Navy’s Aaron Weis on Use of Automated Red-Teaming in Addressing Cyber Vulnerabilities

Aaron Weis, chief information of the Department of the Navy and a 2022 Wash100 Award winner, said conducting regular automated red-teaming is far more effective than adopting a “checklist” approach when it comes to detecting and addressing cyber vulnerabilities, Defense One reported Tuesday.

It's a very compliance-driven mentality, like an audit… and it's wrong,” Weis told the publication of the checklist approach. “Cybersecurity is not a compliance problem.”

The Navy conducted an experiment using a tool called Nova from software startup Rebellion to perform automated red-teaming on networks and found that the process revealed which cyber vulnerabilities allow threat actors to gain wider access to networks and those that were the easiest to exploit.

“It can identify the system, understand its patch level, catalog its vulnerabilities according to what’s generally available, and then try to run an automated exploit against it, based on what it knows,” Weis said of the tool.

Share the Post:

Related Posts

GovCon CEOs to Watch in 2025

The Wash100 Award, presented annually by Executive Mosaic, recognizes the most influential executives in government contracting and the federal sector. These leaders drive innovation, strategic growth and mission-critical solutions for...

Lockheed Martin’s Wash100 Award Winners

The Wash100 Award represents the pinnacle of leadership, innovation and influence in the government contracting sector. Since 2014, GovCon powerhouse Lockheed Martin has produced multiple Wash100 Award winners. These leaders...

5 Key Values of the Wash100 Award

The government contracting industry thrives on leadership, innovation and undeniable contributions to key missions. The Wash100 Award, established by Executive Mosaic in 2014, is an annual recognition of the GovCon...