Appendix 5 Information Warfare Red Team

[Background][Purpose][Scope][Concept of Operations][Methodology]

Many of the ongoing and emerging ACTDs rely heavily on the use of various information technologies to bring advanced capability to the warfighter. These technologies that are vulnerable to exploitation require protection through analysis, awareness, demonstration, and possible redevelopment, under the auspices of the jointly sponsored Information Warfare Red Team.

Background

The Information Warfare Red Team (IWRT) is sponsored jointly by the DUSD(AT), the Office of the Assistant Secretary of Defense (Command, Control, Communications and Intelligence (OASD (C3I)) and the Joint Staff (J-3). The Joint Command and Control Warfare Center (JC2WC), San Antonio, Texas has been designated as the executive agent for the IWRT. The IWRT was formally initiated in August 1995.

In August 1995, the JC2WC assembled personnel from the National Laboratories, Service Information Warfare (IW) agencies, and other agencies and laboratories to formulate a concept of operations, develop methodologies, catalogue agency capabilities, and determine target exercises and programs.

Purpose

The goal of the IWRT is to improve the readiness posture of the DoD. This improvement will be accomplished by identifying vulnerabilities in information systems and vulnerabilities caused by use of these information systems and then demonstrating these vulnerabilities to operators and developers. In certain cases, the demonstrations will include using the Opposition Force (OPFOR) for actual IW attacks as part of exercises. These activities will be designed to increase the awareness of vulnerabilities and to provide training in a stressed environment.

Scope

The IWRT will concentrate on the defensive posture of tactical systems (the Protect function). The IWRT will address all of the ACTDs that have potential operational residuals, selected Joint Command and Control exercises, and other systems as directed.

Concept of Operations

Figure 1-2

Figure 1-2: IWRT CONOPS

The red team's concept of operations (Figure 1-2) is a simple closed loop process where it begins with tasking from three entities: Office of the Secretary of Defense, the Joint Staff, and the Theater Commander in Chiefs. From the vulnerability assessment on selected ACTDs, the red team identifies the weaknesses, develops capabilities for demonstration and exploitation if required, and ends with an awareness or risk assessment of the vulnerability. The whole process feeds back to all concerned parties for potential redevelopment of system shortfalls.

Methodology

Figure 1-3

Figure 1-3: IWRT Methodology

The red team's methodology (Figure 1-3) involves gathering technical data on the ACTDs. The next two steps are to conduct an analysis and develop the capability to demonstrate the impact of vulnerability exploitation. The final step is to report and archive the results for further analysis.

IWRT points of contact are listed below.

AT StaffService/Agency POCC3I(IW) StaffJoint Staff
Dr. Charles Perkins
(703) 697-3568
Capt Bob Kernan
JC2WC
(202) 977-2174
CDR Ellis Fiedpkou-Leonard
(703) 614-0622
Maj Dave Bujold
J-38
(703) 693-4693

Maj Steven Spano
J-6K
(703) 697-1199

Master Plan Table of Contents