Colt

Archive for the ‘Cyber’ Category

Cyber Soldiers Collaborate on Drone Dominance

Saturday, July 18th, 2026

FORT GORDON, Ga. – Developers from the Hardware Section of Cyber Solutions Development-Maryland, 780th Military Intelligence Brigade (Cyber), recently collaborated with developers from the 11th Cyber Warfare Battalion’s CSD-Tactical on a project to increase the Army’s drone warfare capabilities.

The project, which spanned more than a year, aligns with the Army’s “Transforming in Contact” initiative, which aims to modernize the battlefield by rapidly delivering new technology into the hands of Soldiers. Drone warfare has become one of the most significant battlefield innovations in recent years, with several countries scrambling to develop increasingly advanced drone technology following the outbreak of the war in Ukraine.

This project required developers to work across several technical domains, including embedded systems, radio-frequency engineering, 3D printing, networking systems and more. Developers from CSD-Maryland collaborated with CSD-Tactical through shared code repositories, hundreds of remote meetings and numerous TDY trips.

The project culminated with a visit to U.S. Army Cyber Command by the Secretary of the Army, Honorable Daniel P. Driscoll, on March 26. CSD-Maryland’s Hardware Section traveled to Fort Gordon, Georgia, to demonstrate the numerous capabilities developed over the previous year.

The drone demonstration was conducted alongside the 11th CWB’s Expeditionary Cyber and Electromagnetic Activities Teams which showcased their ability to provide battlefield lethality through cyberspace operations. Developers from CSD-Maryland demonstrated to the Secretary Driscoll; ARYCYBER Commanding General Lt. Gen. Christopher L. Eubank and other senior leaders their ability to simultaneously deploy three autonomous 3D printed vertical take-off and landing drone systems and corresponding software solutions developed entirely in-house.

This project, which originated at CSD-Maryland, was fully transitioned to the 11th CWB shortly after the demonstration, enabling the battalion to continue developing and employing the capability. The impact of this effort extends beyond cyber units. The project was designed not only for use by electromagnetic activities teams within the 11th CWB, but also for potential employment by Army brigade combat teams. This demonstrates how the gap between cyber operations and more traditional combat roles continues to narrow as battlefield technology becomes increasingly advanced.

This evolving battlefield environment makes the task of building combat-ready formations more important than ever, whether through the development of new battlefield capabilities by organizations such as CSD-Maryland and CSD-Tactical or through training in cyber warfare tactics by electromagnetic activities teams. By remaining at the forefront of emerging wartime strategies, including drone warfare and expeditionary cyber operations, the Army’s cyber forces are helping ensure that Soldiers remain prepared to face any adversary in an increasingly complex and dynamic operational environment.

By SPC William Perez, 780th Military Intelligence Brigade (Cyber)

Forging the Arsenal of Freedom: Department of War Suspends CMMC Phase II Requirements

Wednesday, July 15th, 2026

The Department of War today announces the immediate suspension of the Cybersecurity Maturity Model Certification (CMMC) Phase II requirements, which were originally scheduled to come into effect on November 10, 2026. All Phase I self-assessment requirements remain firmly in place. Additionally, the Department will begin a comprehensive review of CMMC aimed at aligning with Secretary of War Pete Hegseth’s Acquisition Transformation System (ATS) directives prioritizing speed to capability, lowering barriers for small, medium, and non-traditional businesses, and replacing bureaucratic compliance with scalable, resilient cybersecurity measures.

Ensuring access to leading-edge commercial capabilities is a critical driver powering the Secretary of War’s operational execution for the “Arsenal of Freedom”. While the current CMMC program was designed to enhance DIB cybersecurity, instead it has created prohibitive compliance costs and bureaucratic burdens. Recent data, including reports from the Small Business Administration (SBA), confirmed that CMMC compliance is forcing innovative companies out of the Defense Industrial Base (DIB) which will delay the delivery of critical capabilities to the warfighters.

“In support of Secretary Pete Hegseth’s directive to reduce compliance barriers for small and medium sized businesses, we are today suspending the CMMC Phase II requirements and initiating a 60-day study of the future of this program,” said DoW Chief Information Officer Kirsten A. Davies. “Robust cybersecurity and operational resilience remain critical to protecting American innovation and supporting warfighter readiness. We believe the DIB can achieve both, while we reduce unnecessary government red tape.”

Effective immediately, the Department will suspend the transition to Phase II requirements of CMMC, as well as pending and future CMMC implementation milestones across the Department of War solicitations and contracts.

“We have a strategic imperative to reduce bureaucracy as we build the world’s strongest Arsenal of Freedom. The CIO’s decision ensures we maintain a strict security baseline while removing paralyzing costs and keeping innovators and competition growing in the defense supply chain,” said Hon. Michael Duffey, Under Secretary of War for Acquisition and Sustainment.

To realign our cybersecurity posture with the principles of the ATS, the Department CIO is establishing a CMMC Reform Task Force to conduct a comprehensive top-to-bottom review of the certification program. This task force will serve as the central hub for synthesizing industry feedback from our public Request for Information (RFI) regarding compliance challenges. Using these insights, the team will recommend realistic, scalable security measures that prioritize speed to capability and lower barriers for small and non-traditional businesses, delivering their final report to the DoW CIO within 60 days.

During this interim period, the Department will enforce cybersecurity compliance with the NIST SP 800-171 Rev 2 standard through self-assessments and select government-led assessments, focusing on tangible cyber hygiene rather than administrative overhead.

It is critical to note that this action does not eliminate the requirement for companies to protect federal data. All defense contractors and subcontractors remain contractually obligated to safeguard covered defense information in accordance with DFARS clause 252.204-7012.

The Department of War remains steadfast in its commitment to securing its digital domain while empowering the DIB to rapidly provide the most advanced capabilities to the warfighter. More information can be found here: dowcio.war.gov/brilliantbasics

Department of War Establishes Cyber Mastery Incentive Pay

Friday, June 12th, 2026

The Department of War (DoW) is launching the Cyber Mastery Incentive Pay (C-MIP) program, a key effort in the Secretary of War’s Project Patriot Pipeline initiative, and an important step toward hardening our cyber defenses and strengthening our Defense Industrial Base capacity to compete in the cyber domain.

C-MIP fundamentally modernizes how the Department incentivizes its Cyberspace Operations Forces (COF) assigned to U.S. Cyber Command. The C-MIP Framework provides DoW a powerful tool to build and drive an elite corps of cyber warfighters ready to dominate in the digital battlespace. As part of the broader Secretary of War-approved CYBERCOM 2.0 effort, C-MIP is a forward-looking, multi-layered incentive framework that promotes domain mastery within our most critical cyber work roles.

“Cyber domain capabilities are high-demand, low-density skill sets critical to our daily warfighting operations. To incentivize our cyber forces and meet both Department of War and Defense Industrial Base needs, we need to shed legacy incentive models and invest directly in our people serving on the digital front lines. C-MIP does this,” said Anthony J. Tata, Under Secretary of War for Personnel and Readiness. “It is a strategic initiative to attract, develop, and retain the specialized workforce needed to counter threats, deter aggression, and dominate the cyber domain.” The C-MIP program moves beyond one-size-fits-all incentive models to a flexible and cumulative system that directly links pay to certified skill mastery and the performance of exceptionally demanding duties.

“C-MIP fundamentally changes our approach by incentivizing the pursuit of deep, technical, and career-long expertise,” said Katie Sutton, Assistant Secretary of War for Cyber Policy. “By breaking down the bureaucratic norms of government incentives, this framework enables increased lethality by driving the skills, roles, and duties most vital to mission success. New incentive frameworks normally take years to develop, but the CYBERCOM 2.0 team has driven this outcome in 60 days. This framework ultimately sends a clear signal to our cyber warriors that the Department values the skills necessary to outpace and prevail against our Nation’s adversaries by incentivizing Service Members’ commitment to cyber domain mastery.”

The C-MIP program features two distinct and cumulative layers:

Skill Incentive Pay (SIP): The foundational layer that directly rewards an individual’s demonstrated work role skill level — Basic, Senior, or Master — established by U.S. Cyber Command (USCYBERCOM). This layer creates a clear and compelling path for our cyber warriors to pursue continuous technical growth.

Special Duty Pay (SDAP): A monthly incentive for members performing duties that USCYBERCOM designates as exceptionally demanding. This pay recognizes the specialists who scale their skills across the force by serving as instructors, certified work role trainers, and in advanced cyber duties.

The Assistant Secretary of War for Cyber Policy (ASW-CP) will oversee the execution of the C-MIP framework. The ASW-CP will closely partner with the Office of the Under Secretary of War for Personnel and Readiness (USW(P&R)), U.S. Cyber Command (USCYBERCOM), and the Military Departments to ensure the framework remains agile to warfighter requirements. General Joshua M. Rudd, Commander of USCYBERCOM, stated, “I’m excited about what C-MIP represents. Our warfighters take on complex missions that demand extraordinary commitment and technical expertise. We need to ensure that commitment is being recognized, especially when our operators step into our most demanding roles.”

Taking effect October 1, 2026, the C-MIP program launches a new era of cyber talent management. By aligning a competitive incentive model with Secretary Hegseth’s strategic vision, the Department of War begins to unleash our Nation’s potential to build and sustain world-class cyber forces for years to come.

ABS Acquires RMC Global to Strengthen Cyber, Risk and Resilience Capabilities

Friday, May 8th, 2026

Acquisition to Deliver Stronger More Integrated Solutions for Clients


Photo Caption (L to R): Vince Kuchar, President, RMC Global, and David Wechsler, President and CEO, ABS Group

(HOUSTON) ABS, through its affiliate ABSG Consulting Inc. (ABS Consulting), has today announced the acquisition of?RMC Global (RMC), a leading provider of industrial cybersecurity, risk management?and resiliency solutions.

The acquisition strengthens ABS Consulting’s capabilities and market position, bringing together two organizations with complementary expertise, shared values and a common mission. Combining RMC’s capabilities with ABS Consulting’s scale, technical depth and global resources, unlocks more integrated solutions for clients operating in increasingly complex risk environments.

ABS Chairman and CEO John McDonald said: “Clients are facing increasing operational risk, cyber threats, and regulatory pressure. Bringing together the expertise of RMC and ABS Consulting strengthens our ability to deliver even greater value and support for our clients through comprehensive, integrated solutions.”

He highlighted that the acquisition is both a strategic and cultural fit. RMC’s strong culture of critical infrastructure protection and industrial cybersecurity aligns closely with ABS Consulting’s focus on protecting people, assets and critical operations around the world.

He said: “ABS and RMC make a strong fit in mission and culture. Both organizations are focused on work with real-world impact. Both value expertise, practical problem solving, and long-term trust. And both are committed to helping protect critical systems, support resilience, and solve complex challenges in environments where the stakes are high.”

ABS Consulting CEO David Wechsler said: “This acquisition builds on priority areas where we see sustained client demand and long-term growth opportunity. The combination strengthens our ability to support our customers’ evolving operational risk, cyber threats, and regulatory demands, while giving us a broader platform to deliver increasingly innovative solutions.”

RMC President Vince Kuchar said: “What brought our organizations together is a shared culture, mission, and purpose: delivering practical, trusted solutions that protect critical infrastructure and critical missions, enabling resilience in the face of growing risk. By joining ABS with its 164-year mission, we are better positioned to support our clients today and to adapt alongside them in the years ahead.”

More information about ABS Consulting is available here. More information about RMC is available here

D-Fend Solutions Named in 2025 Gartner Emerging Tech: Top-funded Startups for Cyber Electronic Defense (CED)

Thursday, February 12th, 2026

RA’ANANA, Israel and MCLEAN, Va., February 12th — D-Fend Solutions, the leader in field-proven radio frequency (RF) cyber-based, non-kinetic, non-jamming counter-drone takeover technology, has been named in the Gartner Emerging Tech: Top-funded Startups for Cyber Electronic Defense (CED).

According to Gartner, in a Key Finding of the report, “commercial counter-drone success hinges on nonkinetic, high-precision counter-unmanned aircraft system (C-UAS) technology. Solutions that can neutralize threats without causing collateral damage or disrupting legitimate civilian communications are favored.”

In a related Recommendation, Gartner advises organizations to “Secure commercial market leadership by prioritizing scalable, nonkinetic mitigation systems that guarantee low collateral damage. Do this by implementing AI-driven sensor fusion to precisely distinguish alien assets from legitimate communication signals and demonstrating practical efficacy.”

According to the report, “the drone detection and mitigation category received significant commercial investment, driven by the reality that inexpensive, widely accessible drones pose threats to private enterprises, energy grids, and public venues. Consequently, investment is heavily focused on companies providing scalable, nonkinetic solutions that can operate within urban and regulatory-sensitive environments without causing collateral damage.”  D-Fend Solutions is an example of one such company.

Regarding Near-term Implications and Actions, Gartner states that “To protect against widely accessible, inexpensive drones in civilian settings, leaders must focus on solutions that are scalable, effective, and nondestructive. Product leaders should prioritize the development of modular, open-architecture C-UAS systems that leverage easily deployable detection sensors.”

Gartner subscribers can access the report here.

Gartner, Emerging Tech: Top-funded Startups for Cyber Electronic Defense (CED), 8 December 2025. GARTNER is a trademark of Gartner, Inc. and/or its affiliates. Gartner does not endorse any company, vendor, product or service depicted in its publications, and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner publications consist of the opinions of Gartner’s business and technology insights organization and should not be construed as statements of fact. Gartner disclaims all warranties, expressed or implied, with respect to this publication, including any warranties of merchantability or fitness for a particular purpose.

Year in Review: CECOM SEC Provides Solutions Through Modernization

Tuesday, January 20th, 2026

In 2025, the Communications-Electronics Command Software Engineering Center advanced the Army’s modernization portfolio through scalable software capabilities.

Given the Army’s adoption of continuous delivery and modern DevOps, transformation is the new normal for the Department of War support center headquartered in Aberdeen Proving Ground, Maryland.

DEVSECOPS AND CONTINUOUS DELIVERY

Powered by expertise in AI, DevSecOps, electromagnetic warfare, operational support, and software solutions, the Center concluded the year by advancing its core mission to deliver modular, transformative solutions that meet Soldiers’ evolving needs through enhanced cyber posture, scaled-up deployment cadence, modernized systems, and expanded field engagement. These competencies support enterprise DevSecOps efforts on behalf of the Enterprise Cloud Management Agency and the Chief Information Officer.

CECOM SEC’s extensive and continuous modernization posture kept the Army ahead of evolving threats without disrupting readiness. In step with its continuous software release cadence, the Center delivered 350 security updates in FY25, ensuring Soldiers have access to cutting-edge capabilities.

SOFTWARE MODERNIZATION AND CLOUD ENABLEMENT

FY25 saw the Center meet the Army’s need for cloud-based solutions. Cloud-enabled modular infrastructure allows the Army to deliver innovation rapidly so updates can be rolled out instantly across the force without delay.

“Software’s always changing, the environment’s always changing—so the requirements for systems are also changing with that, and we need to be able to adapt,” says Seiichi Sugawara, computer scientist for CECOM SEC.

The Center is propelled by the Army’s demand for innovation against the backdrop of an ever-changing battlefield.

“There’s a change in risk appetite. The Army is taking on more risk in order to release these next-generation systems faster,” Sugawara stated.

In FY25, CECOM SEC’s modernized cloud infrastructure met this speed of delivery with almost 600 software releases.

ZERO TRUST CYBERSECURITY

With the Army moving toward cloud-native solutions and continuous integration and continuous delivery, or CI/CD, there’s a growing requirement for a cyber posture that underpins modernized capabilities.

CECOM SEC advanced its cyber posture for the Army by working with the Army Materiel Command to support the DOW’s policy and procedure development for Zero Trust cybersecurity. In an escalating cyber threat environment, one of the Center’s goals is to educate the workforce on Zero Trust by partnering with Defense Acquisition University. The Center also partnered with U.S. Military Academy at West Point to analyze the feasibility of the SEC-developed mapping between Zero Trust and the DOW Risk Management Framework.

Continuous hardening of Army systems is required to ensure that readiness keeps pace with modernization across a more resilient foundation.

AI FLOW AND AI-ENABLED CAPABILITIES

FY25 was also CECOM SEC’s successful proof-of-concept year for AI Flow, an application built around AI agents, workflows, smart API’s, and custom AI applications. Designed to revolutionize workflows through cutting-edge AI technology, the application uses open AI structure to assist in a range of functions.

AI Flow currently handles 37 subscriptions with 500 agents across various organizations and averages 90 million tokens a month—and is growing, too. In FY25, the user base surged to 5,000.

The Center’s Army Reprogramming Analysis Team combined AI Flow with its Simulation Modeling Framework to create an AI-enabled code generator.

ELECTROMAGNETIC WARFARE AND THREAT ANALYSIS

That effort is part of the Army’s increased demand for threat analysis. FY25 saw continued field demand, upping the tempo of electromagnetic warfare support and driving the need for faster mission data updates. The Army Software Portal Electronic Notification System, managed by CECOM SEC, provided over 33,000 downloads for Soldiers requiring air and ground mission software support. The Center also analyzed 2,800 threats.

READINESS DATA AND DECISION SUPPORT

CECOM SEC’s mission focus in readiness continued to build rapport with Soldiers in the fight across the world. Its Data Analytics and Readiness Team developed a Power BI decision support tool that gives Army leadership real-time visuals of critical data such as budget allocations, acquisition milestones and equipment deployment timelines.

The Center’s usage of Low Code No Code technology is accelerating development and delivery of software to Soldiers.

Personnel from DART and CECOM SEC’s Technical Services Directorate also worked with the Army Audit Agency to develop tools for detecting fraudulent activities involving government-issued credit cards and the Defense Travel System. Out of 17 million Army vouchers, they were able to flag 240,000 for further review.

LOOKING AHEAD

The center’s deep commitment to meeting Soldiers’ needs is a testament to its continued pursuit of scalable software readiness.

While increased demands for AI, machine learning, and automation play out, the fact remains: CECOM SEC’s mission is to support people in the fight.

“Everything serves trust—and that trust is built on our technical competence and our work ethic, and the relationships that we can build based on that,” says John Fry, Field Support Branch Chief for CECOM SEC.

All these accomplishments reflect the greater transformation underway across the Army with CECOM SEC positioned squarely at the forefront of Army modernization in FY26.

“2025 was a strategic inflection point for the Center,” says Boomer Rizzo, Deputy Executive Director for CECOM SEC. “We’ve accelerated our shift from legacy software sustainment to agile software solutions. That shift fundamentally changes how we support Soldiers and partners moving forward in 2026.”

In alignment with the Army’s broader transformation efforts, effective January 20, 2026, CECOM SEC was redesignated as the CECOM Army Software & Innovation Center.

By Kevin Deegan

LTG James Rudd Nominated for DIRNSA / Commander, USCYBERCOM

Tuesday, December 30th, 2025

I am of two mindsets regarding the good news that LTG Joshua Rudd has been nominated to lead the National Security Agency and US Cyber Command. On one hand, he’s not an intelligence or cyber officer and has no intelligence experience, particularly with neither SIGINT nor Cyber. Considering how vital these two agencies are to our national defenses that’s a serious issue. It also continues to indicate that our nation is not serious about its Information Warfare capability. 

On the other hand, he has extensive JSOC as well as current PACOM experience. As a consumer of intelligence, he’ll have an idea of what he expects the organization to produce and he comprehends the pacing threat we face in the Pacific. An additional advantage is that as an ARSOF General, he may gain a better appreciation for the “Cyber” element of the SOF-Cyber-Space triad currently so popular with his compatriots. In particular, I’m hoping he realizes that Electromagnetic Spectrum Operations are what they are really interested in and not the Cyber buzzword. Maybe he’ll also gain an appreciation for the authorities and expertise needed to provide the services associated with EMSO and why it’s best to defer to the pros from Dover and that the Cyber Electromagnetic Activities (CEMA) penguins don’t really need thumbs (a “Madagascar” reference) as they have their own. If anything, SOF needs more of them within their formations. 

For those of you unfamiliar with LTG Rudd’s here’s a link to his rather impressive bio.

This was first published in Soldier Systems Digest Vol 5, Issue 51, “The Convergence of Irregular Warfare and Information Warfare”

You can sign up for this weekly newsletter which concentrates on emerging warfighting capabilities here.

Red Cat Selects SpiderOak to Conduct Blue UAS Cybersecurity Assessment for Black Widow Platform

Wednesday, December 17th, 2025

Services strengthen cyber resilience for Army’s Short-Range Reconnaissance (SRR) program and future unmanned systems across all domains

RESTON, Va., Dec. 16, 2025 — SpiderOak, a leader in zero-trust cybersecurity solutions for space, aerospace, and defense, announced today that Red Cat Holdings (NASDAQ: RCAT), a recognized industry leader in advanced all-domain drone and robotic solutions for defense and national security, has selected SpiderOak to perform a comprehensive Blue UAS cybersecurity assessment of its Black Widow™ Short-Range Reconnaissance (SRR) platform.

As part of the Defense Innovation Unit’s (DIU) Blue UAS framework, SpiderOak—an official Recognized Assessor—will conduct vulnerability analysis, penetration testing, and Foreign Ownership, Control, or Influence (FOCI) evaluations to support Red Cat’s inclusion of the Black Widow™ on the Blue UAS Cleared List.

Strengthening Cyber Resilience Through Blue UAS Assessments

As a Defense Innovation Unit (DIU) Recognized Assessor, SpiderOak delivers a suite of independent cybersecurity evaluation services under the Blue UAS framework—designed to verify and enhance the cyber resilience of unmanned systems before they enter the Department of War supply chain.

For Red Cat’s Black Widow™ platform, SpiderOak’s team will perform a comprehensive Blue UAS assessment, including vulnerability analysis, penetration testing, and Foreign Ownership, Control, or Influence (FOCI) evaluations. These services provide critical validation that the platform meets stringent U.S. Government cybersecurity, supply chain, and compliance standards.

SpiderOak’s methodology integrates advanced threat modeling, secure-by-design analysis, and supply chain forensics to help partners like Red Cat meet or exceed requirements under NIST 800-171, NIST 800-53, and Executive Order 14028. Through its role as a Recognized Assessor, SpiderOak supports the rapid fielding of trusted, mission-ready systems that advance U.S. defense and intelligence operations across all domains.

Support for Secure All-Domain Operations

“Red Cat is an industry leader pushing the boundaries of all-domain defense operations, and the Black Widow™ platform plays a critical role in ensuring our warfighters maintain situational advantage,” said Michael Carlson, Senior Director of Business Development for SpiderOak. “Our Blue UAS assessment services are designed to deliver outcomes quickly for the warfighter—helping trusted partners like Red Cat validate cyber readiness, achieve certification, and get critical capabilities into the field sooner. By bringing zero-trust principles and a rigorous, data-driven assessment methodology to the forefront, we’re enabling faster, more secure deployment of mission-critical UAS across the Department of War.”

“Cybersecurity is foundational to trust and mission assurance,” said Jason Gunter, VP of Tech and Innovation at Red Cat Holdings. “Working with SpiderOak ensures that Black Widow™ not only meets Blue UAS standards but sets a new benchmark for how defense-grade UAS platforms should approach cyber protection and supply chain integrity.”

Enabling Secure UAS Integration into the DoD Supply Chain

This engagement reinforces the continued importance of the DIU Blue UAS program in accelerating access to secure and compliant unmanned systems across the Department of War. Through its role as a Recognized Assessor, SpiderOak supports industry partners in meeting stringent cybersecurity and compliance requirements while enhancing the resilience of command, control, and telemetry links across contested environments.