Budget Account
0400D - Research, Development, Test and Evaluation, Defense-Wide
Budget Activity
07 - Operational system development
Description
The Countering Threats Automated Platform, managed by the Defense Counterintelligence and Security Agency (DCSA), is designed to enhance national security by leveraging advanced technologies for threat detection and mitigation. The primary objective of this initiative is to ensure a trusted federal, industrial, and affiliated workforce while enabling the delivery of uncompromised capabilities. The program integrates critical technology protection, personnel vetting, counterintelligence, and professional education to maintain America's strategic edge.
Central to this program is the DoD Insider Threat Management and Analysis Center (DITMAC), which provides an integrated capability for collecting and analyzing information related to insider threats. DITMAC's system gathers data from various sources, including insider threat hubs, counterintelligence, cybersecurity, personnel management, and law enforcement. This comprehensive approach supports the identification and mitigation of insider threats to DoD personnel, assets, and information.
In FY25, the DITMAC System of Systems (DSoS) aims to enhance its capabilities by supporting installation-level reporting for programs such as Prevention, Assistance, and Response (PAR), User Access Monitoring (UAM), and Behavioral Threat Analysis Capability (BTAC). Additionally, the system will adapt to allow for automated data ingestion to improve analytic efforts focused on areas of increased risk. These enhancements are part of a broader effort to deliver a Minimum Viable Capability Release (MVCR) case management tool by FY26.
Development efforts in FY25 will focus on workflows and reporting enhancements while integrating additional data sources for automated data ingestion. This will include improvements in reporting, analysis, and data visualization capabilities. The increased resources from FY24 to FY25 reflect a realignment to support these objectives, ensuring that the DSoS can effectively manage insider threat cases at both installation and command levels.