Cybersecurity — Five Functions
Cybersecurity Definition
Cybersecurity Definition
Cybersecurity is defined as the prevention of damage to, protection of, and restoration of:
- Computers
- Electronic communications systems
- Wire communication
- Electronic communication
…including information contained therein.
Five Properties
5 Cybersecurity Properties
Cybersecurity ensures information's:
- Availability
- Integrity
- Authentication
- Confidentiality
- Nonrepudiation
Cybersecurity Disciplines
Cybersecurity Disciplines
Cybersecurity disciplines include:
- Air Force Risk Management Framework
- IT controls/countermeasures
- Communications security
- TEMPEST (formerly known as emissions security)
- AF Assessment and Authorization (formerly known as Certification and Accreditation Program)
- Cybersecurity Workforce Improvement Program
Reference
AFI 17-130 Reference
AFI 17-130, *Cybersecurity Program Management*, describes risk management and cybersecurity as representations of dynamic, multi-disciplinary sets of challenges.
Continuous Evolution
Continuous Evolution
Processes and practices must continuously evolve and improve to match the ever-changing threat environment.
Cybersecurity Program Risk Management Strategy
Risk Management Strategy Foundation
The USAF's Cybersecurity Program's risk management strategy must ensure that the following of all information owned or held in trust by the USAF is protected:
- Confidentiality
- Integrity
- Availability
Strategy Integration
Strategy Integration
The program strategy must also be integrated into ALL key mission and business processes.
Capability Balance
Capability Balance
To ensure operational agility, cybersecurity capabilities will be balanced to include:
- Safety
- Reliability
- Interoperability
- Ease of use
…while maximizing performance, as well as promoting transparency and interoperability with USAF mission partners.
IA Awareness Training
IA Awareness Training
All USAF personnel are required to complete Information Assurance Awareness training:
- Prior to system access
- Annually thereafter
Five Functions of the USAF Cybersecurity Program
5 Cybersecurity Functions.
- Identify
- Protect
- Detect
- Respond
- Recover
Identify
Identify Function
Develop and maintain the organizational understanding required to manage cybersecurity risk.
Protect
Protect Function
Implement controls to ensure the delivery of mission critical infrastructure services.
Detect
Detect Function
Possess the ability to detect cybersecurity events when they occur.
Respond
Respond Function
Possess the ability to take action regarding detected cybersecurity events.
Recover
Recover Function
Possess the ability to:
- Remain operationally resilient
- Restore capabilities or services that were impaired due to cybersecurity events