RDT&E Program Element · President's Budget PB2027

Countering Threats Automated Platform

PE 0302609V·Defense-Wide·Approp. 0400 — RDT&E·BA7 — Operational System Development
FY2027 Request
$11.7M
◆ Scaling +133%
HitchAI read

Defense-Wide funding ramps 133% to a $11.7M request in FY2027, sustained across the five-year plan. In the FY2027 defense authorization, the House funded it in full; the Senate funded it in full; House appropriators funded it in full.

FY2027 Request
$11.7M
▲ 133% vs FY2026
FY2026 Enacted
$5.0M
▼ 10% vs FY2025
FY2025 Actual
$5.6M
Prior year

Roll-up of 3 projects. Projects are the summable leaves — the PE total is their sum, never added to it.

For fiscal year 2027, Defense-Wide agencies are requesting $11.7M for Countering Threats Automated Platform under RDT&E program element 0302609V, up 133% over FY2026.

Funding trajectory

Funding profile, FY2025–FY2031

Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure.

05.6FY25ACTUAL5.0FY26ENACTED11.7FY27REQUEST18.7FY2818.7FY2911.8FY3010.8FY31
Actual Enacted Request Outyear (FYDP)
Fiscal YearEstimate TypeAmount ($M)
FY2025Actual5.6
FY2026Enacted5.0
FY2027Request11.7
FY2028Outyear18.7
FY2029Outyear18.7
FY2030Outyear11.8
FY2031Outyear10.8
Where it sits

Acquisition lifecycle

This program is funded in RDT&E Budget Activity 7 — Operational System Development.

Complete
Research
BA 1–2
Complete
Advanced Technology
BA 3
Complete
Prototyping
BA 4
Current
Development & Fielding
BA 5–7
Inside the program element

3 projects roll up into PE 0302609V

Projects are the summable leaves — the PE total is their sum, never added to it. Program elements and projects carry the full five-year plan; activities stop at the budget year. This PE moves 133% overall, which can hide much larger swings below.

Congressional action

Congressional marks

Committee marks on the FY2027 request. Adds and cuts are reconciled in conference before they become law.

RequestPresident's Budget
$11.7M
House NDAA (HASC)HASC
$11.7M full · +$0
Senate NDAA (SASC)SASC
$11.7M full · +$0
House Approps (HAC-D)HAC_D
$11.7M full · +$0
unresolved as of 2026-07-27. These are FY2027 authorization marks (NDAA); appropriations and the conference agreement may differ.
Who's building it

Where the FY2027 request goes

Performers named in the R-3 exhibit, resolved into industry, government-lab, and unspecified shares. Budget-justification contract funding, not obligations.

Where FY2027 funding flowsShare$M
Other / unspecified100%11.7
FY2027 request100%11.7
Program detail

Mission & acquisition strategy

The Defense Counterintelligence Security Agency (DCSA) is a strategic asset to the nation and our allies - continuously ensuring a trusted federal, industrial, and affiliated workforce, and enabling industry's delivery of uncompromised capabilities by leveraging advanced technologies and innovation. DCSA uniquely blends critical technology protection, counterintelligence, security and professional education and certification to advance and preserve America's strategic edge. The DoW Insider Threat Management and Analysis Center (DITMAC) provides an integrated capability to collect and analyze information for insider threat detection and mitigation.

Project 004, 003, 000 — Integrated Security Data Services (ISDS)
  • Product Development
Ask Hitch

Ask this program element

Answers are generated from the figures on this page — the FY2027 justification exhibits and the marks tracked above — and nothing else is consulted. Confirm any figure against the cited exhibit before you use it externally.

H
Questions this page can answer
How does the FY2027 request compare with FY2026, and what does the five-year plan show?What did the FY2027 NDAA committees do to this request?Which project inside PE 0302609V is growing fastest, and which is shrinking?How is the FY2027 request split between industry and government performers?

This page carries the budget justification and the NDAA marks — nothing else. For what a contractor has actually been obligated, the ledger is at hitchintel.com/vendors; for live solicitations, hitchintel.com/opportunities. Both are member surfaces.

Provenance

Cite this page

Sources
FY2027 Office of the Secretary of Defense RDT&E Budget Justification · Exhibits R-2 / R-3 · PE 0302609V (President's Budget PB2027) — and FY2027 NDAA committee marks, as tracked 2026-07-27.
Suggested citation
HitchAI, "Countering Threats Automated Platform (PE 0302609V)," federal budget intelligence, PB2027 vintage. hitchintel.com/programs/0302609V
Machine access
Markdown twin /programs/0302609V.md · MCP mcp.hitchintel.combudget_get_program_element, budget_get_cong_marks
FY2027 Request
$8.1M
No FY2026 funding
FY2026 Enacted
$0.0M
No FY2025 funding
FY2025 Actual
$0.0M
Prior year

Integrated Security Data Services (ISDS) — one RDT&E project inside PE 0302609V. Congressional marks are recorded on the program element, not on a project.

Project 004 — Integrated Security Data Services (ISDS) — requests $8.1M in FY2027, 69% of the $11.7M requested for program element 0302609V. It is a new start — no prior-year or current-year money.

Funding trajectory

Project 004 funding, FY2025–FY2031

Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure. Projects carry the full five-year plan; the activities inside them stop at the budget year.

00.0FY25ACTUAL0.0FY26ENACTED8.1FY27REQUEST15.0FY2815.0FY298.0FY307.0FY31
Actual Enacted Request Outyear (FYDP)
Fiscal YearEstimate TypeAmount ($M)
FY2025Actual0.0
FY2026Enacted0.0
FY2027Request8.1
FY2028Outyear15.0
FY2029Outyear15.0
FY2030Outyear8.0
FY2031Outyear7.0
Inside the project

1 accomplishment / planned program

The R-2A exhibit. Activities carry the prior, current and budget year only — no five-year plan — and they are descriptive: coverage is partial and they do not always add back to the project, so count them, never total them.

Integrated Security Data ServicesNEW
FY2025 actual$0.0M
FY2026 enacted
FY2027 request$8.1M

FY2027 planned work DCSA will pursue research and innovation activities that enhance trust, strengthen national security, and support the modernization of personnel vetting, industrial security, and counterintelligence and insider threat. Research Enclave Development: Establishing a secure research environment for rapid prototyping, experimentation, and operationalization of findings, with infrastructure for de-identified data analysis and compliance with Human Research requirements. Capability Prototyping and Testing: Piloting advanced technologies, such as artificial intelligence (AI)-powered adjudication tools, behavioral health records triage, and entity resolution for Continuous Vetting (CV), to refine…

FY2026 to FY2027 change The increase in funds enables the maturation of DCSA’s research and innovation capabilities to drive the development of trust-enabling technologies that support personnel vetting, industrial security, counterintelligence and insider threat missions, and acquisition modernization across the security and intelligence enterprise.

Project detail

What project 004 buys

The Defense Counterintelligence Security Agency (DCSA) is a strategic asset to the nation and our allies - continuously ensuring a trusted federal, industrial, and affiliated workforce and enabling industry's delivery of uncompromised capabilities by leveraging advanced technologies and innovation. DCSA uniquely blends critical technology protection, counterintelligence, security and professional education and certification to advance and preserve America's strategic edge. DCSA will mature the research and innovation capabilities for the security enterprise serving the Trusted Innovation Portfolio Acquisition Executive and the broader DCSA mission set. This effort will drive the pipeline of capability development with promising technologies to support personnel vetting, industrial security, insider threat missions, and acquisition modernization across the security and intelligence enterprise. By leveraging cutting-edge research, operational experimentation, and strategic partnerships with academia, industry, and government, DCSA will deliver trust-enabling solutions that enhance decision-making, streamline workflows, and address emerging challenges in a dynamic threat environment. These investments will ensure DCSA remains at the forefront of innovation, supporting warfighter readiness and strengthening national security.

R-3 lines of work
  • Product Development
FY2027 Request
$3.6M
▼ 29% vs FY2026
FY2026 Enacted
$5.0M
No FY2025 funding
FY2025 Actual
$0.0M
Prior year

Defense Security Analysis and Threat System (DSATS) — one RDT&E project inside PE 0302609V. Congressional marks are recorded on the program element, not on a project.

Project 003 — Defense Security Analysis and Threat System (DSATS) — requests $3.6M in FY2027, 31% of the $11.7M requested for program element 0302609V. Year over year it falls 29% against FY2026.

Funding trajectory

Project 003 funding, FY2025–FY2031

Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure. Projects carry the full five-year plan; the activities inside them stop at the budget year.

00.0FY25ACTUAL5.0FY26ENACTED3.6FY27REQUEST3.7FY283.7FY293.8FY303.8FY31
Actual Enacted Request Outyear (FYDP)
Fiscal YearEstimate TypeAmount ($M)
FY2025Actual0.0
FY2026Enacted5.0
FY2027Request3.6
FY2028Outyear3.7
FY2029Outyear3.7
FY2030Outyear3.8
FY2031Outyear3.8
Inside the project

1 accomplishment / planned program

The R-2A exhibit. Activities carry the prior, current and budget year only — no five-year plan — and they are descriptive: coverage is partial and they do not always add back to the project, so count them, never total them.

DSATS▼ 29%
FY2025 actual$0.0M
FY2026 enacted$5.0M
FY2027 request$3.6M

FY2027 planned work In FY 2027, DSATS will focus on deploying to SIPRNet and JWICS cloud environments, updating user roles, conducting data migration, adding integrations, enhancing cross-enterprise collaboration, improving reporting and analysis, and expanding artificial intelligence research to improve the user experience. Efforts include adding additional data sources and improvements to reporting, analysis, and dashboard capabilities.

FY2026 to FY2027 change The decrease in funds from FY 2026 to FY 2027 reflects a shift from primarily development into majority sustainment efforts, along with a reduction in the number of development teams needed for a stable agile development process.

FY2026 plans — current year In FY 2026, DSATS plans to focus on delivering enhancements after a Minimum Viable Capability Release and will focus on a self-hosted Secret Internet Protocol Router Network cloud environment, updated user roles, data migration and integrations, cross-enterprise collaboration, reporting and analysis, and artificial intelligence research to improve the user experience. Efforts include adding additional data sources and improvements to reporting, analysis, and dashboard capabilities.

Project detail

What project 003 buys

The Defense Counterintelligence Security Agency (DCSA) is a strategic asset to the nation and our allies - continuously ensuring a trusted federal, industrial, and affiliated workforce, and enabling industry's delivery of uncompromised capabilities by leveraging advanced technologies and innovation. DCSA uniquely blends critical technology protection, counterintelligence, security and professional education and certification to advance and preserve America's strategic edge. In alignment with DoDI 5205.16, DCSA facilitates effective access to essential insider threat data through an enterprise and shared data management capability. The Defense Security Analysis and Threat System (DSATS), previously known as the DITMAC System of Systems (DSoS), is the designated enterprise system required by the Department of War for the Insider Threat Program (InTP). DSATS requires the ability to function within a self-hosted cloud environment, incorporate new roles, migrate data from legacy systems, and facilitate the integration and sharing of data with both DCSA and external systems. Additionally, DCSA is improving dashboards and reporting, as well as conducting independent verification and validation testing. The system must also be adapted to support automated data ingestion, which will directly aid and enhance analytic efforts to focus on areas of increased risk. These capabilities will empower Commanders to more effectively manage insider threat cases at the installation level and will improve analytic capabilities to all tiers.

R-3 lines of work
  • Product Development
FY2027 Request
$0.0M
No FY2026 funding
FY2026 Enacted
$0.0M
▼ 100% vs FY2025
FY2025 Actual
$5.6M
Prior year

DITMAC System of Systems — one RDT&E project inside PE 0302609V. Congressional marks are recorded on the program element, not on a project.

Project 000 — DITMAC System of Systems — requests in FY2027, 0.0% of the $11.7M requested for program element 0302609V.

Funding trajectory

Project 000 funding, FY2025–FY2026

Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure. Projects carry the full five-year plan; the activities inside them stop at the budget year.

05.6FY25ACTUAL0.0FY26ENACTED
Actual Enacted
Fiscal YearEstimate TypeAmount ($M)
FY2025Actual5.6
FY2026Enacted0.0
Inside the project

1 accomplishment / planned program

The R-2A exhibit. Activities carry the prior, current and budget year only — no five-year plan — and they are descriptive: coverage is partial and they do not always add back to the project, so count them, never total them.

DITMAC System of Systems (DSOS)
FY2025 actual$5.6M
FY2026 enacted
FY2027 request

FY2025 accomplishments FY 2025 plans build towards the delivery of the Minimum Viable Capability Release (MVCR) case management tool in the first quarter of FY 2026. FY 2025 development will focus on-par workflows and reporting, User Access Monitoring (UAM), and Behavioral Threat Analysis Capability (BTAC). Adds development efforts for automated data ingest by adding additional data sources, and the addition of reporting, analysis, and data visualization capabilities.

Project detail

What project 000 buys

The Defense Counterintelligence Security Agency (DCSA) is a strategic asset to the nation and our allies - continuously ensuring a trusted federal, industrial, and affiliated workforce, and enabling industry's delivery of uncompromised capabilities by leveraging advanced technologies and innovation. DCSA uniquely blends critical technology protection, counterintelligence, security and professional education and certification to advance and preserve America's strategic edge. The DoW Insider Threat Management and Analysis Center (DITMAC) provides an integrated capability to collect and analyze information for insider threat detection and mitigation. The DSATS system gathers, integrates, reviews, assesses, and responds to information derived from DoW Insider Threat hubs, Counterintelligence (CI), security, cybersecurity, civilian and military personnel management, workplace violence, anti-terrorism risk management, law enforcement, user activity monitoring on DoW information networks, and other sources as necessary and appropriate to support the identification, mitigation, and countering of insider threats to Department of War (DoW) and Intelligence Community (IC) personnel, assets and information The DITMAC System of Systems - DSOS requires the capability to operate within a self-hosted cloud environment, add new roles, migrate data from legacy systems, integrate and share data with other DCSA and external systems, improve dashboards and reporting, and complete independent verification and validation testing. It also requires adaptation to allow for automated data ingest which will directly support and enhance analytic efforts to focus on areas of increased risk. These features will enable Commanders to better manage insider threat cases at the installation level and will improve analytic capabilities to all levels.

R-3 lines of work
  • Product Development