AskVantage

Security and privacy

DISA wants to automate 75% of its cyber response but is way off target

There is now way that the US military can protect itself against the exponentially growing number of cyber attacks, so it needs to lean in heavily on autonomous response.

Cite or link to this article

Griffin, M. (2024) 'DISA wants to automate 75% of its cyber response but is way off target', 311 Institute, 10 July. Available at: https://www.311institute.com/disa-wants-to-automate-75-of-its-cyber-response-but-is-way-off-target/ (Accessed: 1 October 2026).

A while ago I wrote about the NSA’s ambition to automate the vast majority of its spies with technologies such as Artificial Intelligence (AI). And now, as DISA prepares for the looming threat of China, the Defense Information Systems Agency (DISA) has set an ambitious goal of having 75 percent of its administrative-like cybersecurity capabilities completely automated by AI as well, Brian Hermann, cybersecurity and analytics director at DISA, told a media roundtable Tuesday.

“The only way that we can actually do our job with the pacing threat of China is to actually add that automation capability so that that the human analysts can take advantage of their brainpower to actually do the high-end fight stuff, not just the day-to-day normal stuff that happens all the time,” he said here at the TechNet conference in Baltimore.

“So I think that it’s an aggressive goal for us, but it’s something that we’re working hard to get after as well.” Hermann added that though there is no defined timeline for completing this automation goal, “it’s not where it needs to be.”

The Future of Cyber, by Keynote Matthew Griffin

However, he explained that DISA is making strides toward this goal by streamlining data into a collective space where it was created, instead of in separate silos.

“Our data analytics team has been creating a data lake architecture that allows us to have the data where it’s essentially created. If you think about this, it connects back to the DoD cloud strategy  the Joint Warfighting Cloud Capability. We have four primary cloud service providers under JWCC and so we’re creating the lake of data in the environment where the cybersecurity tools are providing, so it’s not going to generate a lot of exfiltration costs or transition costs,” Hermann said.

The creation of this data “lake architecture” was DISA’s next step after it sunset its Big Data Platform (BDP) in two parts that took place last year and earlier this year. With the BDP, DISA’s data was separated from each other, making it harder to eventually automate. Now, with the data moving toward being all in one place, DISA can move toward automation.

Hermann said DISA also plans for this central architecture to have a feature where users can log into one data-centric environment instead of having to use several tools to log into various databases to find a specific piece of data.

“The message that I got loud and clear from our analysts was that we’ve created a number of different silos, [and] that generated the need for them to log into a lot of different environments to do their job on a day-to-day basis. We’d like to have a more federated approach where they log into one portal and they’re able to get access to all the data, get all the insights that they need,” Hermann said.

Another benefit of this data-centric layout, Hermann explained, is that Zero Trust security architectures can be more easily implemented, since all the data is in one place, the necessary security precautions have the potential to be interoperable.

“We had protections at the local user’s desktop station, we had firewalls that existed at the various parts of our infrastructure, and they didn’t really talk to each other very much. So now, that’s the difference, they’re starting to talk to each other,” Hermann said.

FAQ

Why does this matter?

There is now way that the US military can protect itself against the exponentially growing number of cyber attacks, so it needs to lean in heavily on autonomous response.

Matthew Griffin

About the author

Matthew Griffin Founder, 311 Institute

Matthew Griffin is a multi-award winning Futurist and expert in Disruption and Innovation, Geopolitics, Leadership, and Technology, who NASA have described as a "walking encyclopaedia of the future" and a "futurist Polymath."

Read full bio

Matthew Griffin is a multi-award winning Futurist and expert in Disruption and Innovation, Geopolitics, Leadership, and Technology, who NASA have described as a "walking encyclopaedia of the future" and a "futurist Polymath." 15-time best selling author of the "Codex of the Future" series, Matthew is the Founder and Futurist in Chief of the 311 Institute, a global Futures and Deep Futures advisory firm working with royal households, world leaders, G7, G20, and G77 governments, NGOs, and multi-national mid and mega cap firms to help them explore, shape, and lead the next 50 years of business and society.

An award-winning YouTube creator with over a million followers, with an unrivalled global reach and impact, Matthew is a highly sought-after international keynote speaker, lecturer, and mentor who collaborates with global leaders through the United Nations Alliance of Civilizations (UNAOC) and United Nations General Assembly (UNGA) to shape pivotal initiatives such as the UN’s AI for Humanity program, the United Nations Conference of the Parties (UN COP), and the World Economic Forum in Davos.

As the former Global Head of Cloud, National Security, and Enterprise Sales for companies including Atos, Dell-EMC, and IBM, Matthew has a proven track record of building multi-billion dollar business units and turning failing divisions into market leaders. His ability to identify, analyse, and communicate the implications of hundreds of emerging technologies and trends is unparalleled, and his insights are trusted by many of the world’s most respected organisations, including ABB, Accenture, Adidas, AON, ARM, BCG, Centrica, Citi, Coca-Cola, Dentons, Deloitte, Dow Jones, EY, Google, KPMG, Lego, Legal & General, LinkedIn, Microsoft, PepsiCo, Qualcomm, RWE, Samsung, Siemens AG and Siemens Energy, T-Mobile, UBS, VISA, Walmart, Workday, Worldpay and many others.

Regularly featured in the global media including the AP, BBC, Bloomberg, CNBC, Discovery, Forbes, Khaleej Times, Telegraph, TIME, ViacomCBS, WIRED, and the WSJ, Matthews mission is to help organisations create a fair and sustainable future whose benefits are shared by everyone irrespective of their ability, background, or circumstances.

What future do you need to see?

Choose one to get started on security and privacy and the future of your organisation.

Where should Matthew reply?

Takes 30 seconds. No obligation. Matthew replies quickly. Privacy

Tag Cloud

Sources and further reading

  1. Us falls further behind in ai race could make conflict with china unwinnable report breakingdefense.com

Source: first published by the 311 Institute on 10 July 2024. Cite as: Griffin, M. (2024). DISA wants to automate 75% of its cyber response but is way off target. 311 Institute. https://www.311institute.com/disa-wants-to-automate-75-of-its-cyber-response-but-is-way-off-target/

You are welcome to quote this article with credit and a link to the original.

Book a Keynote