SlideShare uma empresa Scribd logo
1 de 2
A S S U R A N C E & R E S I L I E N C E | I N F O R M AT I O N T E C H N O L O G Y | S Y S T E M S E N G I N E E R I N G & I N T E G R AT I O N




              Technical Security Evaluations

               Booz Allen Hamilton delivers rigorous security                    Secure, Mobile Communications
               testing and evaluation of the Research in Motion
               (RIM) BlackBerry®Smart Card Reader, ensuring                      The Chief Information Of cer (CIO) at the Army
               secure, reliable mobile communications for the                    Materiel Command (AMC) selected the strategy and
               Army and, ultimately, all the military services.                  technology consultants at Booz Allen Hamilton to
                                                                                 perform the security testing, provide the necessary
                                                                                 information, and integrate stakeholders so the
               Uncompromising Testing Standards
                                                                                 Army could make an informed decision regarding
               The Army deploys tens of thousands of RIM                         future guidance and implementation of the RIM
               BlackBerry®devices to its personnel for mobile                    BlackBerry®Smart Card Reader.
               voice and data communications. To ensure
                                                                                 Booz Allen brought together an expert team that
               secure communications, many Army users would
                                                                                 understands the deep protocol level in Bluetooth®
               physically connect Common Access Card (CAC)
                                                                                 technology, such as its algorithms and cryptographic
               readers to their BlackBerry®devices, a cumbersome
                                                                                 functions. We also drew upon our extensive
               approach that was susceptible to multiple failures
                                                                                 relationships throughout the Army, Department of
               and potential breakdowns in mission-critical
                                                                                 Defense and National Security Agency (NSA) to create
               communication. The Army needed small, durable
                                                                                 a stakeholder team that could quickly and effectively
               and mobile CAC readers that could provide the
                                                                                 address security issues raised during testing.
               highest level of security.
                                                                                 Along with its team of technical experts, Booz Allen
               When it appeared that RIM’s Bluetooth®-enabled
                                                                                 also had a facility, the equipment, and a rigorous
               BlackBerry®Smart Card Reader could meet this
                                                                                 methodology for security testing that had already
               requirement, Army of cials needed to move
                                                                                 been validated and approved by Department of
               quickly to test and evaluate the reader’s security.
                                                                                 Defense and intelligence agencies. In its tasking
               Normally, a security evaluation of this depth would
                                                                                 to perform a rapid six-week evaluation of the
               take at least six months, requiring both intensive
                                                                                 BlackBerry® Smart Card Reader, Booz Allen tested
               engineering and testing as well as extensive
                                                                                 three main areas:
               coordination among a large stakeholder group of
               military, intelligence, and civilian agencies. To meet            •    Bluetooth® Link. Analyzed the Bluetooth® traf c
               operational demands of war ghters around the                           passing between the smart card reader and the
               globe, the Army needed the evaluation completed                        desktop. Simulated attacks, intercepted sensitive
               in just six weeks.                                                     data, and assessed the security of the link.




                 Ready for what’s next. www.boozallen.com
•   Smart Card Reader. Examined whether CAC            signi cantly improving communications, information
    transactions can be subverted by an attacker       sharing and decision making—in the of ce and on
    and whether the smart card reader poses a          the battle eld.
    threat to the Army enterprise.
                                                       But the value of the security evaluation goes
•   SCR Desktop Software. Analyzed how the             beyond just this one product test. Booz Allen’s
    desktop software interoperates with the smart      methodology provides the Department of Defense
    card reader and determined whether any             with an approach for testing the security of all
    vulnerabilities were introduced on the desktop.    Bluetooth®-enabled smart card readers. In addition,
                                                       DISA has built upon the Booz Allen study to create
Within the operationally-required six weeks,
                                                       a new technical implementation guide for securing
Booz Allen completed the evaluation and
                                                       BlackBerry® devices. And Booz Allen is working
issued its report demonstrating that the RIM
                                                       with DISA and NSA to analyze additional wireless
Bluetooth®-enabled BlackBerry ® Smart Card
                                                       technologies and devices, such as Microsoft®
Reader meets Army security requirements.
                                                       Mobile Messaging and Bluetooth® headsets, for use
Our report also provided the Army with
                                                       by the military services.
technical guidance on how to ensure secure
communications with the RIM wireless card
reader; and the evaluation provided RIM with
                                                       Ready to Help You
feedback to help the company con gure the              Our engineering and analytical work on wireless
card reader and other products to meet US              technology for the Army Materiel Command is just
government standards.                                  one example of how Booz Allen Hamilton’s strategy
                                                       and technology consultants can help military
Following these tests, the BlackBerry® Smart Card
                                                       leaders adapt and respond to elusive enemies and
Reader was approved for use not just by the Army,
                                                       unpredictable threats. Our consulting teams draw
but by all branches of the military.
                                                       from the rm’s wide range of technical capabilities
“Using leading-edge implementation of existing         in engineering and information technology as well
technologies, AMC, through Booz Allen, has created     as our depth in complex program management,
a surge of which the Army, much less the DoD, has      organization change, operations and logistics. We
not experienced in decades,” said Rick Walsh, AMC      bring both battle eld and boardroom experience
CIO/G6 Deputy Information Assurance Manager.           to every engagement. Guided by an independent
“The ability to use untethered secure identity         perspective and collaborative approach, Booz Allen
management tools will change the face of the DoD.”     delivers customized solutions that address each
                                                       client’s unique challenges. To learn more about the
Helping the Army—and All Military                      know-how behind this project and how it can help your
Services—be Ready for What’s Next                      team be ready for what’s next, visit boozallen.com.

The security testing performed by Booz Allen has
enabled our globally deployed military forces to use
wireless RIM BlackBerry® devices with con dence,




contact:   Cameron Mayer, Senior Associate
email:     mayer_cameron@bah.com
phone:     703/850-4924

contact:   Michael Zirkle, Senior Associate
email:     zirkle_michael@bah.com
phone:     703/984-1465

Mais conteúdo relacionado

Destaque

Predicting Mission Success through Improved Data Collection, Reuse and Analysis
Predicting Mission Success through Improved Data Collection, Reuse and AnalysisPredicting Mission Success through Improved Data Collection, Reuse and Analysis
Predicting Mission Success through Improved Data Collection, Reuse and AnalysisBooz Allen Hamilton
 
Acquiring the Right Talent for the Cyber Age: The Need for a Candidate Develo...
Acquiring the Right Talent for the Cyber Age: The Need for a Candidate Develo...Acquiring the Right Talent for the Cyber Age: The Need for a Candidate Develo...
Acquiring the Right Talent for the Cyber Age: The Need for a Candidate Develo...Booz Allen Hamilton
 
The Next Gen Program Analysis Infographic
The Next Gen Program Analysis InfographicThe Next Gen Program Analysis Infographic
The Next Gen Program Analysis InfographicBooz Allen Hamilton
 
Mission Engineering Solution Infographic
Mission Engineering Solution InfographicMission Engineering Solution Infographic
Mission Engineering Solution InfographicBooz Allen Hamilton
 
Digital Forensics: Digital Evidence That Endures
Digital Forensics: Digital Evidence That EnduresDigital Forensics: Digital Evidence That Endures
Digital Forensics: Digital Evidence That EnduresBooz Allen Hamilton
 
Supply Chain Data Standards in Healthcare
Supply Chain Data Standards in HealthcareSupply Chain Data Standards in Healthcare
Supply Chain Data Standards in HealthcareBooz Allen Hamilton
 
Booz Allen Hamilton's 100-Year Timeline
Booz Allen Hamilton's 100-Year TimelineBooz Allen Hamilton's 100-Year Timeline
Booz Allen Hamilton's 100-Year TimelineBooz Allen Hamilton
 
Improving Intelligence Analysis Through Cloud Analytics
Improving Intelligence Analysis Through  Cloud AnalyticsImproving Intelligence Analysis Through  Cloud Analytics
Improving Intelligence Analysis Through Cloud AnalyticsBooz Allen Hamilton
 
Enabling Big Data with Data-Level Security:The Cloud Analytics Reference Arch...
Enabling Big Data with Data-Level Security:The Cloud Analytics Reference Arch...Enabling Big Data with Data-Level Security:The Cloud Analytics Reference Arch...
Enabling Big Data with Data-Level Security:The Cloud Analytics Reference Arch...Booz Allen Hamilton
 
Miles To Go Before They Are Green
Miles To Go Before They Are GreenMiles To Go Before They Are Green
Miles To Go Before They Are GreenBooz Allen Hamilton
 
Re-Imagined Infrastructure System: US 2040 Economy
Re-Imagined Infrastructure System: US 2040 EconomyRe-Imagined Infrastructure System: US 2040 Economy
Re-Imagined Infrastructure System: US 2040 EconomyBooz Allen Hamilton
 
RightIT™ Maximizing Government IT Efficiency
RightIT™ Maximizing Government IT EfficiencyRightIT™ Maximizing Government IT Efficiency
RightIT™ Maximizing Government IT EfficiencyBooz Allen Hamilton
 
The Cybersecurity Executive Order
The Cybersecurity Executive OrderThe Cybersecurity Executive Order
The Cybersecurity Executive OrderBooz Allen Hamilton
 
Government 2.0: Cutting-Edge Solutions For Communication, Collaboration, Serv...
Government 2.0: Cutting-Edge Solutions For Communication, Collaboration, Serv...Government 2.0: Cutting-Edge Solutions For Communication, Collaboration, Serv...
Government 2.0: Cutting-Edge Solutions For Communication, Collaboration, Serv...Booz Allen Hamilton
 

Destaque (19)

Predicting Mission Success through Improved Data Collection, Reuse and Analysis
Predicting Mission Success through Improved Data Collection, Reuse and AnalysisPredicting Mission Success through Improved Data Collection, Reuse and Analysis
Predicting Mission Success through Improved Data Collection, Reuse and Analysis
 
Acquiring the Right Talent for the Cyber Age: The Need for a Candidate Develo...
Acquiring the Right Talent for the Cyber Age: The Need for a Candidate Develo...Acquiring the Right Talent for the Cyber Age: The Need for a Candidate Develo...
Acquiring the Right Talent for the Cyber Age: The Need for a Candidate Develo...
 
The Next Gen Program Analysis Infographic
The Next Gen Program Analysis InfographicThe Next Gen Program Analysis Infographic
The Next Gen Program Analysis Infographic
 
Mission Engineering Solution Infographic
Mission Engineering Solution InfographicMission Engineering Solution Infographic
Mission Engineering Solution Infographic
 
Digital Forensics: Digital Evidence That Endures
Digital Forensics: Digital Evidence That EnduresDigital Forensics: Digital Evidence That Endures
Digital Forensics: Digital Evidence That Endures
 
Cloud Brokering Brochure
Cloud Brokering BrochureCloud Brokering Brochure
Cloud Brokering Brochure
 
Supply Chain Data Standards in Healthcare
Supply Chain Data Standards in HealthcareSupply Chain Data Standards in Healthcare
Supply Chain Data Standards in Healthcare
 
Booz Allen Hamilton's 100-Year Timeline
Booz Allen Hamilton's 100-Year TimelineBooz Allen Hamilton's 100-Year Timeline
Booz Allen Hamilton's 100-Year Timeline
 
Improving Intelligence Analysis Through Cloud Analytics
Improving Intelligence Analysis Through  Cloud AnalyticsImproving Intelligence Analysis Through  Cloud Analytics
Improving Intelligence Analysis Through Cloud Analytics
 
Enabling Big Data with Data-Level Security:The Cloud Analytics Reference Arch...
Enabling Big Data with Data-Level Security:The Cloud Analytics Reference Arch...Enabling Big Data with Data-Level Security:The Cloud Analytics Reference Arch...
Enabling Big Data with Data-Level Security:The Cloud Analytics Reference Arch...
 
Technology Injection
Technology InjectionTechnology Injection
Technology Injection
 
Miles To Go Before They Are Green
Miles To Go Before They Are GreenMiles To Go Before They Are Green
Miles To Go Before They Are Green
 
Re-Imagined Infrastructure System: US 2040 Economy
Re-Imagined Infrastructure System: US 2040 EconomyRe-Imagined Infrastructure System: US 2040 Economy
Re-Imagined Infrastructure System: US 2040 Economy
 
RightIT™ Maximizing Government IT Efficiency
RightIT™ Maximizing Government IT EfficiencyRightIT™ Maximizing Government IT Efficiency
RightIT™ Maximizing Government IT Efficiency
 
Polaris Product Fact Sheet
Polaris Product Fact SheetPolaris Product Fact Sheet
Polaris Product Fact Sheet
 
Reform Infographic
Reform InfographicReform Infographic
Reform Infographic
 
The Cybersecurity Executive Order
The Cybersecurity Executive OrderThe Cybersecurity Executive Order
The Cybersecurity Executive Order
 
IP Theft
IP TheftIP Theft
IP Theft
 
Government 2.0: Cutting-Edge Solutions For Communication, Collaboration, Serv...
Government 2.0: Cutting-Edge Solutions For Communication, Collaboration, Serv...Government 2.0: Cutting-Edge Solutions For Communication, Collaboration, Serv...
Government 2.0: Cutting-Edge Solutions For Communication, Collaboration, Serv...
 

Mais de Booz Allen Hamilton

You Can Hack That: How to Use Hackathons to Solve Your Toughest Challenges
You Can Hack That: How to Use Hackathons to Solve Your Toughest ChallengesYou Can Hack That: How to Use Hackathons to Solve Your Toughest Challenges
You Can Hack That: How to Use Hackathons to Solve Your Toughest ChallengesBooz Allen Hamilton
 
Examining Flexibility in the Workplace for Working Moms
Examining Flexibility in the Workplace for Working MomsExamining Flexibility in the Workplace for Working Moms
Examining Flexibility in the Workplace for Working MomsBooz Allen Hamilton
 
Booz Allen's 10 Cyber Priorities for Boards of Directors
Booz Allen's 10 Cyber Priorities for Boards of DirectorsBooz Allen's 10 Cyber Priorities for Boards of Directors
Booz Allen's 10 Cyber Priorities for Boards of DirectorsBooz Allen Hamilton
 
Homeland Threats: Today and Tomorrow
Homeland Threats: Today and TomorrowHomeland Threats: Today and Tomorrow
Homeland Threats: Today and TomorrowBooz Allen Hamilton
 
Preparing for New Healthcare Payment Models
Preparing for New Healthcare Payment ModelsPreparing for New Healthcare Payment Models
Preparing for New Healthcare Payment ModelsBooz Allen Hamilton
 
The Product Owner’s Universe: Agile Coaching
The Product Owner’s Universe: Agile CoachingThe Product Owner’s Universe: Agile Coaching
The Product Owner’s Universe: Agile CoachingBooz Allen Hamilton
 
Immersive Learning: The Future of Training is Here
Immersive Learning: The Future of Training is HereImmersive Learning: The Future of Training is Here
Immersive Learning: The Future of Training is HereBooz Allen Hamilton
 
Nuclear Promise: Reducing Cost While Improving Performance
Nuclear Promise: Reducing Cost While Improving PerformanceNuclear Promise: Reducing Cost While Improving Performance
Nuclear Promise: Reducing Cost While Improving PerformanceBooz Allen Hamilton
 
Frenemies – When Unlikely Partners Join Forces
Frenemies – When Unlikely Partners Join ForcesFrenemies – When Unlikely Partners Join Forces
Frenemies – When Unlikely Partners Join ForcesBooz Allen Hamilton
 
Booz Allen Secure Agile Development
Booz Allen Secure Agile DevelopmentBooz Allen Secure Agile Development
Booz Allen Secure Agile DevelopmentBooz Allen Hamilton
 
Booz Allen Industrial Cybersecurity Threat Briefing
Booz Allen Industrial Cybersecurity Threat BriefingBooz Allen Industrial Cybersecurity Threat Briefing
Booz Allen Industrial Cybersecurity Threat BriefingBooz Allen Hamilton
 
Booz Allen Hamilton and Market Connections: C4ISR Survey Report
Booz Allen Hamilton and Market Connections: C4ISR Survey ReportBooz Allen Hamilton and Market Connections: C4ISR Survey Report
Booz Allen Hamilton and Market Connections: C4ISR Survey ReportBooz Allen Hamilton
 
Modern C4ISR Integrates, Innovates and Secures Military Networks
Modern C4ISR Integrates, Innovates and Secures Military NetworksModern C4ISR Integrates, Innovates and Secures Military Networks
Modern C4ISR Integrates, Innovates and Secures Military NetworksBooz Allen Hamilton
 
Agile and Open C4ISR Systems - Helping the Military Integrate, Innovate and S...
Agile and Open C4ISR Systems - Helping the Military Integrate, Innovate and S...Agile and Open C4ISR Systems - Helping the Military Integrate, Innovate and S...
Agile and Open C4ISR Systems - Helping the Military Integrate, Innovate and S...Booz Allen Hamilton
 
Booz Allen Field Guide to Data Science
Booz Allen Field Guide to Data Science Booz Allen Field Guide to Data Science
Booz Allen Field Guide to Data Science Booz Allen Hamilton
 

Mais de Booz Allen Hamilton (20)

You Can Hack That: How to Use Hackathons to Solve Your Toughest Challenges
You Can Hack That: How to Use Hackathons to Solve Your Toughest ChallengesYou Can Hack That: How to Use Hackathons to Solve Your Toughest Challenges
You Can Hack That: How to Use Hackathons to Solve Your Toughest Challenges
 
Examining Flexibility in the Workplace for Working Moms
Examining Flexibility in the Workplace for Working MomsExamining Flexibility in the Workplace for Working Moms
Examining Flexibility in the Workplace for Working Moms
 
The True Cost of Childcare
The True Cost of ChildcareThe True Cost of Childcare
The True Cost of Childcare
 
Booz Allen's 10 Cyber Priorities for Boards of Directors
Booz Allen's 10 Cyber Priorities for Boards of DirectorsBooz Allen's 10 Cyber Priorities for Boards of Directors
Booz Allen's 10 Cyber Priorities for Boards of Directors
 
Inaugural Addresses
Inaugural AddressesInaugural Addresses
Inaugural Addresses
 
Military Spouse Career Roadmap
Military Spouse Career Roadmap Military Spouse Career Roadmap
Military Spouse Career Roadmap
 
Homeland Threats: Today and Tomorrow
Homeland Threats: Today and TomorrowHomeland Threats: Today and Tomorrow
Homeland Threats: Today and Tomorrow
 
Preparing for New Healthcare Payment Models
Preparing for New Healthcare Payment ModelsPreparing for New Healthcare Payment Models
Preparing for New Healthcare Payment Models
 
The Product Owner’s Universe: Agile Coaching
The Product Owner’s Universe: Agile CoachingThe Product Owner’s Universe: Agile Coaching
The Product Owner’s Universe: Agile Coaching
 
Immersive Learning: The Future of Training is Here
Immersive Learning: The Future of Training is HereImmersive Learning: The Future of Training is Here
Immersive Learning: The Future of Training is Here
 
Nuclear Promise: Reducing Cost While Improving Performance
Nuclear Promise: Reducing Cost While Improving PerformanceNuclear Promise: Reducing Cost While Improving Performance
Nuclear Promise: Reducing Cost While Improving Performance
 
Frenemies – When Unlikely Partners Join Forces
Frenemies – When Unlikely Partners Join ForcesFrenemies – When Unlikely Partners Join Forces
Frenemies – When Unlikely Partners Join Forces
 
Booz Allen Secure Agile Development
Booz Allen Secure Agile DevelopmentBooz Allen Secure Agile Development
Booz Allen Secure Agile Development
 
Booz Allen Industrial Cybersecurity Threat Briefing
Booz Allen Industrial Cybersecurity Threat BriefingBooz Allen Industrial Cybersecurity Threat Briefing
Booz Allen Industrial Cybersecurity Threat Briefing
 
Booz Allen Hamilton and Market Connections: C4ISR Survey Report
Booz Allen Hamilton and Market Connections: C4ISR Survey ReportBooz Allen Hamilton and Market Connections: C4ISR Survey Report
Booz Allen Hamilton and Market Connections: C4ISR Survey Report
 
CITRIX IN AMAZON WEB SERVICES
CITRIX IN AMAZON WEB SERVICESCITRIX IN AMAZON WEB SERVICES
CITRIX IN AMAZON WEB SERVICES
 
Modern C4ISR Integrates, Innovates and Secures Military Networks
Modern C4ISR Integrates, Innovates and Secures Military NetworksModern C4ISR Integrates, Innovates and Secures Military Networks
Modern C4ISR Integrates, Innovates and Secures Military Networks
 
Agile and Open C4ISR Systems - Helping the Military Integrate, Innovate and S...
Agile and Open C4ISR Systems - Helping the Military Integrate, Innovate and S...Agile and Open C4ISR Systems - Helping the Military Integrate, Innovate and S...
Agile and Open C4ISR Systems - Helping the Military Integrate, Innovate and S...
 
Women On The Leading Edge
Women On The Leading Edge Women On The Leading Edge
Women On The Leading Edge
 
Booz Allen Field Guide to Data Science
Booz Allen Field Guide to Data Science Booz Allen Field Guide to Data Science
Booz Allen Field Guide to Data Science
 

Último

Assure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesAssure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesThousandEyes
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesThousandEyes
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI AgeCprime
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersNicole Novielli
 
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Alkin Tezuysal
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxLoriGlavin3
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxLoriGlavin3
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.Curtis Poe
 
Manual 508 Accessibility Compliance Audit
Manual 508 Accessibility Compliance AuditManual 508 Accessibility Compliance Audit
Manual 508 Accessibility Compliance AuditSkynet Technologies
 
Scale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterScale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterMydbops
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteDianaGray10
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfSo einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfpanagenda
 
Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Farhan Tariq
 
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Mark Goldstein
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demoHarshalMandlekar2
 
Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rick Flair
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersRaghuram Pandurangan
 

Último (20)

Assure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesAssure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyes
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI Age
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software Developers
 
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptx
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.
 
Manual 508 Accessibility Compliance Audit
Manual 508 Accessibility Compliance AuditManual 508 Accessibility Compliance Audit
Manual 508 Accessibility Compliance Audit
 
Scale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterScale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL Router
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test Suite
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfSo einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
 
Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...
 
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demo
 
Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information Developers
 

Case Study: Army Materiel Command Technical Security Evaluations

  • 1. A S S U R A N C E & R E S I L I E N C E | I N F O R M AT I O N T E C H N O L O G Y | S Y S T E M S E N G I N E E R I N G & I N T E G R AT I O N Technical Security Evaluations Booz Allen Hamilton delivers rigorous security Secure, Mobile Communications testing and evaluation of the Research in Motion (RIM) BlackBerry®Smart Card Reader, ensuring The Chief Information Of cer (CIO) at the Army secure, reliable mobile communications for the Materiel Command (AMC) selected the strategy and Army and, ultimately, all the military services. technology consultants at Booz Allen Hamilton to perform the security testing, provide the necessary information, and integrate stakeholders so the Uncompromising Testing Standards Army could make an informed decision regarding The Army deploys tens of thousands of RIM future guidance and implementation of the RIM BlackBerry®devices to its personnel for mobile BlackBerry®Smart Card Reader. voice and data communications. To ensure Booz Allen brought together an expert team that secure communications, many Army users would understands the deep protocol level in Bluetooth® physically connect Common Access Card (CAC) technology, such as its algorithms and cryptographic readers to their BlackBerry®devices, a cumbersome functions. We also drew upon our extensive approach that was susceptible to multiple failures relationships throughout the Army, Department of and potential breakdowns in mission-critical Defense and National Security Agency (NSA) to create communication. The Army needed small, durable a stakeholder team that could quickly and effectively and mobile CAC readers that could provide the address security issues raised during testing. highest level of security. Along with its team of technical experts, Booz Allen When it appeared that RIM’s Bluetooth®-enabled also had a facility, the equipment, and a rigorous BlackBerry®Smart Card Reader could meet this methodology for security testing that had already requirement, Army of cials needed to move been validated and approved by Department of quickly to test and evaluate the reader’s security. Defense and intelligence agencies. In its tasking Normally, a security evaluation of this depth would to perform a rapid six-week evaluation of the take at least six months, requiring both intensive BlackBerry® Smart Card Reader, Booz Allen tested engineering and testing as well as extensive three main areas: coordination among a large stakeholder group of military, intelligence, and civilian agencies. To meet • Bluetooth® Link. Analyzed the Bluetooth® traf c operational demands of war ghters around the passing between the smart card reader and the globe, the Army needed the evaluation completed desktop. Simulated attacks, intercepted sensitive in just six weeks. data, and assessed the security of the link. Ready for what’s next. www.boozallen.com
  • 2. Smart Card Reader. Examined whether CAC signi cantly improving communications, information transactions can be subverted by an attacker sharing and decision making—in the of ce and on and whether the smart card reader poses a the battle eld. threat to the Army enterprise. But the value of the security evaluation goes • SCR Desktop Software. Analyzed how the beyond just this one product test. Booz Allen’s desktop software interoperates with the smart methodology provides the Department of Defense card reader and determined whether any with an approach for testing the security of all vulnerabilities were introduced on the desktop. Bluetooth®-enabled smart card readers. In addition, DISA has built upon the Booz Allen study to create Within the operationally-required six weeks, a new technical implementation guide for securing Booz Allen completed the evaluation and BlackBerry® devices. And Booz Allen is working issued its report demonstrating that the RIM with DISA and NSA to analyze additional wireless Bluetooth®-enabled BlackBerry ® Smart Card technologies and devices, such as Microsoft® Reader meets Army security requirements. Mobile Messaging and Bluetooth® headsets, for use Our report also provided the Army with by the military services. technical guidance on how to ensure secure communications with the RIM wireless card reader; and the evaluation provided RIM with Ready to Help You feedback to help the company con gure the Our engineering and analytical work on wireless card reader and other products to meet US technology for the Army Materiel Command is just government standards. one example of how Booz Allen Hamilton’s strategy and technology consultants can help military Following these tests, the BlackBerry® Smart Card leaders adapt and respond to elusive enemies and Reader was approved for use not just by the Army, unpredictable threats. Our consulting teams draw but by all branches of the military. from the rm’s wide range of technical capabilities “Using leading-edge implementation of existing in engineering and information technology as well technologies, AMC, through Booz Allen, has created as our depth in complex program management, a surge of which the Army, much less the DoD, has organization change, operations and logistics. We not experienced in decades,” said Rick Walsh, AMC bring both battle eld and boardroom experience CIO/G6 Deputy Information Assurance Manager. to every engagement. Guided by an independent “The ability to use untethered secure identity perspective and collaborative approach, Booz Allen management tools will change the face of the DoD.” delivers customized solutions that address each client’s unique challenges. To learn more about the Helping the Army—and All Military know-how behind this project and how it can help your Services—be Ready for What’s Next team be ready for what’s next, visit boozallen.com. The security testing performed by Booz Allen has enabled our globally deployed military forces to use wireless RIM BlackBerry® devices with con dence, contact: Cameron Mayer, Senior Associate email: mayer_cameron@bah.com phone: 703/850-4924 contact: Michael Zirkle, Senior Associate email: zirkle_michael@bah.com phone: 703/984-1465