Coast Guard Cyber Command CAPT Michael C. Dickey, USCG March 2016
Coast Guard Cyber Strategy Identify and Harden Systems and Networks Understand and Counter Cyber Threats Increase Operational Resilience Defending Cyberspace Risk Assessment – Promote Cyber Risk Awareness and Management Prevention – Reduce Cyber Security Vulnerabilities in the MTS Protecting Infrastructure Incorporate Cyberspace Operations into Mission Planning and Execution Deliver Cyber Capabilities to Enhance all Missions Enabling Operations Strategic Priorities Enabling Factors Culture Law Partnerships – Real Time Communications – Organization – Cyber Workforce - Investment
Defending Cyberspace Goal 1. Identify and Harden Systems and Networks Goal 2. Understand and Counter Cyber Threats Goal 3. Increase Operational Resilience
Enabling Operations Goal 1. Incorporate Cyberspace Operations into Mission Planning and Execution Goal 2. Deliver Cyber Capabilities to Enhance All Missions
Protecting Infrastructure Goal 1. Risk Assessment – Promote Cyber Risk Awareness and Management Goal 2. Prevention – Reduce Cybersecurity Vulnerabilities in the MTS.
Cyber Strategy Implementation Plan Cybersecurity is Foundational to all the Commandant’s Priorities Western Hemisphere Strategy Arctic Strategy Human Capital Strategy Service to Nation Duty to People Commitment to Excellence Enabling Operations Protecting Infrastructure Defending Cyberspace
Strategy Implementation Dashboard Primary Focus DCDI CNDSP CPT Program Office
DoD Vision + USCG… CNMF Cyber National Mission Force Headquarters 4 x JFHQ-Cyber Joint Force Headquarters-Cyber JFHQ-DODIN Joint Force Headquarters- DOD Information Networks Below teams combined across all 4 JFHQs National Mission Forces Combat Mission Forces Cyber Protection Forces 13 27 6 National Mission Teams Combat Mission Teams DOD Information Networks Cyber Protection Teams 8 + 17 National Support Teams Combat Support Teams Service-Retained Cyber Protection Forces Cyber Protection Forces Cyber Protection Forces 18 20 24 National Cyber Protection Teams Combatant Command Cyber Protection Teams Service Cyber Protection Teams
CGCYBER and CYBERCOM 17 USSTRATCOM USCYBERCOM DoD CIO DIRNSA/CHCSS Support USSTRATCOM USCYBERCOM DIRNSA/CHCSS Dual Hatted DoD CIO Joint Operations Center Deputy Director NSA NSA NSOC ROC NTOC JFHQ DoDIN JFHQ Cyber Global Enterprise Ops Ctr Service Cyber Components Agencies DISA DoDIN Command AFCYBER Enterprise Ops Ctr ARCYBER FLTCYBER MARFORCYBER DoDIN CPTs CGCYBER Cyber Protection Teams (CPTs) 17
Relationship with C4ITSC Operate & Defend Build & Maintain CNDSP for USCG, DCO-IDM CSOC - 24x7x365 Watch Service Cyber Component to USCYBERCOM Executes TASKORDs from USCYBERCOM Intelligence fusion/indicators and warnings from NTOC DoDIN Ops Technical Authority Configuration management for CG networks Change Authority Build, deploy and maintain security systems and sensors COLLABORATION…COORDINATION
Defense in Depth – a Partnership PREVENTION MEASURES PROTECTION MEASURES IDENTIFICATION MEASURES RESPONSE MEASURES Attack Types Impacts Shellcode & Buffer Overflow Business Interruption Impacts 1 2 6 5 Malicious Code Injection 7 4 3 Property Damage Impacts 9 1 2 6 System Exploited 8 Denial of Service (DoS) 3 9 Impacts on People 8 5 4 7 Social Engineering & Spoofing Secondary Economic Impacts Countermeasures Identification & Response Measures Secure Input/output Handling Executable Space Protection Data Execution Prevention Anti-Virus Software Intrusion Prevention System Firewalls Social Engineering Training Security Protocols Access Control Intrusion Detection System System Backup Restoration Deep Packet Inspection DoS Defense System Network Analyzer Operating System Reinstallation Honeypots Firewall Modification Hardware Replacement “CND Services protect the network from adverse events, detect adverse events that do occur, and then respond”