New Navy Strategy Adds Cyberspace to Warfare Domain
The strategy lists secure, survive and strike as the primary principles for defense in cyberspace.
The U.S. Navy released its Cyberspace Superiority Vision identifying three main principles that will guide the service in its pursuit of cyberspace superiority: secure, survive and strike.
This vision goes hand in hand with CIO Aaron Weis’ Information Superiority Vision principles of modernize, innovate and defend. While the Information Superiority Vision focuses on ensuring the availability of information from any place at any time, the Cyberspace Superiority Vision is about enabling military action through non-kinetic capabilities in cyberspace.
The “secure” pillar is foundational to the vision and requires constant investment in cybersecurity defenses as adversaries develop new vulnerability exploits. The Navy envisions that it “consistently fields best-in-class cybersecurity safeguards, retains its excellent cyber talent and cultivates a professional cybersecurity and cyber-warfighting culture.”
“This is the one that we really work hand in glove with the CIO organizations in their defending pillar, which is all about … zero trust, identity management, all the things we’re doing to Project Overmatch,” Navy Principal Cyber Advisor Christopher Cleary said at the Trellix Cybersecurity Summit last week.
The “survive” principle requires training the Navy workforce to be able to respond to cyber attacks that will inevitably occur.
“Our systems are under attack all the time,” Cleary said. “We have to ensure all the critical infrastructure around us is designed to be attacked, designed to be resilient, designed to be survivable. And arguably, we haven’t done as good of a job on that.”
The “strike” pillar requires the Navy to view cyberspace as a warfighting domain and to treat it the same way it treats its maritime, air and land domains.
“The services have some responsibility to acquire capabilities to allow us to maneuver in and through cyberspace, which is really what the strike piece is all about,” Cleary said. “Because offensive cyber operations is now this new warfare domain that we are to one degree or another still in the infancy of trying to race.”
The document aims to get the message out to those in the Navy and Marine Corps who “don’t consider … why these things are important and, more importantly, why it’s important to their mission.”
“As we … continue to embrace this new domain across all of those three pillars secure surrounding strike, I want our adversaries to be every bit as concerned … pointing evidence over non-kinetic capabilities as they are … pointing over kinetic [capabilities].”
This is a carousel with manually rotating slides. Use Next and Previous buttons to navigate or jump to a slide with the slide dots
-
Securing AI Amid Rising Risks
NIST and Maximus explore how AI is transforming threat detection, identity protection and edge security and discuss how agencies can keep pace with the rapid tech changes.
20m watch -
Growing Cyber Risks Push EPA to Modernize Water Sector Security
EPA is expanding cybersecurity guidance and technical support to help water systems defend against increasingly sophisticated cyberattacks.
3m read -
Congress Seeks 10-Year Renewal of Cyber Threat Sharing Law
The PAACT Act seeks a 10-year CISA 2015 reauthorization to improve threat reporting and strengthen federal cyber defenses.
2m read -
White House Eyes New Pillar in Cyber Strategy Refresh
Sean Cairncross unpacked the upcoming national cybersecurity strategy's new deterrence pillar and expansion of public-private collaborations.
4m read