a password, using an already leaked password, or creating a feasibly guessable password (Olmstead and…

Learn More

FUTURE WEBINARS

CSIAC hosts live online technical presentations featuring a DoD research and engineering topic within our technical focus areas.

A Journey From CRISP to ATLAS

Hosted by: Eric Kaden

May 22, 2025 12:00 pm
DID YOU MISS OUR LAST WEBINAR?

UPCOMING WEBINAR

A Journey From CRISP to ATLAS

This webinar presents an evolutionary approach in cybersecurity analytics, transitioning from the Cyber Readiness Inspection Statistics Platform (CRISP) to the Automated Threat Landscape Assessment System (ATLAS). CRISP initially revolutionized cybersecurity readiness by converting STIG-based Cyber Operational Readiness Assessment (CORA) data into actionable insights via MITRE ATT&CK Navigator heatmaps, providing users with comprehensive statistical processing for…

Read More...

UPCOMING EVENTS

Emerging Technologies for Defense Conference & Exhibition

Explore the innovations that will help shape national security for the next century at NDIA’s flagship Emerging Technologies Conference! Hear directly from technology leaders in government, defense industry, the commercial sector, and academia on cutting-edge…

National Cyber Summit

National Cyber Summit is an innovative cybersecurity-technology event, offering educational, collaborative, and workforce development opportunities for industry visionaries and rising leaders. NCS provides diverse focus areas, speakers, and accessibility. Held in Huntsville, Alabama, the Summit…

ADEC 2025

ADEC enables leaders of the national security analysis community to strengthen existing partnerships, seed new ones, and share strategies and best practices across sectors. Attendees represent the U.S. military, government, intelligence community, industry stakeholders, university-affiliated…

CyberBay 2025

CyberBay 2025 is the inaugural event connecting Florida’s technology, academic, military, and government sectors in a shared mission to continue the Tampa Bay Region’s evolution as the crossroads where cybersecurity, artificial intelligence (AI), and national…

ISC2 Security Congress 2025

The 13th annual ISC2 Security Congress will be hosted live at the Gaylord Opryland Nashville, along with a hybrid virtual option. The keynote session will feature Phil Venables, the Strategic Security Advisor at Google. There…

Voice From the Community

Robert_Kirby-1x1
Robert W. Kirby, CISSP – ISSEP

Systems Security Engineering Lead (SSE-L) for Program Management Activity (PMA) 271 Airborne Strategic Command, Control and Communications Program Office

Robert is responsible for the development of the Program Protection Plan, defining Program and Technology Protection of the Take Charge and Move Out (TACAMO) acquisition program. Additional responsibilities include technical support for secure software development, cybersecurity supply chain risk management, security and risk analysis and assessment of systems, applications and networks and developing security design requirements for new systems.

PMA 271 is currently in the process of recapitalizing the TACAMO mission to replace the aging E-6B that has been flying the mission since 1989.

Want to be featured in our Digest?

Submit your "Voice From the Community"