<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet media="screen" type="text/xsl" href="/federaltimes/wp-content/themes/smg/assets/xslt/rss-xslt.xml"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
xmlns:news="http://www.pugpig.com/news"
>

<channel>
	<title>Show Reporter - Federal Times</title>
	<atom:link href="https://staging.sightlinemg.com/federaltimes/show-reporter/feed/" rel="self" type="application/rss+xml" />
	<link>https://staging.sightlinemg.com/federaltimes/show-reporter/</link>
	<description>Federal Times</description>
	<lastBuildDate>Sat, 08 Aug 2026 18:15:44 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1</generator>

<image>
	<url>https://staging.sightlinemg.com/wp-content/uploads/2026/06/favicon-fed.png?w=32</url>
	<title>Show Reporter - Federal Times</title>
	<link>https://staging.sightlinemg.com/federaltimes/show-reporter/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">255707718</site>	<item>
		<title>A peek inside Army cyber protection teams</title>
		<link>https://staging.sightlinemg.com/federaltimes/it-networks/2017/10/12/a-peek-inside-army-cyber-protection-teams/</link>
					<comments>https://staging.sightlinemg.com/federaltimes/it-networks/2017/10/12/a-peek-inside-army-cyber-protection-teams/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Thu, 12 Oct 2017 19:26:55 +0000</pubDate>
				<category><![CDATA[AUSA]]></category>
		<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Show Reporter]]></category>
		<guid isPermaLink="false">https://staging.sightlinemg.com/federaltimes/uncategorized/2017/10/12/a-peek-inside-army-cyber-protection-teams/</guid>

					<description><![CDATA[Members of the Army's Cyber Protection Brigade provided reporters insight into their unique mission set.]]></description>
		
					<wfw:commentRss>https://staging.sightlinemg.com/federaltimes/it-networks/2017/10/12/a-peek-inside-army-cyber-protection-teams/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">21424</post-id><media:content medium="image" url="https://staging.sightlinemg.com/wp-content/uploads/2026/08/635659156320738676-arm-reclassificationjpg.jpg" width="4288" height="2848" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Of the four types of teams that make up the cyber mission force — the 133-team cadre of cyber warriors the four service branches provide to U.S. Cyber Command — cyber protection teams (CPTs) serve as the quick reaction defensive force responding to network intrusions.</p>



<p class="wp-block-paragraph">Each service also gets to retain a small subset of CPTs to help get at their own service-specific missions.</p>



<p class="wp-block-paragraph">Maj. Josh Rykowski, mission team leader with a service-retained CPT in the Army’s Cyber Protection Brigade, explained that each 39-member CPT is broken into four sections.</p>



<p class="wp-block-paragraph">The first, he told reporters during a media roundtable October 11 at the annual Association of the United States Army conference, is a headquarters section, which takes care of the administrative part of managing and running a team in addition to taking care of some of the planning in preparation for a mission.</p>



<p class="wp-block-paragraph">Next, down in the actual team itself, there are two mission elements and a support element with the idea that each element has the same personnel and equipment and can be exchanged as need be and push them out on missions separately if required, Rykowski said.</p>



<p class="wp-block-paragraph">In terms of the actual mission sets these teams perform, what’s different about a cyber protection team as opposed to a network operator or local administers is “at the end of the day they hunt for adversaries,” Lt. Gen. Paul Nakasone, commander of Army Cyber Command, told reporters at AUSA. “They’re looking for someone that does not want to be found in our network and that’s what is a core skill that we train in our cyber protection teams.”</p>



<p class="wp-block-paragraph">CPTs can be thought of as quick reaction forces to assist local owners and are not meant to remain on the network for an extended duration.</p>



<p class="wp-block-paragraph">“If I get tasked to go support a mission owner, no matter who it is, they’re not going to give me the keys to the kingdom,” a defensive cyber exercise participant at Cyber Flag, Cyber Command’s annual validation event, <a href="https://www.c4isrnet.com/2017/06/30/an-exclusive-peek-inside-cyber-commands-premiere-annual-exercise/">told C4ISRNET in June</a>. “I’m going to have to go through the local defender, their network owner to get my recommended changes.”</p>



<p class="wp-block-paragraph"><i><u>[<a href="https://www.c4isrnet.com/2017/06/30/an-exclusive-peek-inside-cyber-commands-premiere-annual-exercise/">An exclusive peek inside Cyber Command’s premiere annual exercise</a>]</u></i></p>



<p class="wp-block-paragraph">“Really, I don’t want the keys to the kingdom. I wouldn’t want to become their system administrator,” another defensive team lead said. “Eventually, I’ve got to leave” their network.</p>



<p class="wp-block-paragraph">For the cyber protection teams, this is a new environment into which they’re entering, another defensive team lead said. They look to the local administrators to see what normal on their network might mean or what might be anomalous behavior.</p>



<p class="wp-block-paragraph">“Being an Army CPT, we’ve received a broad range of missions,” Rykowski explained. These include assisting network owners or the local defenders, educating them on CPT capabilities, and trying to leave the network in a much more defensible position, training and vulnerability assessment.</p>



<p class="wp-block-paragraph">The network operators have a difficult job, Rykowski said, noting they’re on call 24/7 and focused on vulnerabilities. “What we bring to bear is we show up for a short duration with a threat focus. We help them close the gaps consistent with that particular threat,” he said.</p>



<p class="wp-block-paragraph">When they show up, they bring their own kit that includes hardware (server stacks), software and sensors.</p>



<p class="wp-block-paragraph">These kits provide teams with multiple tools, including: network assessment equipment; host forensics equipment, allowing them to look at the entire network and specific work stations; rudimentary defense mechanisms; plus a substantial amount of storage capability and substernal amount of computational power.</p>



<p class="wp-block-paragraph">The combination “allows me to flexibly create tools on the fly from my repository of tools to figure out what my exact setup needs to be when I’m out working with my customers,” Capt. Sean Eyre, a computer network defense manger within the cyber protection brigade, told reporters.</p>



<p class="wp-block-paragraph">These kits are standardized among the cyber protection brigade and for Army Cyber. Across the joint force, however, service has a different type of kit, despite CYBERCOM producing a standard requirements document that all kits must meet standard baseline requirements, Navy Lt. John Allen, CYBERCOM J35 Department of Defense Information Network operations CPT engagement lead, <a href="https://www.c4isrnet.com/home/2017/07/05/cyber-flag-exclusive-what-cyber-command-learns-from-the-annual-exercise/">said during a June conference</a>.</p>



<p class="wp-block-paragraph"><i>[<a href="https://www.c4isrnet.com/home/2017/07/05/cyber-flag-exclusive-what-cyber-command-learns-from-the-annual-exercise/">Cyber Flag exclusive: What Cyber Command learns from the annual exercise</a>]</i></p>



<p class="wp-block-paragraph">What exists today are four types of kits, each usually with its own specific suite of tools that all meet the requirements. This does present some interoperability challenges, but the command is working toward rectifying those, Allen said.</p>



<p class="wp-block-paragraph">CYBERCOM is <a href="https://www.fifthdomain.com/dod/2017/09/07/cyber-command-moves-toward-standardized-cyber-kits/">now looking toward standardizing kits</a>.</p>



<p class="wp-block-paragraph"><i>[<a href="https://www.fifthdomain.com/dod/2017/09/07/cyber-command-moves-toward-standardized-cyber-kits/">Cyber Command moves toward standardized cyber kits</a>]</i></p>



<p class="wp-block-paragraph">Rykowski explained that they can reconfigure their kits on the fly if need be. “When we do that mission analysis &#8230; and think through what capabilities do we need to bring to bear based on the network we’re working on and based on the adversary we need to be hunting, we can set those capabilities up ahead of time so we can hit the ground running,” he said.</p>



<p class="wp-block-paragraph">“It also gives us the capability to reconfigure it on the fly, so if we do hit the ground and the network may not be what it as supposed to be … we can reconfigure on site to again bring different capabilities to bear.”</p>



<p class="wp-block-paragraph">These kits also have internal defenses that prevent them from becoming infected when plugged into infected networks. “While we do connect our kit directly to the network, we have defenses on it to ensure we ourselves don’t get exploited if the adversary is still on the network,” Rykowski said.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Cyber warriors need constant training, says senior Navy official</title>
		<link>https://staging.sightlinemg.com/federaltimes/cyber/2017/02/22/cyber-warriors-need-constant-training-says-senior-navy-official/</link>
					<comments>https://staging.sightlinemg.com/federaltimes/cyber/2017/02/22/cyber-warriors-need-constant-training-says-senior-navy-official/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Wed, 22 Feb 2017 11:26:09 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Show Reporter]]></category>
		<guid isPermaLink="false">https://staging.sightlinemg.com/federaltimes/uncategorized/2017/02/22/cyber-warriors-need-constant-training-says-senior-navy-official/</guid>

					<description><![CDATA[According to the commander of Fleet Cyber Command, cyber warriors need constant training to prevent atrophy of skills.]]></description>
		
					<wfw:commentRss>https://staging.sightlinemg.com/federaltimes/cyber/2017/02/22/cyber-warriors-need-constant-training-says-senior-navy-official/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">24166</post-id><media:content medium="image" url="https://staging.sightlinemg.com/wp-content/uploads/2026/08/cyber-center.JPG.jpg" width="1600" height="1063" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The commander of U.S. Fleet Cyber Command/10th Fleet wants cyber protection teams to participate in training simulations when they aren&#8217;t on a mission.<br/><br/>Vice Adm. Michael Gilday said Tuesday at the AFCEA West conference in San Diego that these teams must have consistent training to be ready to take on a multitude of challenges in cyberspace.<br/><br/>The Navy officer described to conference attendees an environment in which there is an increase in threat actors and their capabilities — both in the stealth and lethality of malware, which is growing increasingly cheaper — and a higher degree of the use of automation from proxies operating on behalf of nation states.<br/><br/>Gilday&#8217;s concern is that cyber skills can quickly atrophy. He stressed the need for a <a href="http://www.defensenews.com/story/defense/training-simulation/2016/08/11/army-spearheading-cyber-persistent-training-environment/88577034/" target="_blank" title="Link: http://www.defensenews.com/story/defense/training-simulation/2016/08/11/army-spearheading-cyber-persistent-training-environment/88577034/">persistent training environment</a> so operators could train each day they&#8217;re not on a mission.<br/><br/></p>





<p class="wp-block-paragraph">The persistent training environment has been a top priority for the Department of Defense. Just like soldiers go to the rifle range to hone their marksmanship, cyber warriors need a space to hone their hacking and defense skills. The initiative would serve as a range for cyber warriors to receive ongoing, realistic training.</p>



<p class="wp-block-paragraph">The Army will be heading up this <a href="http://www.c4isrnet.com/articles/dod-issues-special-notice-for-persistent-cyber-training-environment" target="_blank" title="Link: http://www.c4isrnet.com/articles/dod-issues-special-notice-for-persistent-cyber-training-environment">effort</a>.</p>





<p class="wp-block-paragraph">Gilday also stressed the need for capabilities. &#8220;I described a threat actor that can get their hands on new tools literally by the hour,&#8221; he said. &#8220;I need better tools than the adversary has.&#8221;</p>



<p class="wp-block-paragraph">This involves not only attracting the best developers available to the &#8220;U.S. Navy so we can bring a punch to the fight,&#8221; but leveraging new acquisition vehicles such as the Defense Innovation Unit Experimental, or DIUx, to rapidly purchase tools, he said.</p>





<p class="wp-block-paragraph">&#8220;How do you continue to improve yourself on a constant basis is tough in an acquisition system where progress is measured in years and not hours, weeks and months,&#8221; Gilday told reporters following his remarks.</p>



<p class="wp-block-paragraph">DIUx will be an important partner, he said, because &#8220;the acquisition cycle [that] currently takes a couple of years is not going to do it for us.&#8221;</p>
]]></content:encoded>
	</item>
	</channel>
</rss>
