17 juin 2019 | International, Sécurité, Autre défense

How contractors can guard against cyber intrusions

By:

Contractors, facing an increasing barrage of cyber intrusions by foreign entities, should protect themselves using traditional regulatory approaches but also new techniques such as blockchain and artificial intelligence, according to a new report from Deloitte.

As companies in the defense supply chain began following the Defense Federal Acquisition Regulation Supplement (DFARS) cybersecurity regulations and the Department of Defense started to assess how adoption went, “we started to form our own ideas on what we see as emerging issues and solutions that [can] ... improve the cybersecurity posture against our enemies,” Jeff Lucy, managing director in cyber risk services practice at Deloitte, told Fifth Domain.

On the regulatory side, the report, titled “Third-party risk management: Cybersecurity in the Defense Industrial Base,” says prime contractors must comply with the defense regulations measuring their companies' compliance with national cybersecurity standards. They should also create awareness among their subcontractors and smaller companies by providing training. Third, primes should create third party assessment programs for performing cybersecurity evaluations of their suppliers.

However, the paper also suggests non-regulatory approaches, including automating supply chain functions, integrating blockchain to boost cybersecurity and using artificial intelligence to gain real time visibility into the threat landscape.

Lucy noted that the Pentagon is beginning to take these regulations seriously and the problems aren't going away.

“In 2019 we've seen that the DoD has started to move forward, start to take action to enforce their expectations around the DFARS requirements,” he said. “It's clear now with the steps that we're seeing with [Undersecretary of Defense for Acquisition and Sustainment] Ellen Lord getting the [Defense Contract Management Agency] on board to start auditing the suppliers processes for assessing their suppliers.”

Cyber intrusions into the supply chains of defense contractors have become more prevalent in recent years. In a recent example, the Chinese government was blamed for a series of hacks and while the information they stole was not technically classified, in aggregate, it was considered to be quite damaging to the U.S.

This year's Department-wide annual report on Chinese military activity included a new section highlighting that China's exfiltration of sensitive military information from the defense industrial base could allow it to gain a military advantage.

Ultimately, Lucy said the solution to the supply chain and cybersecurity for the defense industrial base is manageable.

“Most primes, from what I've seen with interactions with our customers, have put some level of the basic elements for a supplier assessment program in place already,” he said. “They've done some level of canvassing their suppliers, critical suppliers, taking a risk based approach to understand whether their suppliers are in adopting” standards.

https://www.fifthdomain.com/industry/2019/06/14/how-contractors-can-guard-against-cyber-intrusions/

Sur le même sujet

  • Hungary is Rheinmetall’s launch customer for the Lynx fighting vehicle

    14 septembre 2020 | International, Terrestre

    Hungary is Rheinmetall’s launch customer for the Lynx fighting vehicle

    By: Sebastian Sprenger COLOGNE, Germany — Rheinmetall announced it has found the first-ever taker for its new Lynx infantry fighting vehicle, with Hungary buying 218 copies for more than $2 billion. Company executives celebrated the order as a key deal for the company, following an unsuccessful bid for the U.S. Army's Bradley Infantry Fighting Vehicle replacement program last year. “The Lynx's market breakthrough is a major success for us,” Rheinmetall CEO Armin Papperger said in a statement. “And the fact that we were able to convince Hungary — an important EU and NATO partner — to choose this innovative vehicle makes this success all the greater.” Hungary has been on a military shopping spree recently, with billions of dollars spent on American missile-defense weaponry and German Leopard 2 tanks in the most modern configuration. At the same time, the government of Prime Minister Victor Orban is at odds with much of the European Union over its curbing of press freedoms and sidelining parliamentary oversight under the pretext of a state of emergency in response to the spread of COVID-19. Rheinmetall's €2 billion (U.S. $2.4 billion) contract with the Hungarian government, signed in Budapest, is for 218 Lynx KF41 vehicles, nine Buffalo armored recovery vehicles, as well as spares and simulators, the company wrote in a statement. The Lynx vehicles will be equipped with Rheinmetall's manned Lance 30mm turret. Production is slated for two phases, with the first 46 Lynx copies and the nine Buffalos to be built in Germany and delivered by early 2023. A second batch of 172 Lynx vehicles will then roll off a future production line in Hungary, for which the company established a joint venture with the Hungarian government last month. Rheinmetall's newest vehicle is also in the running in the Czech Republic as well as Australia, where the company has something of a lock on much of the land modernization program. https://www.defensenews.com/global/europe/2020/09/11/hungary-is-rheinmetalls-launch-customer-for-the-lynx-fighting-vehicle

  • Le financement de l’Espagne fait (enfin) décoller le programme de drone militaire européen

    1 février 2022 | International, Aérospatial

    Le financement de l’Espagne fait (enfin) décoller le programme de drone militaire européen

    L'Espagne s'engage à verser une contribution de 1,75 milliard d'euros au programme Eurodrone cofinancé avec l'Allemagne, la France et l'Italie....-aero-spatial

  • UAE could get up to 50 F-35s in $10B sale

    30 octobre 2020 | International, Aérospatial

    UAE could get up to 50 F-35s in $10B sale

    By: Joe Gould , Aaron Mehta , and Valerie Insinna WASHINGTON — The U.S. State Department is backing the sale of as many as 50 F-35 joint strike fighters to the United Arab Emirates in an arms deal worth an estimated $10.4 billion, according to multiple reports. The news came as the Trump administration informally briefed Congress on its plan to sell the advanced F-35 fighter to the United Arab Emirates Thursday. It follows weeks of speculation and behind-the-scenes debates about how to structure an F-35 deal with the UAE without cutting into Israel's qualitative military edge. If the sale is permitted by Congress and the UAE opts to buy the full number of F-35A conventional takeoff and landing variants covered by the deal, it would have parity with Israel, which has 50 F-35 “Adir” jets under contract, although the country is considering buying 25 more. (The quantities and values of such deals often change from initial estimates.) Amid reports the Trump administration is fast-tracking the F-35 sales, key Democratic lawmakers are continuing to urge a deliberate approach, citing concerns for Israel's security and the security of the warplane's sensitive technology. “This technology would significantly change the military balance in the Gulf and affect Israel's military edge," House Foreign Affairs Committee Chairman Rep. Eliot Engel, D-N.Y., said in a statement. "The F-35 Joint Strike Fighter is a game-changing stealth platform boasting advanced strike capability and unique sensor technology. The export of this aircraft requires very careful consideration and Congress must analyze all the ramifications. Rushing these sales is not in anyone's interest.” The consultations came days after Israel said last week it will not oppose the U.S. sale of “certain weapon systems,” widely considered to mean the F-35. That followed an agreement between Israel and the United States to upgrade its capabilities to preserve its edge. Engel said he plans to weigh the U.S. legal obligation to maintain Israel's military superiority in the region, as well the question of whether the sale would drive demands from other Middle Eastern nations to buy the F-35 in exchange for normalized ties with Israel. (The Trump administration recently brokered such a pact between Israel and the UAE.) “Israel currently has exclusive access in the region to the F-35, which has guaranteed its military edge over the last several years. As Congress reviews this sale, it must be clear that changes to the status quo will not put Israel's military advantage at risk,” Engel said. “This technology also must be safeguarded from our greatest global adversaries. With Russia and China active in the region, the American people will require unimpeachable assurances that our most advanced military capabilities will be protected.” For decades, the State Department has informally consulted with the Senate Foreign Relations and House Foreign Affairs committees before formally notifying Congress of sales, which affords lawmakers a chance to block them. Though lawmakers typically consider such deliberations sensitive and rarely speak publicly about them, Engel broke the news Congress had been informally notified. Assistant Secretary Bureau of Political-Military Affairs R. Clarke Cooper told reporters Wednesday the department plans to honor that process. Though Reuters has reported there is a goal to have a letter of agreement between the U.S. and the UAE by Dec. 2, Cooper said “there are no dates associated with the work that's being done.” He declined to provide specifics of a potential deal and the State Department declined to comment on Thursday. F-35 prime contractor Lockheed Martin referred questions to the State Department. Israeli opposition would be fatal to the deal in Congress, where Israel enjoys strong support. Two key Democrats introduced legislation earlier this month that would place restrictions on F-35 sales to Middle Eastern nations to address their concerns about both the Israel's security and the security of F-35 technology. On Thursday, Engel invited colleagues to join him in legislation, “to ensure that the sale of these types of weapons adhere to our most important national security goals.” https://www.defensenews.com/2020/10/29/uae-could-get-up-to-50-f-35s-in-10b-sale/

Toutes les nouvelles