Undersea Warfare Conference 2023
This year I am discussing the migration of the Risk Management Framerowork to a Continuous - ATO. I will provide the link to the brief post conference.
The below abstract is related to my presentation at the 2022 USW Conference on 28 September 2022. It was focused on Abstract Paper: Asynchronous Communication A culture change to decrease the time variable in the development of JADC2/Overmatch applications and systems:
Purpose - What is the aim of the research to be presented in a panel session?
Introducing DEVSECOPS and commercial processes and tools to the DOD/Navy USW environment is critical to reducing the timeline to develop and field relevant applications and systems to the fleet. The current DOD process based on the Planning, Programming, Budget, and Execution (PPBE) system requires modification. PPBE is the scheme by which DoD sets its plans and priorities and also how it asks Congress to approve its spending and provide oversight (often by verifying actual execution against predicted schedule and performance). The history of the PPBE dates to 1961 and is based on period industrial planning concepts. The PPBE’s inflexibility increases the difficulty of rapidly shifting funding to emergent innovations that appear promising, as new programs must typically wait more than two years to be included in the budget. In addition, the PPBE encodes divisions between research, production, and operations activities that stymy iterative or feedback-based development.
Theme - How does the research relate to the technical session of the conference?
The research will investigate how the implementation of DEVSECOPS to critical programs of records can enhance the program’s overall capability, reduced timelines, inspire talent acquisition in our community, and ensure our Navy stays ahead of the threat. Additionally, additional awareness of the importance of software development, open source-based technologies, and tighter connection to the operational fleet will be discussed.
Design/Methodology/Approach - How were the research objectives achieved?
The discussion will include an overview of the current DEVSECOPS and software factory efforts and look at past real examples of closely connecting an effective program's development operations and security components. The discussion will support the overall awareness of new commercial processes and technologies and how they are being introduced to the Navy and USW community. Topics on a post-covid hybrid way of life within our community will be discussed, thus introducing technologies and processes to allow cross-domain and multi-security level 1 development, changes in data architectures, communication enhancements, and, most importantly, a refocus on the revitalization of C4ISR. There will be a convergence of battle management aids, command and control, and combat systems.
Findings - What are the overall research findings?
The top findings included:
●The introduction of DEVSECOPS and introducing the fleet operator in real time was vital in decreasing the time to fielding solutions
●The introduction of asynchronous communications created a strong community of interest and strong relationship and interaction between the development of requirements and implementation of solutions and functionality.
●The use of asynchronous communication will also support our need to rapidly shift our understanding of the IndoPACOM threat and renewal of C4ISR in the South China Sea. The Navy could extend its doctrine of local decision-making in wartime military operations and in its bureaucratic activities like weapons development and acquisition. A push toward more initiative and autonomy fosters adaptability and imposes surprise on adversaries. To gain an advantage in military competition with China, the Navy will likely need to revise its resource allocation processes to permit faster decisions. And more adaptability in selecting how to pursue its operational objectives best; revisiting the budgeting and appropriations process is becoming a strategic and even tactical input to decision-making.
●Adopting a more commercial culture increased the ability to recruit and retain top talent in the software development community.
●The discussion and analysis focus on the timely development and delivery of capability in tangible weapons systems: cyber-physical systems that can be used for operational navy purposes. Software and information systems have become increasingly crucial in weapon systems. The very essence of modern software-defined systems is that all system functions involve software. The historical analysis herein captures the trends and effects of inserting information technology into advanced techniques.
●Discussion on the use of OTAs to make an immediate impact on DOD systems. Practical Applications - What are the practical applications of the research? What have changes to existing practices been caused due to this research? For example, there will be changes in business and cultural processes and mindsets due to post-COVD, the difference in the threat, and the realization of the rapid pace of commercial technology’s impact on war (as seen by the Ukraine-Russia events). A practical example of this effort will be the migration of email to Microsoft Teams and Slack, the use of GitLab for DEVSECOPS and Project Management, and kanban boards for issue tracking and value of the Navy’s Operational Flank Speed. There will also be a discussion on the future of Zero Trust, AI/ML to support C4ISR, and unmanned/manned relationships in warfare (i.e., Task Force 59).
Original Value - What unique findings will be conveyed through the research?
The research will focus on the required cultural and business mindset changes and that these shifts will increase our defensive posture. In addition, the Navy has already been thru similar situations, and that historical reference is key to any new research or shifts in the way we operate and develop.
Must Reads: (My list of relevant books, podcast, articles)
Freedom Forge by Arthur Hermann
The Phoenix Project by Gene Kim
The Innovators by Walter Isaacson
Jack Carr Books (Terminal List, True Believer, Savage Son, The Devils Hand, In the Blood)
Looking for Another Rickover- 25 years ago and still looking
The brief https://gamma.app/docs/USW-23-RMF-to-CATO-ad5031rxsqsop8r
Please ping me on linkedin messaging if you are attending the conference