Team Redstone Exhibition (TREx) 08 June 2016 Dr. Ken LeSueur, Redstone Test Center Approved for public release (SMDC Public Release #6084-1) Distribution A
Team Redstone Cyber Initiative Redstone Cyber Senior Executive Steering Group (ESG) Space & Missile Defense Command Aviation & Missile Research Development & Engineering Center PEO Missiles & Space PEO Aviation Redstone Test Center Others Synchronizing Cyber R&D Efforts Towards a Common Objective Coordinating Cyber Security R&D Road Maps Determining Effective & Efficient Contract Strategies ESG Directed the Cyber Working Group to have an exhibition of progress made to date Team Redstone Exhibition 2 Qtr 3 Qtr FY17 The Redstone ESG Convenes Regularly With Clear Goals & Objectives Approved for public release (SMDC Public Release #6084-1) Distribution A 2
Definitions and Participating Organizations IMPACT Integrated Mission Performance And Cybersecurity Testbed - A Persistent Distributed Environment of Redstone Cyber Stakeholder Facilities TREx Team Redstone Exhibition 2 nd or 3 rd Qtr 2017 Approved for public release (SMDC Public Release #6084-1) Distribution A 3
Initial Team Redstone Cyber Exhibition Requirements Target Date: 2 nd or 3 rd 2017 Establish a Persistent Reconfigurable Distributed Environment Linking Redstone Cyber Stakeholder Facilities Execute a Structured Integration, Data Collection, and Analysis Process Design in Growth Path to Link Team Redstone to Other Army, Joint, and Coalition Cyber Events and Resources Approved for public release (SMDC Public Release #6084-1) Distribution A 4
Organizational Objectives Demonstrate distributed connectivity via the JMN across multiple RSA organizations and facilities Demonstrate capabilities of tactical systems and Cyber investments Provide Army PMs with a persistent capability to Assess technologies and procedures necessary to defeat cyber threats Support the Development, Test and Evaluation of capabilities to reduce Cyber related risks and defeat Cyber threats Approved for public release (SMDC Public Release #6084-1) Distribution A 5
Concept Development Workshop (CDW) 11 APR 2016 Objectives/Exit Criteria Sites/Labs on the network Identified and Locked Working Group members defined Working Group interdependencies understood Calendar of events defined Organizational Objectives understood Content for Outbrief to ESG Approved for public release (SMDC Public Release #6084-1) Distribution A 6
TREx Facility/Network Infrastructure Tactical/Cyber Test Channels AMRDEC USASMDC/ARSTRAT AMRDEC TSMO Data Repository VoIP Chat Email Wiki Collaboration Tools VoIP Chat Email Wiki Collaboration Tools VoIP Chat Email Wiki Collaboration Tools VoIP Chat Email Wiki Collaboration Tools AMRDEC AMRDEC RTC Data Collection NW Monitor Constructive Sims Visual Systems VoIP Chat Email Wiki Collaboration Tools VoIP Chat Email Wiki Collaboration Tools Sanitized Data Xfer Infrastructure Servers Event Control/White Cell Channel Sites to add to Network Existing Sites Approved for public release (SMDC Public Release #6084-1) Distribution A 8
Previous Decisions/Assumptions Environment/Network/Event supporting appropriate classification levels JMN is the network to conduct IMPACT/T-REx WSMR terrain will be used for the event NIE/AWA 16.1 Operational Scenario will be used as practical Will have 5 sub working groups and leads for each Will have a minimum of 3 integration spirals leading up to the event Approved for public release (SMDC Public Release #6084-1) Distribution A 8
Cyber Blue/Red - DAU Lead Network - RTC Lead Sub Working Groups Operational Scenario - USASMDC/ARSTRAT Lead Technical Simulation Architecture - RTC Lead Tactical Architecture - AMRDEC Security USASMDC/ARSTRAT Lead Approved for public release (SMDC Public Release #6084-1) Distribution A 9
Cyber Threat Definitions Matrix Threat Outsider Near-Sider Insider Novice DoS 802.11 Injection Zigbee/bluetooth Phishing Web Site Deface Cross Site Scripting Spoofing Media Drops (MitM) Physical Security Tools Intermediate Ransom Ware Supply Chain HW/SW Man-in-the-Middle (MitM) Attack 2 factor broken authentication Data Line Tap Privilage Escalation Advanced DoS AV Bypass Manipulate Air Picture Add/Mod/Del e.g. ADS-B (injection) Maint Port Injection Stolen Net-Enabled Mil Radio Industrial Cntl Sys (ICS) DoS Attacking Gaps Outside Intel Network Routing Exploit Approved for public release (SMDC Public Release #6084-1) Distribution A 11
TREx Network Infrastructure OSD funded Network Infrastructure TREx Network team working with Technical Working Group to establish logical range requirements Network approach allows expansion in security levels and connectivity to external organizations without major configuration changes Approved for public release (SMDC Public Release #6084-1) Distribution A 12
Security Sub Working Groups Expectations Security Identity Security Classification guides required from all PoRs in TREx Brief each WG on needs and limitations of event environment Work with Cyber WG to ensure no system vulnerability could be uncovered that would exceed the event security level Determine data/report dissemination process with stakeholder concurrence Support data classification downgrading as required EXIT CRITERIA List of program security POCs Approved for public release (SMDC Public Release #6084-1) Distribution A 12
CDW Objectives/Exit Criteria Results Sites/Labs on the network Identified and Locked Working Group members defined Working Group interdependencies understood Calendar of events defined Organizational Objectives understood Content for Outbrief to ESG Approved for public release (SMDC Public Release #6084-1) Distribution A 13
Integration Blocks for TREx Integration Spiral 4 Integration Spiral 3 Integration Spiral 2 Integration Spiral 1 Approved for public release (SMDC Public Release #6084-1) Distribution A 14
Key Dates & Decisions All Sites connected to the distributed network will be locked at close of the CDW All POTENTIAL Systems and Simulations identified by integration spiral 1 with the final subset locked at the Mid Planning Workshop All configurations, software, and hardware will be locked at the conclusion of Integration Spiral 4 activities Approved for public release (SMDC Public Release #6084-1) Distribution A 15
Questions Approved for public release (SMDC Public Release #6084-1) Distribution A 16