16 juillet 2020 | International, C4ISR, Sécurité

The key to securing the defense industrial base is collaboration

Teresa Shea

With cyber threats constantly evolving and increasing in sophistication, a strong national cybersecurity posture has never been more important. COVID-19 is causing an uncertainty across industry sectors, and criminals as well as adversaries are increasing their cyber-attacks and taking advantage of our increased digital work from home dependence. It is especially important to protect the organizations that comprise the U.S. Defense Industrial Base.

Defined as the “worldwide industrial complex that enables research and development, as well as design, production, delivery, and maintenance of military weapons systems, subsystems, and components or parts, to meet U.S. military requirements,” Defense industrial base networks host mission-critical information and operational assets vital to national security. If infiltrated, the ramifications could plague the U.S. national security strategy, hamper our warfighting edge, create chaos within the critical infrastructure and ultimately undermine adversary deterrence.

To effectively protect the Defense Industrial Base, the government and private sector must both work to secure the U.S. critical infrastructure. Organizations should prioritize collaboration to bolster the nation's cyber resiliency and collectively defend against malicious cyber actors' intent on doing us harm.

Proactively defend networks

It's widely known that, in an ideal world, organizations should stop threats before they reach their targets. However, to deter effectively, organizations need to have real-time situational awareness of their network infrastructure and supply chain, which can be a difficult undertaking.

Threat intelligence information sharing between the government and the private sector companies that comprise the Defense Industrial Base is essential to achieving a strategic view of an advanced threat actor.

Today, targets can only know what is happening to their own assets without insight into the attacker's intent. The Defense Industrial Base Cybersecurity Program allows both the DoD and private companies to share cyber threat information, mitigation and remediation strategies, which helps key players in both sectors increase cyber situational awareness and be more proactive in their security efforts. However, this program is currently voluntary, meaning that the crucial information uncovered within the program is only available to those who proactively join the program. Moving forward, both the public and private sectors must work to enact policies that require collaboration. It is no longer acceptable to rely on incident response protocols, performance assessments of existing systems and one-off reactions to threats without coordination. Increased information sharing is key to staying one step ahead of our adversaries.

Follow government-suggested guidelines

The U.S. government has dedicated time and resources to help secure the Defense Industrial Base, and organizations must act upon the recommendations provided. Earlier this year, the Cyberspace Solarium Commission released a report on the U.S. government's cyber readiness, which found that “the U.S. is currently not designed to act with the speed and agility necessary to defend the country in cyberspace.”

The commission's findings place an emphasis on protecting the Defense Industrial Base's intellectual property, and called on Congress to require that these firms share threat data with the DoD and conduct threat hunting on their networks. Both sharing threat data and conducting threat hunting are proven to result in increased defense of our networks.

A secure future

As noted in a recent LawFare blog, “Cyber-enabled intellectual property theft from the DIB and adversary penetration of DIB networks and systems pose an existential threat to U.S. national security.” Given the abundance of cyber-attacks focused on Defense Industrial Base networks, penetrating them is high on our adversaries' target list. They're currently zeroing in on the U.S. critical infrastructure, attempting to poach the intellectual property that secures our very nation. Until we are willing to come together across sectors to share threat data, and commit to hiring strong talent, we will remain at a disadvantage. Fundamentally, it is about trust and our ability to put the greater defense above individual interests. If accomplished, the U.S. cybersecurity posture and resiliency will remain strong, deterring malicious cyberattacks against our Defense Industrial Base.

https://www.c4isrnet.com/opinion/2020/07/15/the-key-to-securing-the-defense-industrial-base-is-collaboration/

Sur le même sujet

  • Spirit AeroSystems temporarily suspends Boeing work in some facilities

    26 mars 2020 | International, Aérospatial

    Spirit AeroSystems temporarily suspends Boeing work in some facilities

    By: The Associated Press WICHITA, Kan. — Aircraft parts maker Spirit AeroSystems announced Tuesday that it is temporarily halting work for Boeing that is performed in Wichita, Kansas, and two Oklahoma facilities amid an outbreak of the new coronavirus. The move came after Boeing announced Monday that it was suspending operations at its Seattle, Washington, area facilities. At least 110 people have died from COVID-19 in Washington state, mostly in the Seattle area. Boeing employs about 70,000 people in the region. The company said 32 employees have tested positive for the virus, including 25 in the greater Seattle area. At Spirit, military, non-Boeing work and other programs will continue. In Oklahoma, the suspension affects facilities in Tulsa and McAlester. Spirit will continue to support 787 work for Boeing's Charleston, South Carolina, facility. Spirit did not say how many employees would be affected, but the suspension begins Wednesday and will last until April 8. Employees will continue to be paid during the two-week period. Deep cleaning of work spaces and facilities also is planned. https://www.defensenews.com/industry/2020/03/24/spirit-aerosystems-temporarily-suspends-boeing-work-in-some-facilities

  • The US Air Force is in no hurry to commit to a next-gen fighter design

    19 novembre 2019 | International, Aérospatial

    The US Air Force is in no hurry to commit to a next-gen fighter design

    By: Sebastian Sprenger BERLIN — The U.S. Air Force is taking its time to settle on a next-generation fighter design, awaiting instead lessons learned from the F-35 jet and playing the field with promising technologies, according to a senior service official. Options being kicked around are still in the conceptual stage, as America's newest fighter, the fifth-generation F-35, is only now “coming off the line,” according to Lt. Gen. David Nahom, the Air Force's deputy chief of staff for plans and programs. “We're not in a hurry,” Nahom told Defense News on the sidelines of the International Fighter Conference, an air power-themed confab of industry and government officials held in Berlin, Germany. He noted that expected deliveries of the F-35 and the relatively young age of the F-22 fleet enables the service to be picky about moving forward with the envisioned Next Generation Air Dominance weapon. In short, the Air Force wants to keep its options open for as long as possible for a weapon whose combat punch will lie not in a single aircraft but rather in the amalgamation of hardware and software, an airborne concerto of data clouds, artificial intelligence, and boundless interconnectivity. “We don't want to get too stuck into a platform,” Nahom said. “It's a very different way to approach it.” Still, the service plans to lay the groundwork for boosting the domain of information and data — organizing it, analyzing it, sharing it — as a key element for future aerial warfare. To that end, officials will include a “significant investment in the digital backbone” in the next budget request, Nahom said. As the Air Force studies its options, service analysts have shied away from the term “sixth-generation” aircraft as a successor to the F-35 because it's unclear what breakthrough technology will be created next. “What are the characteristics of sixth-generation? I don't know,” Nahom said. “Stealth is important,” he added, referring to one of the advertised features of the F-35. “But speed is important, too.” The service aims to develop a new capability quickly once the theoretical legwork is done. That is why there is a renewed emphasis now on engineering processes and algorithm development that Nahom said will have to unfold much faster than under previous aircraft programs. Air Force acquisition chief Will Roper has put down a marker to develop an aircraft within five years. “Based on what industry thinks they can do and what my team will tell me, we will need to set a cadence of how fast we think we build a new airplane from scratch. Right now, my estimate is five years. I may be wrong,” he told Defense News in an interview in September. The service's information-heavy tack on future aerial warfare echoes two European projects aimed at building a next-generation weapon: the British-led Tempest and the Franco-German-Spanish Future Combat Air System. Both programs also lean on the the premise that data clouds, driven by artificial intelligence, can turn flying pieces of metal into breakthrough weaponry. In the case of the continental program, an envisioned “combat cloud” will be “the ocean between the islands of the platforms,” French Maj. Gen. Jean-Pascal Breton said at the conference. But Nahom noted a difference in the American way of thinking when it comes to piercing contested airspace — a key skill required of all future warplanes. While the Europeans seem to perceive the task as popping dispersed bubbles of ever-improving air defense systems, the U.S. view is that any airspace may be contested at any given time. That means a next-generation aircraft will be constantly engaged in the mission of punching its way through enemy defenses, like finding the holes in a never-ending series of Swiss cheese, Nahom said. https://www.defensenews.com/global/europe/2019/11/18/the-us-air-force-is-in-no-hurry-to-commit-to-a-next-gen-fighter-design/

  • Produire local, passage obligé des entreprises partant à l'international

    29 novembre 2019 | International, Autre défense

    Produire local, passage obligé des entreprises partant à l'international

    Grandes et petites entreprises doivent se plier aux exigences croissantes des États de produire sur place une partie de leurs gros contrats. Y compris Dassault Aviation pour vendre son Rafale en Inde. Enquête. Difficile d'y échapper. Les exigences de compensations industrielles, ou offsets, occupent une place croissante dans la négociation des grands contrats. Elles sont presque autant l'apanage de pays émergents, qui cherchent à accélérer la montée en gamme de leur industrie domestique, que de pays développés. Dans le seul secteur de la défense, le montant global des offsets a progressé de 25 % entre 2012 et 2016, pour représenter près de 2,5 % des dépenses militaires. Pour décrocher le contrat de 36 avions Rafale en Inde, Dassault a dû s'engager à réinvestir 50 % de sa valeur dans le pays, sous forme de fabrication locale et d'approvisionnement auprès de sous-traitants indiens. Il a ouvert un site pour produire ses avions d'affaires Falcon et le Rafale avec l'indien Reliance. DCNS a consenti à transférer une partie de sa production et de ses compétences en Australie, dans le cadre du "contrat du siècle" de 12 sous-marins. Politique du "make in India" en Inde, "Buy american act" aux États-Unis, droits de douane exorbitants sur les importations de véhicules pour forcer les constructeurs à réaliser l'assemblage sur place... Au-delà de la défense et de l'aéronautique, le parapétrolier, le ferroviaire et la filière nucléaire font aussi face à des contraintes similaires, plus ou moins structurées. "La plupart des nouveaux contrats en Afrique prennent en compte la volonté de transférer des équipes et de produire localement ", remarque Pedro Novo, le directeur de l'international de Bpifrance. Accompagner les PME et les ETI "Les compensations industrielles étaient auparavant supportées par les seuls intégrateurs. Mais à mesure qu'elles augmentent et que les grands groupes externalisent davantage, elles descendent de plus en plus dans la supply chain", pointe Philippe Advani, un ancien d'Airbus, qui préside le comité sur les offsets des conseillers du commerce extérieur. Avec le groupement des industries françaises aéronautiques et spatiales (Gifas), il a publié en juillet un guide pour aider ETI et PME à naviguer dans les contraintes de transfert de savoir-faire ou de production – souvent complexes – fixées par les gouvernements. Pour les sous-traitants, l'opération n'est pas sans risque. En Inde, le spécialiste de l'ingénierie aéronautique Ametra, qui emploie 700 salariés, a sauté le pas l'an passé en créant une coentreprise avec un partenaire indien à Hyderabad, dans le sud du pays. "Cela demande du cash, et un pillage de propriété intellectuelle peut être plus dramatique pour une petite entreprise", reconnaît Philippe Advani. "Devenir indien en Inde, par exemple, implique d'accélérer la structuration de sa société, de revoir la logistique et la gestion des flux de données, d'impliquer le conseil d'administration. Il faut un accompagnement pour mettre ces contraintes à la portée des PME", énumère Pedro Novo, qui a lancé il y a un an le fonds Build-up International afin de co-investir dans des filiales à l'étranger d'ETI françaises et étudie une vingtaine de dossiers. Certains ont fait de ces contraintes un nouvel axe de leur stratégie. Depuis deux ans, le fabricant de c'ble marnais Axon'Cable surveille les obligations de compensations industrielles des grands contrats militaires pour implanter ses nouvelles usines. "Il est plus facile de vendre à nos grands clients car ils ne trouvent pas leurs fournisseurs habituels et nous en profitons pour démarcher des industriels locaux", pointe son président, Joseph Puzo, qui a ouvert en 2016 une filiale au Brésil et prépare un bureau en Australie pour 2020. L'ETI, qui possède déjà une usine low cost en Inde, a créé en début d'année une deuxième coentreprise, Dhruv, avec un partenaire local, afin d'obtenir le statut d'"offset indien partner", qui permet de répondre aux demandes de compensation industrielle. Produire localement ne supprime pas pour autant tous les échanges. Seul l'assemblage final est réalisé à proximité du client. Les composants les plus sensibles restent exportés depuis la France. Le meilleur moyen de protéger ses innovations. Latécoère suit Thales et Dassault en Inde S'implanter en Inde ne faisait pas partie des plans initiaux de Latécoère. "Je savais que l'Inde était un pays compliqué et bureaucratique. Nous serions certainement allés dans un autre pays d'Asie s'il n'y avait pas eu les contreparties du contrat Rafale", reconnaît volontiers Yannick Assouad, la PDG de l'équipementier aéronautique. Son usine de c'blage de Belagavi, dans l'État du Karnataka, a démarré sa production en septembre. Pour vendre ses 36 avions de combat, Dassault a dû s'engager à des compensations industrielles, dont l'ouverture d'un site à Nagpur, dans l'État du Maharashtra, pour produire des pièces pour le Rafale et le Falcon. En 2017, Latécoère a décroché auprès de Dassault la fourniture de harnais électriques pour le Falcon 2000 en s'engageant à suivre l'avionneur en Inde. "Se localiser dans un pays d'offset n'était pas suffisant pour remporter le contrat car il faut avant tout être compétitif. Mais c'était la cerise sur le g'teau", reconnaît Yannick Assouad. Dans la foulée, sa nouvelle usine indienne a permis à l'ETI de décrocher un deuxième contrat auprès de Thales, lui aussi tenu à des offsets, pour son système de divertissement à bord. De quoi atteindre plus vite que prévu le seuil de rentabilité de l'usine de 300 salariés. En attendant que Dassault implante sa chaîne d'assemblage du Falcon en Inde, Latécoère exporte toute sa production indienne vers la France et les États-Unis pour Thales et se fournit en France. "Nous allons progressivement démarcher des clients locaux et essayer d'évaluer la supply chain", précise la PDG. https://www.usinenouvelle.com/editorial/produire-local-passage-oblige-des-entreprises-partant-a-l-international.N907464

Toutes les nouvelles