<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet media="screen" type="text/xsl" href="https://one.sightlinemg.com/federaltimes/wp-content/themes/smg/assets/xslt/rss-xslt.xml"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
xmlns:news="http://www.pugpig.com/news"
>

<channel>
	<title>Federal Times - Federal Times</title>
	<atom:link href="https://one.sightlinemg.com/federaltimes/show-reporter/feed/" rel="self" type="application/rss+xml" />
	<link>https://one.sightlinemg.com/federaltimes/</link>
	<description>Federal Times</description>
	<lastBuildDate>Sat, 08 Aug 2026 18:15:44 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.4</generator>

<image>
	<url>https://one.sightlinemg.com/wp-content/uploads/2026/06/favicon-fed.png?w=32</url>
	<title>Federal Times - Federal Times</title>
	<link>https://one.sightlinemg.com/federaltimes/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">255331619</site>	<item>
		<title>A peek inside Army cyber protection teams</title>
		<link>https://one.sightlinemg.com/federaltimes/it-networks/2017/10/12/a-peek-inside-army-cyber-protection-teams/</link>
					<comments>https://one.sightlinemg.com/federaltimes/it-networks/2017/10/12/a-peek-inside-army-cyber-protection-teams/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Thu, 12 Oct 2017 19:26:55 +0000</pubDate>
				<category><![CDATA[AUSA]]></category>
		<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Show Reporter]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/10/12/a-peek-inside-army-cyber-protection-teams/</guid>

					<description><![CDATA[Members of the Army's Cyber Protection Brigade provided reporters insight into their unique mission set.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/it-networks/2017/10/12/a-peek-inside-army-cyber-protection-teams/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">21424</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/635659156320738676-arm-reclassificationjpg.jpg" width="4288" height="2848" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Of the four types of teams that make up the cyber mission force — the 133-team cadre of cyber warriors the four service branches provide to U.S. Cyber Command — cyber protection teams (CPTs) serve as the quick reaction defensive force responding to network intrusions.</p>



<p class="wp-block-paragraph">Each service also gets to retain a small subset of CPTs to help get at their own service-specific missions.</p>



<p class="wp-block-paragraph">Maj. Josh Rykowski, mission team leader with a service-retained CPT in the Army’s Cyber Protection Brigade, explained that each 39-member CPT is broken into four sections.</p>



<p class="wp-block-paragraph">The first, he told reporters during a media roundtable October 11 at the annual Association of the United States Army conference, is a headquarters section, which takes care of the administrative part of managing and running a team in addition to taking care of some of the planning in preparation for a mission.</p>



<p class="wp-block-paragraph">Next, down in the actual team itself, there are two mission elements and a support element with the idea that each element has the same personnel and equipment and can be exchanged as need be and push them out on missions separately if required, Rykowski said.</p>



<p class="wp-block-paragraph">In terms of the actual mission sets these teams perform, what’s different about a cyber protection team as opposed to a network operator or local administers is “at the end of the day they hunt for adversaries,” Lt. Gen. Paul Nakasone, commander of Army Cyber Command, told reporters at AUSA. “They’re looking for someone that does not want to be found in our network and that’s what is a core skill that we train in our cyber protection teams.”</p>



<p class="wp-block-paragraph">CPTs can be thought of as quick reaction forces to assist local owners and are not meant to remain on the network for an extended duration.</p>



<p class="wp-block-paragraph">“If I get tasked to go support a mission owner, no matter who it is, they’re not going to give me the keys to the kingdom,” a defensive cyber exercise participant at Cyber Flag, Cyber Command’s annual validation event, <a href="https://www.c4isrnet.com/2017/06/30/an-exclusive-peek-inside-cyber-commands-premiere-annual-exercise/">told C4ISRNET in June</a>. “I’m going to have to go through the local defender, their network owner to get my recommended changes.”</p>



<p class="wp-block-paragraph"><i><u>[<a href="https://www.c4isrnet.com/2017/06/30/an-exclusive-peek-inside-cyber-commands-premiere-annual-exercise/">An exclusive peek inside Cyber Command’s premiere annual exercise</a>]</u></i></p>



<p class="wp-block-paragraph">“Really, I don’t want the keys to the kingdom. I wouldn’t want to become their system administrator,” another defensive team lead said. “Eventually, I’ve got to leave” their network.</p>



<p class="wp-block-paragraph">For the cyber protection teams, this is a new environment into which they’re entering, another defensive team lead said. They look to the local administrators to see what normal on their network might mean or what might be anomalous behavior.</p>



<p class="wp-block-paragraph">“Being an Army CPT, we’ve received a broad range of missions,” Rykowski explained. These include assisting network owners or the local defenders, educating them on CPT capabilities, and trying to leave the network in a much more defensible position, training and vulnerability assessment.</p>



<p class="wp-block-paragraph">The network operators have a difficult job, Rykowski said, noting they’re on call 24/7 and focused on vulnerabilities. “What we bring to bear is we show up for a short duration with a threat focus. We help them close the gaps consistent with that particular threat,” he said.</p>



<p class="wp-block-paragraph">When they show up, they bring their own kit that includes hardware (server stacks), software and sensors.</p>



<p class="wp-block-paragraph">These kits provide teams with multiple tools, including: network assessment equipment; host forensics equipment, allowing them to look at the entire network and specific work stations; rudimentary defense mechanisms; plus a substantial amount of storage capability and substernal amount of computational power.</p>



<p class="wp-block-paragraph">The combination “allows me to flexibly create tools on the fly from my repository of tools to figure out what my exact setup needs to be when I’m out working with my customers,” Capt. Sean Eyre, a computer network defense manger within the cyber protection brigade, told reporters.</p>



<p class="wp-block-paragraph">These kits are standardized among the cyber protection brigade and for Army Cyber. Across the joint force, however, service has a different type of kit, despite CYBERCOM producing a standard requirements document that all kits must meet standard baseline requirements, Navy Lt. John Allen, CYBERCOM J35 Department of Defense Information Network operations CPT engagement lead, <a href="https://www.c4isrnet.com/home/2017/07/05/cyber-flag-exclusive-what-cyber-command-learns-from-the-annual-exercise/">said during a June conference</a>.</p>



<p class="wp-block-paragraph"><i>[<a href="https://www.c4isrnet.com/home/2017/07/05/cyber-flag-exclusive-what-cyber-command-learns-from-the-annual-exercise/">Cyber Flag exclusive: What Cyber Command learns from the annual exercise</a>]</i></p>



<p class="wp-block-paragraph">What exists today are four types of kits, each usually with its own specific suite of tools that all meet the requirements. This does present some interoperability challenges, but the command is working toward rectifying those, Allen said.</p>



<p class="wp-block-paragraph">CYBERCOM is <a href="https://www.fifthdomain.com/dod/2017/09/07/cyber-command-moves-toward-standardized-cyber-kits/">now looking toward standardizing kits</a>.</p>



<p class="wp-block-paragraph"><i>[<a href="https://www.fifthdomain.com/dod/2017/09/07/cyber-command-moves-toward-standardized-cyber-kits/">Cyber Command moves toward standardized cyber kits</a>]</i></p>



<p class="wp-block-paragraph">Rykowski explained that they can reconfigure their kits on the fly if need be. “When we do that mission analysis &#8230; and think through what capabilities do we need to bring to bear based on the network we’re working on and based on the adversary we need to be hunting, we can set those capabilities up ahead of time so we can hit the ground running,” he said.</p>



<p class="wp-block-paragraph">“It also gives us the capability to reconfigure it on the fly, so if we do hit the ground and the network may not be what it as supposed to be … we can reconfigure on site to again bring different capabilities to bear.”</p>



<p class="wp-block-paragraph">These kits also have internal defenses that prevent them from becoming infected when plugged into infected networks. “While we do connect our kit directly to the network, we have defenses on it to ensure we ourselves don’t get exploited if the adversary is still on the network,” Rykowski said.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Cyber warriors need constant training, says senior Navy official</title>
		<link>https://one.sightlinemg.com/federaltimes/cyber/2017/02/22/cyber-warriors-need-constant-training-says-senior-navy-official/</link>
					<comments>https://one.sightlinemg.com/federaltimes/cyber/2017/02/22/cyber-warriors-need-constant-training-says-senior-navy-official/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Wed, 22 Feb 2017 11:26:09 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Show Reporter]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/02/22/cyber-warriors-need-constant-training-says-senior-navy-official/</guid>

					<description><![CDATA[According to the commander of Fleet Cyber Command, cyber warriors need constant training to prevent atrophy of skills.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/cyber/2017/02/22/cyber-warriors-need-constant-training-says-senior-navy-official/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">24166</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/cyber-center.JPG.jpg" width="1600" height="1063" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The commander of U.S. Fleet Cyber Command/10th Fleet wants cyber protection teams to participate in training simulations when they aren&#8217;t on a mission.<br/><br/>Vice Adm. Michael Gilday said Tuesday at the AFCEA West conference in San Diego that these teams must have consistent training to be ready to take on a multitude of challenges in cyberspace.<br/><br/>The Navy officer described to conference attendees an environment in which there is an increase in threat actors and their capabilities — both in the stealth and lethality of malware, which is growing increasingly cheaper — and a higher degree of the use of automation from proxies operating on behalf of nation states.<br/><br/>Gilday&#8217;s concern is that cyber skills can quickly atrophy. He stressed the need for a <a href="http://www.defensenews.com/story/defense/training-simulation/2016/08/11/army-spearheading-cyber-persistent-training-environment/88577034/" target="_blank" title="Link: http://www.defensenews.com/story/defense/training-simulation/2016/08/11/army-spearheading-cyber-persistent-training-environment/88577034/">persistent training environment</a> so operators could train each day they&#8217;re not on a mission.<br/><br/></p>





<p class="wp-block-paragraph">The persistent training environment has been a top priority for the Department of Defense. Just like soldiers go to the rifle range to hone their marksmanship, cyber warriors need a space to hone their hacking and defense skills. The initiative would serve as a range for cyber warriors to receive ongoing, realistic training.</p>



<p class="wp-block-paragraph">The Army will be heading up this <a href="http://www.c4isrnet.com/articles/dod-issues-special-notice-for-persistent-cyber-training-environment" target="_blank" title="Link: http://www.c4isrnet.com/articles/dod-issues-special-notice-for-persistent-cyber-training-environment">effort</a>.</p>





<p class="wp-block-paragraph">Gilday also stressed the need for capabilities. &#8220;I described a threat actor that can get their hands on new tools literally by the hour,&#8221; he said. &#8220;I need better tools than the adversary has.&#8221;</p>



<p class="wp-block-paragraph">This involves not only attracting the best developers available to the &#8220;U.S. Navy so we can bring a punch to the fight,&#8221; but leveraging new acquisition vehicles such as the Defense Innovation Unit Experimental, or DIUx, to rapidly purchase tools, he said.</p>





<p class="wp-block-paragraph">&#8220;How do you continue to improve yourself on a constant basis is tough in an acquisition system where progress is measured in years and not hours, weeks and months,&#8221; Gilday told reporters following his remarks.</p>



<p class="wp-block-paragraph">DIUx will be an important partner, he said, because &#8220;the acquisition cycle [that] currently takes a couple of years is not going to do it for us.&#8221;</p>
]]></content:encoded>
	</item>
		<item>
		<title>Army takes strategic cyber capabilities to the tactical edge</title>
		<link>https://one.sightlinemg.com/federaltimes/it-networks/2017/02/09/army-takes-strategic-cyber-capabilities-to-the-tactical-edge/</link>
					<comments>https://one.sightlinemg.com/federaltimes/it-networks/2017/02/09/army-takes-strategic-cyber-capabilities-to-the-tactical-edge/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Thu, 09 Feb 2017 21:53:53 +0000</pubDate>
				<category><![CDATA[C2/Comms]]></category>
		<category><![CDATA[Global Force Symposium]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<category><![CDATA[Show Reporter]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/02/09/army-takes-strategic-cyber-capabilities-to-the-tactical-edge/</guid>

					<description><![CDATA[The Army is continuing to integrate cyber and electronic warfare maneuver forces at the tactical edge. ]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/it-networks/2017/02/09/army-takes-strategic-cyber-capabilities-to-the-tactical-edge/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">19072</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/snagfilms-a.akamaihd-1.net635979665113267457-cyber-a92c74a4dcbfcdbf135321c55b05fd15351562b2.jpg" width="1024" height="768" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Cyber has been thought of as a strategic asset, used as an intelligence-gathering tool and later as a warfighting discipline — following the declaration of cyberspace a domain of warfare and the standup of Cyber Command. Now, the Army is looking to transition that capability to a tactical asset.
</p>



<p class="wp-block-paragraph">The original thinking behind cyber operations was that everything had to be controlled by the president because operations in cyberspace were all thought to shut down the internet, Brig. Gen. J.P. McGee, deputy commanding general for operations at Army Cyber Command, told reporters Feb. 8 during a media roundtable. &#8220;That&#8217;s not what we&#8217;re finding,&#8221; McGee noted.
</p>



<p class="wp-block-paragraph">What they&#8217;re finding is that forces can have a localized effect to accomplish missions, he said, adding that there is undoubtedly a tactical application for cyberspace applications.
</p>



<p class="wp-block-paragraph">The Army has been taking steps toward this paradigm shift since former chief of staff Gen. Ray Odierno directed the start of a pilot program called <a href="http://www.c4isrnet.com/articles/services-integrating-cyber-and-traditional-military-forces" target="_blank" title="Link: http://www.c4isrnet.com/articles/services-integrating-cyber-and-traditional-military-forces">Cyber Support to Corps and Below</a>, which seeks to integrate cyber effects at the tactical edge by embedding cyber forces with brigade combat teams. These effects have been tested at the National Training Center at Fort Irwin in California.
</p>



<p class="wp-block-paragraph">The Army is now moving to call the pilot program CEMA Support to Corps and Below. CEMA, or cyber and electromagnetic activities, is the integration of cyberspace operations, information operations and electronic warfare. The new cyber directorate within the Pentagon, headed by Brig. Gen. Patricia Frost and stood up within the last year, is the focal point for this integration.
</p>



<p class="wp-block-paragraph">Frost told reporters that while they were always conducting CEMA operations at the National Training Center, the sexy term at the time was cyber. Over the last few months they recognized they should call it CEMA Support to Corps and Below, she said.
</p>



<p class="wp-block-paragraph">Experiments have sought to determine not only how take strategic forces and assist in the tactical fight, but also what the force structure looks like. In the last two years, with no growth, Frost said they were forced to figure out how to integrate these capabilities into the current force structure. They were trying to determine the organization requirements needed in the field.
</p>



<p class="wp-block-paragraph">Now, she said, the Army is thinking more outside the box as the service considers manpower capabilities and capabilities needed at echelon.
</p>



<p class="wp-block-paragraph">A critical component for bringing situational awareness to commanders will be the ability to map out the cyber and electromagnetic terrain, McGee said. Where is everything, where are friendly wireless points, where are cellphone towers? Then, comes the effects piece: starting to figure out how to access these and deliver effects; for instance, friendly forces could temporarily shut down enemies&#8217; internet use.
</p>



<p class="wp-block-paragraph">The Army is also bringing online a new <a href="http://www.c4isrnet.com/articles/army-operationalizing-cyber-ems" target="_blank" title="Link: http://www.c4isrnet.com/articles/army-operationalizing-cyber-ems">electronic warfare detachment</a> specifically for electromagnetic operations. &#8220;Effective 1 October 2018, our electronic warfare force, which we call our 29 series career field, will now become 17s, meaning that is the career field that is the baseline of cyber,&#8221; she said in December announcing the new career field. &#8220;We will start training the 29 series this year with a foundation in cyber, signals intelligence and electronic warfare. And then we&#8217;ll talk about kind of where the Army&#8217;s going with reorganization and operational capability.&#8221;
</p>



<p class="wp-block-paragraph">The new operational detachment, Frost said, is targeted to come online within the next year. As part of this effort, Frost is working with Army Cyber Command, Forces Command and the Cyber Center of Excellence at Fort Gordon, Georgia, to see what might be achievable in this space in five years — an aggressive timeline, but an achievable one, Frost contended.
</p>



<p class="wp-block-paragraph">EW has been focused on the protection of patrols and convoys in order to counter IEDs in the last 15 years, McGee noted, but now the role has been expanded to include offensive EW activities, partially induced by the <a href="http://www.c4isrnet.com/articles/armys-rco-eyes-rapid-prototyping-in-electronic-wafare" target="_blank" title="Link: http://www.c4isrnet.com/articles/armys-rco-eyes-rapid-prototyping-in-electronic-wafare">activities</a> of <a href="http://www.c4isrnet.com/articles/threat-from-russian-uav-jamming-real-officials-say" target="_blank" title="Link: http://www.c4isrnet.com/articles/threat-from-russian-uav-jamming-real-officials-say">Russia in Ukraine</a>.
</p>



<p class="wp-block-paragraph">There is also an <a href="http://fifthdomain.com/2017/01/09/authorities-complicate-the-use-of-cyber-capabilities/" target="_blank" title="Link: http://fifthdomain.com/2017/01/09/authorities-complicate-the-use-of-cyber-capabilities/">authorities</a> <a href="http://fifthdomain.com/2017/01/10/how-the-pentagon-is-shaping-cyber-tool-use/">component</a> involved, in reference to McGee&#8217;s statement that typically operations were approved at the presidential level, with the option to be delegated to the Secretary of Defense.
</p>



<p class="wp-block-paragraph">What authorities and permissions will be pushed out to the tactical commander? McGee asked, teeing up the development of frameworks and models that will allow for a breakdown of authorities based on the effects they would have.
</p>



<p class="wp-block-paragraph">The experiments have looked at current policies and whether they need to go all the way up to the secretary, Frost said. Some of the experimentation is documenting where authorities need to reside based on the type of effects they want to achieve.
</p>



<p class="wp-block-paragraph">The Army is also working with Cyber Command as well as the Marine Corps, given that this involves a land component problem set. With land components moving tactically, what type of capabilities will they need to support ground maneuver? she asked.
</p>



<p class="wp-block-paragraph">McGee added that they are planning an exercise with legal teams that will place them in different tactical scenarios and find out if there are authorities or policy changes needed.</p>
]]></content:encoded>
	</item>
	</channel>
</rss>
