OPEN SOURCE INFORMATION ACQUISITION, ANALYSIS, AND INTEGRATION IN THE IAEA DEPARTMENT OF SAFEGUARDS 1



Similar documents
All-Source Information Acquisition and Analysis in the IAEA Department of Safeguards

Tools for Trade Analysis and Open Source Information Monitoring for Non Proliferation

The Conceptualization and Development of Safeguards Implementation at the State Level

International Safeguards Infrastructure Development

Business Intelligence & Data Warehouse Consulting

D&CP BUREAU OF RESOURCE MANAGEMENT

STRATEGIC OBJECTIVE 2.4 OVERCOME GLOBAL SECURITY CHALLENGES THROUGH DIPLOMATIC ENGAGEMENT AND DEVELOPMENT COOPERATION

Seoul Communiqué 2012 Seoul Nuclear Security Summit

Symantec Global Intelligence Network 2.0 Architecture: Staying Ahead of the Evolving Threat Landscape

Institute for Science and International Security

Elsa C. Augustenborg Gary R. Danielson Andrew E. Beck

CLINICAL RESEARCH GENERIC TASK DESCRIPTIONS

Integrated archiving: streamlining compliance and discovery through content and business process management

How To Use Predictive Analytics To Improve Health Care

Building a Database to Predict Customer Needs

Systems Engineering. August 1997

PEOPLE'S REPUBLIC OF CHINA. (New York, May 4, 2010) Please Check Against Delivery MISSION TO THE UNITED NATIONS

Trade monitoring for nuclear and nuclear-related dual-use items

UN Security Council Resolution 1540: Monitoring and Detecting Breaches in Biosecurity & Illicit Trafficking of BW-Related Materials

The Future of Census Bureau Operations

Part A OVERVIEW Introduction Applicability Legal Provision...2. Part B SOUND DATA MANAGEMENT AND MIS PRACTICES...

Big Data for the Rest of Us Technical White Paper

!"#$%&%'($)*+,-",!./01#'/",'",234045'0'#6,4"7, 21&&/%#,

UTILIZING COMPOUND TERM PROCESSING TO ADDRESS RECORDS MANAGEMENT CHALLENGES

Financial Crimes Enforcement Network

How To Understand And Understand The Concept Of Business Architecture

Architecting an Industrial Sensor Data Platform for Big Data Analytics

Why your business decisions still rely more on gut feel than data driven insights.

EVERYTHING YOU NEED TO KNOW ABOUT MANAGING YOUR DATA SCIENCE TALENT. The Booz Allen Data Science Talent Management Model

Bridging The Gap: Solving the Challenge of Compliance & Data Governance

Industry. Head of Research Service Desk Institute

Competence Requirements for Audit Professionals

FREQUENTLY ASKED QUESTIONS

Business Transformation with Cloud ERP

Joint ICTP-IAEA School of Nuclear Energy Management November Nuclear Security Fundamentals Module 9 topic 2

Instilling Confidence in Security and Risk Operations with Behavioral Analytics and Contextualization

Tapping the benefits of business analytics and optimization

Agile enterprise content management and the IBM Information Agenda.

Privacy in the Cloud A Microsoft Perspective

Miracle Integrating Knowledge Management and Business Intelligence

The Big Data methodology in computer vision systems

IBM Enterprise Content Management Product Strategy

International transfers of nuclear material

How To Develop A Data Warehouse

DEVELOPING AN EFFECTIVE INTERNAL AUDIT TECHNOLOGY STRATEGY

Overview of US and UK Cooperation to Address Technical Challenges in Verification of Nuclear Disarmament

BIG SHIFTS WHAT S NEXT IN AML

Framework for Cooperative Market Conduct Supervision in Canada

National Center for Healthcare Leadership SUMMARY. Health Leadership Competency Model

Talent Management: Effect on Organizational Performance

FUNDAMENTALS OF A STATE S NUCLEAR SECURITY REGIME: OBJECTIVE AND ESSENTIAL ELEMENTS

Seven Rules of Thumb for Post-Trade Compliance

How To Protect Your Network From Attack From A Network Security Threat

Important dimensions of knowledge Knowledge is a firm asset: Knowledge has different forms Knowledge has a location Knowledge is situational Wisdom:

Position Classification Flysheet for Logistics Management Series, GS-0346

Realizing business flexibility through integrated SOA policy management.

(U) Appendix E: Case for Developing an International Cybersecurity Policy Framework

Implementation of a Quality Management System for Aeronautical Information Services -1-

Department of Human Resources

Kofax White Paper. Overcoming Challenges in AP Automation. Executive Summary. Benefits of Accounts Payable Automation

Cyber Security and the Canadian Nuclear Industry a Canadian Regulatory Perspective

Technology Services Strategic Plan

Prequalification Education, Assessment of Professional Competence and Experience Requirements of Professional Accountants

Nuclear Safeguards. How far can Inspectors go?

Bureau of Industry and Security

Cisco Security IntelliShield Alert Manager Service

Energy Security: Role of Regional Cooperation

Government Business Intelligence (BI): Solving Your Top 5 Reporting Challenges

Concept and Project Objectives

Data Isn't Everything

LEADERSHIP IN PROFESSIONAL SERVICES

Whitepaper Enable Talent Management Through Fusion

Kofax White Paper. Overcoming Challenges in Accounts Payable Automation. Executive Summary. Benefits of Accounts Payable Automation

UNITED STATES AIR FORCE. Air Force Product Support Enterprise Vision

OPTIMUS SBR. Optimizing Results with Business Intelligence Governance CHOICE TOOLS. PRECISION AIM. BOLD ATTITUDE.

Best Practices in Contract Migration

Successfully managing geographically distributed development

Methods Commission CLUB DE LA SECURITE DE L INFORMATION FRANÇAIS. 30, rue Pierre Semard, PARIS

Digital Asset Manager, Digital Curator. Cultural Informatics, Cultural/ Art ICT Manager

NASCIO Recognition Award Nomination IT Project and Portfolio Management

Using Predictive Analytics To Drive Workforce Optimization. New Insights From Big Data Analysis Uncover Key Drivers of Workforce Profitability

Data Analysis: The Cornerstone of Effective Internal Auditing. A CaseWare Analytics Research Report

CSR / Sustainability Governance and Management Assessment By Coro Strandberg Principal, Strandberg Consulting

Nuclear Material Accounting Handbook. Vienna, May Services Series 15

We are Big Data A Sonian Whitepaper

HP Service Manager software

Unlocking The Value of the Deep Web. Harvesting Big Data that Google Doesn t Reach

Transcription:

JAMES MARTIN CENTER FOR NONPROLIFERATION STUDIES Twentieth Anniversary Celebration: The Power and Promise of Nonproliferation Education and Training December 3-5, 2009 OPEN SOURCE INFORMATION ACQUISITION, ANALYSIS, AND INTEGRATION IN THE IAEA DEPARTMENT OF SAFEGUARDS 1 Michael Barletta, Nicholas Zarimpas, Ryszard Zarucki Acquisition and analysis of open source information plays an increasingly important role in the International Atomic Energy Agency s (IAEA) strengthened safeguards system. The agency s focal point for open source information collection and analysis is the Division of Safeguards Information Management (SGIM) within the IAEA s Department of Safeguards. In parallel with the approval of the Model Additional Protocol in 1997, a new center of information acquisition and analysis expertise was created within SGIM. By acquiring software, developing databases, retraining existing staff and hiring new staff with diverse analytical skills, SGIM is proactively contributing to the future implementation of information- driven safeguards in collaboration with other Divisions within the Department of Safeguards. Open source information support is now fully integrated with core safeguards processes and activities, and has become an effective tool in the work of the Department of Safeguards. This paper provides an overview of progress realized through the acquisition and use of open source information in several thematic areas: evaluation of additional protocol declarations; support to the State Evaluation process; in- depth investigation of safeguards issues, including assisting inspections and complementary access; research on illicit nuclear procurement networks and trafficking; and monitoring nuclear developments. Demands for open source information have steadily grown and are likely to continue to grow in the future. Coupled with the enormous growth and accessibility in the volume and sources of information, new challenges are presented, both technical and analytical. This paper discusses actions taken and future plans for multi- source and multi- disciplinary analytic integration to strengthen confidence in safeguards conclusions especially regarding the absence of undeclared nuclear materials and activities. Following the rapid advances in the digital world, open source information has become a central component of the working environment in both the private and the public sectors. 2 In the course of progressive development of nuclear safeguards, the IAEA has devoted increasing effort to the effective collection of such data, its evaluation and analysis, as well as proper dissemination of acquired knowledge. The IAEA is in the unique position of being able to combine and compare State- declared information and inspection reports and findings, with information collected from a wide variety of open sources. 1 A version of this paper was presented at Global 2009: The Nuclear Fuel Cycle: Sustainable Options and Industrial Perspectives, Paris, France, September 6-11, 2009, and published in Proceedings of Global 2009 as paper 9358. 2 For the purposes of this paper, open source information is defined as information generally available to the public from various sources, such as government agencies, private entities, academic institutions and think tanks, the news media, commercial databases and scientific associations. This information may be available in print form (e.g. newspaper and journal articles, technical and scientific papers, reports and brochures), electronic database entries, and as web pages.

2 With the advent of the Model Additional Protocol in 1997, comprehensive capabilities for collecting and processing open source information were created in the Division of Safeguards Information Management (SGIM) known as the Division of Safeguards Information Technology at the time a division in the Department of Safeguards that traditionally had been responsible for processing nuclear material accountancy data and providing hardware and software support for the Department s computer systems. 3 The development of SGIM s capabilities in this area was significantly aided by voluntary assistance from Member State Support Programs, which, coupled with IAEA resources, have enabled SGIM to acquire specialized tools, train staff and hire individuals with diverse skills and expertise. 4 Acquisition of Open Source Information The Department s open source acquisition requirements are met by continual monitoring of major open source information providers and by developing and maintaining specialized information collections. In addition, new sources, collection tools, and methodologies are regularly evaluated and, if found useful and cost- effective, deployed. Unlike the well- structured nuclear material accounting data provided to the IAEA by states in fulfillment of their reporting obligations under safeguards agreements, the collection and use of unstructured open source information presents several challenges. First, there is an overwhelming and growing quantity of information available on all thematic areas relevant to agency safeguards. Second, multiple languages and information sources, of widely varying reliability and relevance, must be systematically collected, reviewed, and as appropriate, utilized. Third, and most importantly, raw information requires significant effort by highly trained collectors and experienced analysts collaborating though systematic procedures to review, correlate, evaluate, and prepare synthesized information products and services. The principal reason for collecting open source information is to support the Department s State Evaluation process, which was instituted in the late 1990s to bolster the credibility of the safeguards conclusions reached by the agency. This is a regular (typically annual) in- depth review and evaluation of all information available to the agency about a particular state, which is conducted to evaluate that states compliance with its safeguards agreements. Presently, more than 100 information compilations per year are being prepared for the State Evaluation process. These so- called State files comprise a wide spectrum of information ranging from background political, economic, legislative and regulatory, and security information, to more specialized scientific, technical and other fuel- cycle related data that is directly relevant to the analysis and evaluation of each state s nuclear program. In addition, focused collections of information and analytical reports are frequently needed to address safeguards- related issues and questions, evaluate state- submitted additional protocol declarations and assist with the 3 IAEA, Model Protocol Additional to the Agreement(s) between State(s) and the International Atomic Energy Agency for the Application of Safeguards, INFCIRC/540, September 1997 (Corrected). 4 J. Lepingwell, M. Nicholas, V. Braguine, Strengthening safeguards through open source information collection and analysis, INMM Annual Meeting, Phoenix, Arizona, July 16-17, 2003.

3 planning of complementary access and inspection activities and subsequent follow- up. 5 Since the early 2000s, open source information has also been utilized in analysis of transnational nuclear procurement networks. 6 Finally, satellite imagery analysis often utilizes open source data, as background and to support the corroboration of imagery assessments. In addition to contributing to State Evaluation and related analytical tasks, open source information is collected for monitoring and early- warning purposes. Thousands of information items from a wide variety of sources are filtered through refined search procedures, and hundreds subsequently reviewed by analysts on a daily basis, to monitor new and ongoing nuclear proliferation and safeguards issues. Selected items of highest immediate relevance are widely disseminated within the Department of Safeguards, via an e- mail newsletter, the SGIM Open Source Daily Highlights. In addition, items of more particular interest are also provided directly to relevant staff in the Safeguards Department via e- mail, according to their specific work requirements. The daily review also feeds information items into the Open Source Information System (OSIS), the Department s main repository of open source information. This is accessible by all Safeguards staff though a free- text search engine that leverages a nuclear fuel cycle topic tree organizational structure. Uses of Open Source Information Through the State Evaluation process the agency is able to draw credible conclusions about whether a state is fulfilling its safeguards obligations. In essence, the agency s safeguards mission aims to provide assurances that there has been no diversion of declared nuclear material or misuse of declared nuclear facilities, and where the additional protocol is in force for a state that there are no undeclared nuclear material and activities. Keeping in mind that absence of evidence does not necessarily constitute the evidence of absence, demonstration and assessment of such a negative presents considerable information- analytic challenges. State Evaluation requires the systematic integration, analysis, and cross- corroboration of various types of information: inspection and complementary access reports, nuclear material accounting reports and additional protocol declarations by states, environmental sampling results, satellite imagery analyses, open source information and analysis and, to a limited extent, voluntarily provided third- party information that is subject to independent agency corroboration. While a State Evaluation focuses on activity and capability assessments at each stage of the nuclear fuel cycle, some non- technical parameters, including political, economic, security, legal, and administrative factors are taken into account as background context for the evaluation process. 5 M. Barletta, V. Braguine, F. Claude, E. Gyane, W. Hammond, J. Lepingwell, M. Nicholas, J. Oakberg, R. Wallace, Information analysis for Additional Protocol evaluation, INMM Annual Meeting, Orlando, Florida, July 18-22, 2004. 6 M. Tarvainen, M. Derrough, M. Barletta, Analysis of proliferation networks, (IAEA- CN- 148/96), Proceedings of an International Safeguards Symposium, Vienna, October 16-20, 2006 (Vienna: International Atomic Energy Agency, 2007).

4 Well- researched and reliable open source information can provide a valuable basis for comparison with other sources of information in determining the nuclear- industrial capabilities of a State, evaluating the internal consistency of declared nuclear fuel cycle programs, identifying possible undeclared activities and aiding in understanding historical issues, especially activities conducted prior to the implementation of IAEA safeguards. Closely related are reviews to evaluate the consistency and completeness of additional protocol declarations, some elements of which largely depend on the availability of the following relevant open source information: holdings and locations of source material; fuel cycle- related research not involving nuclear material; the manufacture of specified equipment; imports and exports of specified equipment and materials; and future plans for nuclear infrastructure development. Focused open source collections and information- analytic reports are prepared to address specific issues in a state or on a safeguards topic. Transnational procurement networks and illicit trafficking of nuclear material may involve activities that cross the borders of several states. For other safeguards evaluation questions, in depth research in the scientific and technical literature, often from non- English- language sources, and close collaboration with technical experts are needed. The extent and complexity of such research and analysis depend on the history and sophistication of the nuclear infrastructure of a state; past and current fuel cycle activities; in some cases to the existence of past nuclear weapon- related activities prior to IAEA safeguards implementation; as well as to safeguards compliance and state transparency. Other focused collections and information analyses are used to prepare for complementary access and inspection activities, and to evaluate findings from in- field verification activities. Challenges and Responses With the development of the State Evaluation process and the additional protocol, the extent of information relevant to safeguards and the importance of its role have grown dramatically. The agency has evolved from its traditional role as an auditor of declared nuclear material to an active collector and evaluator of all information available to it. Since the 1990s, revelations of undeclared nuclear activities in several states under agency safeguards, as well as advances in safeguards information- management technologies, are supporting the development of information- driven safeguards as the future of modern nuclear verification. After 15 years of continual development, the agency now possesses robust open source capabilities, both in acquisition and analysis. However, as outlined above, several challenges still remain. 7 The growing importance of nuclear nonproliferation issues has resulted in a vast increase in the volume of open source information, the number of sources, and the languages and formats in which this information appears. All of which may contain biases and misinformation that must be taken into account in processing and analyzing information for safeguards purposes. The problems are both exacerbated and ameliorated by developments in 7 J. Baute, Safeguards information challenges, IAEA- CN- 148/25, Proceedings of an International Safeguards Symposium, Vienna, October 16-20, 2006 (Vienna: IAEA, 2007); J. Baute, Information management for nuclear verification: how to make it work in a sustainable manner, Journal of Nuclear Materials Management, 35 (Summer 2007), pp. 115-23.

5 the information technology domain, with regard to web- based searching and extraction, and processing and archiving of growing volumes of information. At the same time, internal agency requirements for open source research have been steadily increasing in order to support over 100 State Evaluations currently conducted per year, and for other safeguards needs. Broader and deeper information retrieval relies not only on the identification of new sources, for example, by developing access to information in non- official agency languages, but also on the recognition of current limitations in available tools. For instance, only a relatively small fraction of information is available through common search engines. Consequently, the agency has assured access to a number of subscription databases, mainly for scientific and technical information. Specialized software has also been acquired to locate and collect information that has not been indexed. SGIM has pursued diversification of information sources by accessing multilingual open source collections and databases, employing linguistic skills of highly trained collectors and analysts, and utilizing regional open source collection centers set up with the help of Member State Support Programs, among other measures. In addition, while human resources constrain the volume of articles that can currently be translated in- house, advanced machine translation tools are under evaluation. The establishment of an integrated, service- oriented, analysis- friendly information architecture, as an effective foundation to collect, evaluate, analyze, structure, secure and disseminate safeguards information is an important element of enhancing information management capabilities. The increasing volume of information available makes it essential to continue increasing the efficiency of the collection and distribution process. Finally, knowledge management has become the overarching objective for information management, if not for the overall management of verification resources. How do analysts manage the information they collect and the knowledge they generate? How can information and knowledge remain easily retrievable? And how is continuity of knowledge propagated? Time is a factor that poses a critical challenge to information and knowledge management. Not only do analysts need to know what they should know today, but there will normally be no credible analysis of proliferation issues without ongoing assessment of the evolution of the status of a state over time. An issue that is considered irrelevant or resolved today (given the information available this time), may subsequently become a major oversight if new information becomes available that is not properly assessed against previous information. Maintaining historical memory over time including maintaining such evaluations in a structured way that enables dynamic reassessment adds further complexities to the management of information. In the long term, innovative solutions that provide a reliable basis for safeguards knowledge management will be necessary to guarantee that safeguards conclusions remain credible.