Back to news

February 27, 2024 | International, Aerospace

Elbit Systems Awarded an Approximately $600 Million Contract to Supply Systems for the Redback IFV Under the Australian Land 400 Phase 3 Project

This project aims to deliver advanced protection, fighting capabilities and sensors suite to the Redback Infantry Fighting Vehicles (IFV) for the Australian Army.

https://www.epicos.com/article/790863/elbit-systems-awarded-approximately-600-million-contract-supply-systems-redback-ifv

On the same subject

  • One defense strategy, two drastically different budgets

    May 7, 2024 | International, Aerospace

    One defense strategy, two drastically different budgets

    The Air Force wants to trim procurement funds, but boost research and development. The Navy wants money to cover ongoing operations at the expense of R&D.

  • Making DoD Security Operations Centers More Effective: Security Automation

    July 13, 2020 | International, C4ISR, Security

    Making DoD Security Operations Centers More Effective: Security Automation

    Security orchestration, automation, and response (SOAR) software frees DoD analysts to apply cognitive skills to actually fixing problems. By SPLUNKon July 10, 2020 at 6:39 PM The Defense Department's most recent National Defense Strategy (NDS) describes a complex military environment characterized by increased global disorder, a decline in the long-standing rules-based international order, myriad threats from rogue states like Iran and North Korea, great power peers like China and Russia, malicious hackers, and terrorists in places like Yemen. One of the military domains where this dynamic is most evident is cyberspace, where bad actors arguably have comparable or better cyber capabilities than us. “This increasingly complex security environment is defined by rapid technological change, challenges from adversaries in every operating domain, and the impact on current readiness from the longest continuous stretch of armed conflict in our nation's history,” the NDS states. “In this environment, there can be no complacency—we must make difficult choices and prioritize what is most important...” More cybersecurity threats mean more cyberattacks on DoD networks. Essye Miller, former principal deputy for the DoD CIO, said recently that attacks on department networks are surging and that the attack surface is expanding as adversaries target DoD employees working from home during the coronavirus pandemic. This surge in cyberattacks means that analysts working in DoD information security operations centers (SOCs) are being bombarded with security alerts. With so many events, it's hard for them to differentiate true alerts from false ones, and to determine which events are priorities to address immediately. Through no fault of their own, they end up chasing their tail when their time could be better spent on mission-critical activities that directly support warfighters. The solution for this domain is automation. While popular in commercial software segments for years—including SalesForce automation, marketing automation, human resources automation, and IT automation—DoD security teams are just beginning to realize the benefits of what's known as security orchestration, automation, and response. The Value of Security Automation “Automation is nothing new to the military. The Defense Department is making great inroads into DevSecOps, for example,” explained Drew Church, senior security advisor at Splunk, referring to an agile software development process where software is quickly developed, tested, and improved over weeks and months rather than years. “A key, fundamental concept of DevSecOps is automation. The point of automation in DevSecOps is to bring together different technologies, tools, people, and processes to develop code and get it out to the war fighter more rapidly. “Automation provides that same capability inside IT operations procedures, security operations procedures, and other business processes,” said church. “It does this in a reliable and repeatable fashion every time, and at speed and scale.” Splunk's SOAR solution is called Phantom. It helps security teams work to identify, analyze, and mitigate threats facing their organizations. It can be used to improve efficiency, shorten incident response times and reduce the growing backlog of security incidents, even when there's a shortfall of DoD security personnel to analyze the volume of daily security alerts. Phantom does so by integrating teams, processes, and tools, and by automating tasks, orchestrating workflows, and supporting a range of SOC functions to include event and case management, collaboration, and reporting. In essence, it frees SOC analysts of the usual Tier I-type activities of gathering data from the security information and event management (SIEM) platform, prioritizing these alerts, performing triage to determine if an alert is real or a false alarm, configuring and managing security monitoring tools, and generating trouble tickets. Instead, Splunk Phantom lets them spend more time on the value-added work of Tier II SOC analysts. This includes actually investigating the trouble tickets, responding to incidents, and leveraging threat intelligence to better understand the threat and be proactive rather than reactive. “Focusing on the bureaucracy of security rather than the actual doing of security limits the effectiveness of security analysts,” said Church. “Better to free them of the tasks that can be easily automated like reviewing IP addresses, domain names, and URLs so that they can be force multipliers in conducting the thoughtful work needed to protect DoD networks. “That automation is done for them in Phantom. It let's analysts focus on investigating and taking remediation or mitigation steps as appropriate. Where humans excel is in actually thinking through a problem. Copying and pasting from websites, emails, and reports is not the most effective use of a highly paid, resource-limited talent pool.” Integration With Existing SOC Tools SOC analysts make their decisions by gathering information. They sometimes review classified military intelligence, but usually they look at a lot of open-source information and data from commercial off-the-shelf products from myriad providers of cybersecurity threat intelligence products. Some of the common ones that are relevant to the Defense Department include: McAfee's ePolicy Orchestrator, which the DoD refers to as Host Based Security Systems (HBSS); and Tenable's Security Center, which is known inside the DoD as Assured Compliance Assessment Solution (ACAS). Splunk Phantom has more than 300 out-of-the-box integrations with products like HBSS and ACAS. “Being integrated with each of those products permits the analyst to get the information they need without having to go to another browser window, or another tab, or a different computer,” said Church. “Phantom automatically brings all that data to the analyst. That takes somebody who spends most of their time copying information from page A into system B and lets them make more rapid and accurate determinations about the threat.” Through the use of APIs (application programming interface), that same integration is also found with government off-the-shelf (GOTs) solutions that haven't before been integrated with Splunk Phantom because there was never a request to do so. The same goes for a custom app created by a DevSecOps shop like the Air Force's Kessel Run project in Boston, for example. Automating these vital but drudgerous processes also pays dividends during both staffing shortfalls and times of surge, and brings consistency to SOC activities. Military service members are constantly rotating and changing duty stations; senior leadership turns over regularly. Contractors have to be relied upon to provide continuity from tour to tour. That means that SOC processes that were well oiled on a Monday may no longer be operating smoothly on Friday because of a change of command. Or maybe there is a compelling event that grabs everyone's attention. Or possibly there are legal or policy requirements that need to be addressed, and though they don't add mission value they still must be completed. Automation by Splunk Phantom smooths out the bumps associated with those all-to-common scenarios by keeping the flow of vital data moving to where it can be acted upon best. “The computer's running the marathon for you so that you are free to sprint and swarm on the problems that need the most resources at any particular time,” said Church. The Takeaway For security analysts, incident handlers/responders, IT operations managers, security operations managers, and forward-leaning business process experts, Splunk Phantom is all about removing barriers so people can get back to accomplishing the mission, maximizing productivity of skilled personnel and organizations. “For anybody that has a business process, a mission process, an IT operations process, or a security process and wants to free those skilled workers to get back to what you brought them onboard to do, we can help you with that,” said Church. “We do that through orchestration, we do that through automation. We bring in collaboration, and we're able to do that at scale because of the value that a company like Splunk brings to the table. By being able to have a rich ecosystem of partners and support across the board, we're able to do that even with differences from organization to organization.” Splunk Phantom addresses technology-based processes, and orchestrates and automates those processes to get people back to doing what they do best. https://breakingdefense.com/2020/07/making-dod-security-operations-centers-more-effective-security-automation/

  • Insufficient missile defense funding would leave Americans vulnerable

    February 26, 2020 | International, Aerospace

    Insufficient missile defense funding would leave Americans vulnerable

    The U.S. Missile Defense Agency submitted its report on unfunded priorities to Congress last week, which includes a number of priorities worth more than $1.1 billion. The list demonstrates the tangible consequences of a flat Pentagon budget request and provides a road map for lawmakers to ensure that the U.S. homeland and America's forward-deployed troops have sufficient missile defense protection. The Trump administration requested $705.4 billion for the Department of Defense for fiscal 2021, a level that fails to keep pace with inflation. Accordingly, the DoD is only requesting $9.2 billion for FY21 for the MDA — more than an 11 percent reduction from the FY20 enacted amount of $10.4 billion. The National Defense Authorization Act requires the MDA to submit a list to Congress of items not included in the administration's budget request but that are “necessary to fulfill a requirement associated with an operational or contingency plan of a combatant command or other validated requirement.” The list includes programs that combatant commanders genuinely need and would have included if additional resources were available. The MDA's top unfunded priority for FY21 is $231 million for 10 additional Standard Missile-3 Block IIA missiles. The SM-3 IIA missile is designed to intercept medium- and intermediate-range missiles. This additional purchase would bring the total number to 24 missiles a year, which MDA calls the “maximum sustainable production rate per year without further investment.” In addition to the SM-3 IIA's vital existing capabilities against medium- and intermediate-range missiles, the DoD believes that the missile could potentially be adapted to intercept intercontinental ballistic missiles. In response to a mandate in the NDAA, the MDA plans to conduct a flight test this spring, known as FTM-44, to determine whether an SM-3 IIA could intercept an ICBM. If successful, the SM-3 IIA could then provide an additional and complementary layer of protection for the U.S. homeland against a limited ICBM attack from an adversary such as North Korea. Consequently, keeping the SM-3 IIA production line at full speed would enable the U.S. to meet combatant commander requirements for medium- and intermediate-range ballistic missile defense. And if the test this spring is successful, optimized ongoing production would also allow the DoD to more quickly field SM-3 IIAs for homeland defense against ICBMs. The MDA's second- and third-highest unfunded priorities relate to the Terminal High Altitude Area Defense system. These include $319 million to procure an eighth THAAD battery for the United States and $30 million to procure trucks required to support THAAD systems. The THAAD is a rapidly deployable land-based missile defense system designed to intercept incoming ballistic missiles during their terminal (or final) phase of flight. Since the program was initiated, the MDA reports, THAAD has completed 15 successful intercepts in 15 attempts. THAAD uses hit-to-kill technology to destroy an incoming warhead. It is effective against short-, medium- and some intermediate-range ballistic missile threats. The DoD can transport the THAAD system by air, land or sea. Iran's January ballistic missile attack on U.S. service members at two bases in Iraq highlighted the lack of sufficient U.S. ballistic missile defense capacity. With no U.S. ballistic missile interceptors in range, U.S. forces could only watch and wait for impact. Had a THAAD system been deployed in the region, the U.S. could have intercepted the Iranian ballistic missiles and better protected U.S. troops. Acquiring an eighth THAAD battery makes not only operational sense, but also financial sense. Saudi Arabia is purchasing a large quantity of THAAD systems. A U.S. and Saudi “synchronized” purchase would enable the U.S. to benefit from the associated economies of scale. The fourth priority on MDA's unfunded list is $39 million to “develop technology and advanced command and control to integrate networked sensors to detect and track advanced cruise missile threats.” As Gen. Terrence O'Shaughnessy, the commander of Northern Command, highlighted in congressional testimony on Feb. 13, the U.S. homeland remains incredibly vulnerable to a cruise missile attack. He testified that “advanced cruise missiles now carried by Russian aircraft and submarines present a growing challenge to our current sensor networks and have the range and accuracy to strike military and civilian targets throughout the United States and Canada.” O'Shaughnessy argued that investments in cruise missile defense capabilities “are necessary to defend our vital facilities and infrastructure, preserve our national ability to project power abroad, and help to safeguard our citizens and vital institutions.” That is exactly what MDA's unfunded priority would do, and the burden of proof should be on those who argue that it should not be funded. A fundamental responsibility of the federal government is to protect the American people. The MDA's report on unfunded priorities to Congress demonstrates that the agency requires additional funding from Congress to fulfill this important responsibility. Bradley Bowman is the senior director for the Center on Military and Political Power with the Foundation for Defense of Democracies. https://www.defensenews.com/opinion/commentary/2020/02/25/insufficient-missile-defense-funding-would-leave-americans-vulnerable/

All news