Roll-up of 3 projects. Projects are the summable leaves — the PE total is their sum, never added to it.
For fiscal year 2027, Defense-Wide agencies are requesting $11.7M for Countering Threats Automated Platform under RDT&E program element 0302609V, up 133% over FY2026.
Funding profile, FY2025–FY2031
Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure.
| Fiscal Year | Estimate Type | Amount ($M) |
|---|---|---|
| FY2025 | Actual | 5.6 |
| FY2026 | Enacted | 5.0 |
| FY2027 | Request | 11.7 |
| FY2028 | Outyear | 18.7 |
| FY2029 | Outyear | 18.7 |
| FY2030 | Outyear | 11.8 |
| FY2031 | Outyear | 10.8 |
Acquisition lifecycle
This program is funded in RDT&E Budget Activity 7 — Operational System Development.
3 projects roll up into PE 0302609V
Projects are the summable leaves — the PE total is their sum, never added to it. Program elements and projects carry the full five-year plan; activities stop at the budget year. This PE moves 133% overall, which can hide much larger swings below.
Defense Security Analysis and Threat System (DSATS)
DITMAC System of Systems
Congressional marks
Committee marks on the FY2027 request. Adds and cuts are reconciled in conference before they become law.
Where the FY2027 request goes
Performers named in the R-3 exhibit, resolved into industry, government-lab, and unspecified shares. Budget-justification contract funding, not obligations.
| Where FY2027 funding flows | Share | $M |
|---|---|---|
| Other / unspecified | 100% | 11.7 |
| FY2027 request | 100% | 11.7 |
Mission & acquisition strategy
The Defense Counterintelligence Security Agency (DCSA) is a strategic asset to the nation and our allies - continuously ensuring a trusted federal, industrial, and affiliated workforce, and enabling industry's delivery of uncompromised capabilities by leveraging advanced technologies and innovation. DCSA uniquely blends critical technology protection, counterintelligence, security and professional education and certification to advance and preserve America's strategic edge. The DoW Insider Threat Management and Analysis Center (DITMAC) provides an integrated capability to collect and analyze information for insider threat detection and mitigation.
- Product Development
Ask this program element
Answers are generated from the figures on this page — the FY2027 justification exhibits and the marks tracked above — and nothing else is consulted. Confirm any figure against the cited exhibit before you use it externally.
This page carries the budget justification and the NDAA marks — nothing else. For what a contractor has actually been obligated, the ledger is at hitchintel.com/vendors; for live solicitations, hitchintel.com/opportunities. Both are member surfaces.
Cite this page
/programs/0302609V.md · MCP mcp.hitchintel.com → budget_get_program_element, budget_get_cong_marksIntegrated Security Data Services (ISDS) — one RDT&E project inside PE 0302609V. Congressional marks are recorded on the program element, not on a project.
Project 004 — Integrated Security Data Services (ISDS) — requests $8.1M in FY2027, 69% of the $11.7M requested for program element 0302609V. It is a new start — no prior-year or current-year money.
Project 004 funding, FY2025–FY2031
Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure. Projects carry the full five-year plan; the activities inside them stop at the budget year.
| Fiscal Year | Estimate Type | Amount ($M) |
|---|---|---|
| FY2025 | Actual | 0.0 |
| FY2026 | Enacted | 0.0 |
| FY2027 | Request | 8.1 |
| FY2028 | Outyear | 15.0 |
| FY2029 | Outyear | 15.0 |
| FY2030 | Outyear | 8.0 |
| FY2031 | Outyear | 7.0 |
1 accomplishment / planned program
The R-2A exhibit. Activities carry the prior, current and budget year only — no five-year plan — and they are descriptive: coverage is partial and they do not always add back to the project, so count them, never total them.
FY2027 planned work DCSA will pursue research and innovation activities that enhance trust, strengthen national security, and support the modernization of personnel vetting, industrial security, and counterintelligence and insider threat. Research Enclave Development: Establishing a secure research environment for rapid prototyping, experimentation, and operationalization of findings, with infrastructure for de-identified data analysis and compliance with Human Research requirements. Capability Prototyping and Testing: Piloting advanced technologies, such as artificial intelligence (AI)-powered adjudication tools, behavioral health records triage, and entity resolution for Continuous Vetting (CV), to refine…
FY2026 to FY2027 change The increase in funds enables the maturation of DCSA’s research and innovation capabilities to drive the development of trust-enabling technologies that support personnel vetting, industrial security, counterintelligence and insider threat missions, and acquisition modernization across the security and intelligence enterprise.
What project 004 buys
The Defense Counterintelligence Security Agency (DCSA) is a strategic asset to the nation and our allies - continuously ensuring a trusted federal, industrial, and affiliated workforce and enabling industry's delivery of uncompromised capabilities by leveraging advanced technologies and innovation. DCSA uniquely blends critical technology protection, counterintelligence, security and professional education and certification to advance and preserve America's strategic edge. DCSA will mature the research and innovation capabilities for the security enterprise serving the Trusted Innovation Portfolio Acquisition Executive and the broader DCSA mission set. This effort will drive the pipeline of capability development with promising technologies to support personnel vetting, industrial security, insider threat missions, and acquisition modernization across the security and intelligence enterprise. By leveraging cutting-edge research, operational experimentation, and strategic partnerships with academia, industry, and government, DCSA will deliver trust-enabling solutions that enhance decision-making, streamline workflows, and address emerging challenges in a dynamic threat environment. These investments will ensure DCSA remains at the forefront of innovation, supporting warfighter readiness and strengthening national security.
- Product Development
Defense Security Analysis and Threat System (DSATS) — one RDT&E project inside PE 0302609V. Congressional marks are recorded on the program element, not on a project.
Project 003 — Defense Security Analysis and Threat System (DSATS) — requests $3.6M in FY2027, 31% of the $11.7M requested for program element 0302609V. Year over year it falls 29% against FY2026.
Project 003 funding, FY2025–FY2031
Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure. Projects carry the full five-year plan; the activities inside them stop at the budget year.
| Fiscal Year | Estimate Type | Amount ($M) |
|---|---|---|
| FY2025 | Actual | 0.0 |
| FY2026 | Enacted | 5.0 |
| FY2027 | Request | 3.6 |
| FY2028 | Outyear | 3.7 |
| FY2029 | Outyear | 3.7 |
| FY2030 | Outyear | 3.8 |
| FY2031 | Outyear | 3.8 |
1 accomplishment / planned program
The R-2A exhibit. Activities carry the prior, current and budget year only — no five-year plan — and they are descriptive: coverage is partial and they do not always add back to the project, so count them, never total them.
FY2027 planned work In FY 2027, DSATS will focus on deploying to SIPRNet and JWICS cloud environments, updating user roles, conducting data migration, adding integrations, enhancing cross-enterprise collaboration, improving reporting and analysis, and expanding artificial intelligence research to improve the user experience. Efforts include adding additional data sources and improvements to reporting, analysis, and dashboard capabilities.
FY2026 to FY2027 change The decrease in funds from FY 2026 to FY 2027 reflects a shift from primarily development into majority sustainment efforts, along with a reduction in the number of development teams needed for a stable agile development process.
FY2026 plans — current year In FY 2026, DSATS plans to focus on delivering enhancements after a Minimum Viable Capability Release and will focus on a self-hosted Secret Internet Protocol Router Network cloud environment, updated user roles, data migration and integrations, cross-enterprise collaboration, reporting and analysis, and artificial intelligence research to improve the user experience. Efforts include adding additional data sources and improvements to reporting, analysis, and dashboard capabilities.
What project 003 buys
The Defense Counterintelligence Security Agency (DCSA) is a strategic asset to the nation and our allies - continuously ensuring a trusted federal, industrial, and affiliated workforce, and enabling industry's delivery of uncompromised capabilities by leveraging advanced technologies and innovation. DCSA uniquely blends critical technology protection, counterintelligence, security and professional education and certification to advance and preserve America's strategic edge. In alignment with DoDI 5205.16, DCSA facilitates effective access to essential insider threat data through an enterprise and shared data management capability. The Defense Security Analysis and Threat System (DSATS), previously known as the DITMAC System of Systems (DSoS), is the designated enterprise system required by the Department of War for the Insider Threat Program (InTP). DSATS requires the ability to function within a self-hosted cloud environment, incorporate new roles, migrate data from legacy systems, and facilitate the integration and sharing of data with both DCSA and external systems. Additionally, DCSA is improving dashboards and reporting, as well as conducting independent verification and validation testing. The system must also be adapted to support automated data ingestion, which will directly aid and enhance analytic efforts to focus on areas of increased risk. These capabilities will empower Commanders to more effectively manage insider threat cases at the installation level and will improve analytic capabilities to all tiers.
- Product Development
DITMAC System of Systems — one RDT&E project inside PE 0302609V. Congressional marks are recorded on the program element, not on a project.
Project 000 — DITMAC System of Systems — requests — in FY2027, 0.0% of the $11.7M requested for program element 0302609V.
Project 000 funding, FY2025–FY2026
Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure. Projects carry the full five-year plan; the activities inside them stop at the budget year.
| Fiscal Year | Estimate Type | Amount ($M) |
|---|---|---|
| FY2025 | Actual | 5.6 |
| FY2026 | Enacted | 0.0 |
1 accomplishment / planned program
The R-2A exhibit. Activities carry the prior, current and budget year only — no five-year plan — and they are descriptive: coverage is partial and they do not always add back to the project, so count them, never total them.
FY2025 accomplishments FY 2025 plans build towards the delivery of the Minimum Viable Capability Release (MVCR) case management tool in the first quarter of FY 2026. FY 2025 development will focus on-par workflows and reporting, User Access Monitoring (UAM), and Behavioral Threat Analysis Capability (BTAC). Adds development efforts for automated data ingest by adding additional data sources, and the addition of reporting, analysis, and data visualization capabilities.
What project 000 buys
The Defense Counterintelligence Security Agency (DCSA) is a strategic asset to the nation and our allies - continuously ensuring a trusted federal, industrial, and affiliated workforce, and enabling industry's delivery of uncompromised capabilities by leveraging advanced technologies and innovation. DCSA uniquely blends critical technology protection, counterintelligence, security and professional education and certification to advance and preserve America's strategic edge. The DoW Insider Threat Management and Analysis Center (DITMAC) provides an integrated capability to collect and analyze information for insider threat detection and mitigation. The DSATS system gathers, integrates, reviews, assesses, and responds to information derived from DoW Insider Threat hubs, Counterintelligence (CI), security, cybersecurity, civilian and military personnel management, workplace violence, anti-terrorism risk management, law enforcement, user activity monitoring on DoW information networks, and other sources as necessary and appropriate to support the identification, mitigation, and countering of insider threats to Department of War (DoW) and Intelligence Community (IC) personnel, assets and information The DITMAC System of Systems - DSOS requires the capability to operate within a self-hosted cloud environment, add new roles, migrate data from legacy systems, integrate and share data with other DCSA and external systems, improve dashboards and reporting, and complete independent verification and validation testing. It also requires adaptation to allow for automated data ingest which will directly support and enhance analytic efforts to focus on areas of increased risk. These features will enable Commanders to better manage insider threat cases at the installation level and will improve analytic capabilities to all levels.
- Product Development