Cyberspace: A Fragile Ecosystem - Black Hat Briefings

Transcription

Cyberspace:A Fragile EcosystemRobert F. LentzDeputy Assistant Secretary of DefenseCyber, Identity and Information AssuranceUnclassified//FOUO1

UNCLASSIFIEDDependence on CyberspaceUNCLASSIFIEDUnclassified//FOUO2

Looking Ahead . . . Looking BackWaves of IT Industry Growth in the Information ber of Users (Millions)Network ‐Centric1000Law ofTransforma4onContent ‐CentricPC‐Centric100Systems ‐Centric10119701980199020002010Source: David Moschella, “Waves of Power”, 1997Unclassified//FOUO20202030

Looking Ahead . . . Looking Back(alternate story)Unclassified//FOUO4

Paradigm ShiftUnclassified//FOUO

UNCLASSIFIEDAre you a Starfish or a Spider? Starfish Peered Adaptive Resilient Spider Hierarchical Resists Change FragileUNCLASSIFIEDUnclassified//FOUO6

Cyber Risk ManagementCyberTime & EnvironmentInformationContent & ServicesIdentityIndividuals, Organizations,EquipmentUnclassified//FOUO

UNCLASSIFIEDVignette: The Recapture of FallujahUNCLASSIFIEDUnclassified//FOUO8

UNCLASSIFIEDVignette: World War II CryptographyUNCLASSIFIEDUnclassified//FOUO9

Shift in Strategic FocusFROMTO Protect Information Ensure Operational Success Static Pre-Placed Defenses Dynamic Network andInformation Operations Proprietary Point Solutions Policy-Based Enterprise People Intensive Integrated Services Fragile InformationTechnology Resilient Cyber EcosystemUnclassified//FOUO

Toward a Resilient Cyber EcosystemSecure Information AccessEEResilientDDCCBBAASpeed of ActionAAReactive &ManualSecurityadministrators followrules and do theirbest to “put out fires”BBCCTools-BasedInteroperableTools andtechnologies areapplied piecemealto assist people inreacting fasterLoosely integratedtools exchange data toassist people withcyber situationalawarenessDDEEPolicy-BasedResilientThe enterpriseinstantiatessecurity policy,illuminates events andhelps the operatorsfind, fix, and target forresponseEnterprise optimizesservice to user by todynamically isolatingand containing effects –including in supplychain and underlyinginfrastructure11Unclassified//FOUO

Trends, Challenges, and Opportunities Strengthen Network UnderpinningsAssure Software & SystemsManaging Attack SurfacesReducing AnonymityImproving Cyber AwarenessAutomating Security ContentMission Based ArchitecturesUnclassified//FOUO

It’s not just about technology . . .National Centers of Academic Excellencein Information Assurance Education106 Colleges & Universitiesin 38 States & DCThe US Cyber Challenge – discover, train andrecruit the best talent in the countryUnclassified//FOUO

UNCLASSIFIEDCulture Change for Cyberspace . . .UNCLASSIFIEDUnclassified//FOUO14

Unclassified//FOUO Cyberspace: A Fragile Ecosystem 1 Robert F. Lentz Deputy Assistant Secretary of Defense Cyber, Identity and Information Assurance