29 janvier 2020 | International, C4ISR, Sécurité

New cybersecurity standards for contractors could be finalized this week

The first version of the new cybersecurity requirements the Pentagon wants military contractors to follow could be finalized as soon as Jan. 31.

Katie Arrington, chief information security officer for the Office of the Under Secretary of Defense for Acquisition and the point person for the Cybersecurity Maturity Model Certification (CMMC), told an audience Jan. 28 that she will have the requirements by the end of the month.

The CMMC is a tiered cybersecurity framework that grades companies on a scale of one to five. A score of one designates basic hygiene and a five represents advanced hygiene. Arrington said Jan. 28 that the lowest level will become the default for Department of Defense contracts and will include basic tasks such as changing passwords.

Speaking at an event hosted by the law firm Holland and Knight, Arrington said the new standards won't be in effect overnight. The auditors and assessors who will grade companies need training and new contracts will be slowly phased in.

“The likelihood that any awards will be made until 2021 [of the certification] is, I would say, highly unlikely,” she said. She noted that companies are not required to have CMMC certification until the time of award. “You have a full year to get yourselves set, to get yourself in position.”

According to one slide in her presentation, all new contracts will have the requirements in fiscal year 2026. Arrington expects 1,500 companies to be certified by the end of 2021.

The requirements are expected to be free of jargon and overly technical language that can often make military documents befuddling.

“I asked if it could be created on an eighth grade reading level. Why? Because I'm not smart and I owned a small business and I fell prey to this,” she said. “I needed it to be in something that anybody could adapt to. We hear companies all the time say my nephew is doing my cybersecurity. I need your nephew to read what I need him to do.”

Arrington promised that the requirement would not become a simple checklist, because if it does “I've failed. We failed.”

Moreover, she suggested the framework be reevaluated at least once each year because cyber threats will continue to evolve.

https://www.fifthdomain.com/dod/2020/01/28/new-cybersecurity-standards-for-contractors-could-be-finalized-this-week/

Sur le même sujet

  • US State Dept OKs potential sale of tactical missiles to Canada

    18 août 2024 | International, Aérospatial

    US State Dept OKs potential sale of tactical missiles to Canada

  • Lebanon’s Air Force to arm newly refurbished AB 212 helicopters

    14 janvier 2020 | International, Aérospatial

    Lebanon’s Air Force to arm newly refurbished AB 212 helicopters

    By: Agnes Helou BEIRUT — The Lebanese Air Force has refurbished an Agusta-Bell AB 212 helicopter as part of a proof of concept, and will now begin a five-year project to revive the fleet with five operational helicopters. “The twin engine choppers have been out of service since 1990. We are bringing them back to service to perform [multiple] tasks, from military missions to firefighting missions and search and rescue,” Brig. Gen. Ziad Haykal, the commander of the Air Force, told Defense News. Due to the similarity between the AB 212 and the Huey II, which is currently operational with the fleet, the Air Force can use spare parts and technical expertise gained from the latter helicopter for local refurbishment, the general added. Indeed, local refurbishment will reduce the cost of the project by 60 percent because the service is not sending the helicopters back to the manufacturer. “The expected operational life span of the helicopters is 20 years, and it is worth noting that we obtained technical references for the project from Leonardo company, the manufacturer of this type of choppers,” Haykal said. “We are anticipating to operate these twin-engined helicopters in the missions to help secure oil and gas installations above Lebanese waters, particularly security preservation of the exclusive economic zone, by air or by sea.” The five helicopters are expected to be equipped with 70mm Hydra rockets, .50-caliber machine guns and 250-kilogram bombs, much like the Huey II during missions at the Nahr el-Bared refugee camp in 2007, a Lebanese official told Defense News on a condition of anonymity. Fatah al-Islam militant launched at attack on the Lebanese Army from the Palestinian refugee camp in North Lebanon in May 2007. The Army struck back with modified Huey helicopters that were able to deploy 250-kilogram bombs. The Hydra rockets and their integration on the helos are part of American military aid to Lebanon, the official said. The head of Lebanon's military, Gen. Joseph Aoun, oversaw the refurbishment project, which was launched at Beirut Air Base. https://www.defensenews.com/air/2020/01/13/lebanons-air-force-to-arm-newly-refurbished-ab-212-helicopters

  • COVID-19 Infects Defense Industry With F-35 Production Slowdown

    3 juin 2020 | International, Aérospatial

    COVID-19 Infects Defense Industry With F-35 Production Slowdown

    Steve Trimble May 27, 2020 This was supposed to be a relatively easy year for Lockheed Martin's F-35 production. As 2020 began, the stealth fighter program's three-year growth spurt had subsided after annual deliveries more than doubled between 2017 and 2019. Lockheed planned to deliver 141 F-35s in 2020, only seven more than in 2019. But the F-35 supply chain is not immune from the global disruption caused by the COVID-19 pandemic. After signaling during a first quarter earnings call in April that a production slowdown was likely, Lockheed confirmed the impact on May 19. The company issued a new forecast of 117-124 F-35 deliveries this year. If Lockheed is unable to recover in the second half, the slowdown would mark the first year-over-year decrease in F-35 deliveries since the program began. “However, we will accelerate production when we return to pre-COVID-19 conditions and could see this number decrease,” the company says. The company's new financial guidance reflects the lower F-35 delivery total, with net sales for the year falling to a range of $62.25-64 billion from $62.75-64.25 billion. Other large F-35 suppliers include Northrop Grumman (center fuselage, radar), Raytheon Technologies (engine, distributed aper-ture system) and BAE Systems (aft fuselage, electronic warfare suite). It was not immediately clear which customers and variants would be affected by the potential shortfall of 18-24 F-35 deliveries in 2020. The Defense Department is closely watching the F-35, its single-largest production system. So far, senior acquisition officials expect the overall impact of the novel coronavirus on weapon system production to be manageable. But the Pentagon leadership considers the military aircraft industry an exception. Although demand and domestic U.S. military spending remain intact, the military aviation supply chain's links to the collapsing commercial aircraft market is causing delays. “I think [military] aviation has had a more acute sensitivity to supplier disruptions, largely driven by the massive upheaval in the commercial aviation market,” said James Geurts, assistant secretary of the Navy for research, development and acquisition. “Many of the aerospace companies were blended between military and commercial, and with commercial just falling through the floor, their abilities to stay open and keep their workforce has been a little bit more challenged.” Another sector Geurts is watching is the market for command, control, communications and computers and intelligence (C4I). “We're trying to track all of it,” he says. “But the most immediate impact we've seen has been on aviation.” Lockheed's F-35 assembly line in Fort Worth was hit hard by the COVID outbreak in mid-April. One employee, Claude Daniels, died after reporting COVID-19-related symptoms to a supervisor. Another F-35 employee, who survived, broadcast a Facebook Live video from his hospital bed, pleading with his unionized co-workers to sanitize their workspaces even if it is not in their job description. The company's management has said that the F-35 assembly line adopted new protocols in response to the COVID-19 pandemic, which included regularly sanitizing equipment and quarantining employees exposed by co-workers or others to the virus. The COVID-19 response is not the only pressure on the F-35's production system. Lockheed exceeded the overall delivery target by three aircraft in 2019, but slower production of the less mature F-35C airframe nearly caused the company to miss the annual goal. To compensate, Lockheed moved up deliveries of four F-35As originally scheduled for 2020 to the end of 2019, allowing the company to beat the delivery target by three aircraft instead of missing it by one. Before the impact of the virus, the F-35's global supply chain was already strained by the three-year production ramp-up from 2017 to 2019. Late part deliveries jumped to 10,000 in 2019 from 2,000 in 2017, according to a May report by the Government Accountability Office (GAO). Monthly parts shortages, meanwhile, leaped to 8,000 in July 2019 from 875 a year before, the GAO says. The shortages represent a fraction of the 300,000 parts in each F-35, but the trend offered a glimpse of the pressure on the supply chain to meet demand during the ramp-up. https://aviationweek.com/defense-space/supply-chain/covid-19-infects-defense-industry-f-35-production-slowdown

Toutes les nouvelles