What the FY2027 request buys
Verbatim from the R-2A exhibit for project 2144 of PE 0606355N. This is the budget justification's own description of work that has not happened yet — the one thing no other level of the budget carries.
- Continue key efforts to develop technical architectures, tools, standards, and best practices to advance the Navy's integrated plan for effective implementation of resilient cybersecurity. These critical Cyber Security Technical Authority (CS TA) artifacts: (1) leverage CS TA Cyber Risk Assessments (CRA) to account for emerging cyber threats and advances in technology, (2) drive the use of Risk Management Framework (RMF) Rapid Assess and Incorporate (A&I) Software Engineering (RAISE) process for inheritance to reduce redundant cybersecurity investments, lower operational risk and significantly improve delivery times for emerging capabilities. - Continue to perform holistic Cyber Risk Assessments (CRA) that evaluate Navy systems in the context of warfighting missions across tabletop, lab, and operational environments. The results of the CS TA Tabletop Mission Cyber Risk Assessments (TMCRA), which examine access vectors and likelihood of adversary exploit, are tested in NAVWAR's IW Capability Testing environment, and are then used to support Navy-wide Live, Virtual, and Constructive (LVC) Information Warfare (IW) capability tests and Fleet experimentation. This holistic set of assessments allows Program Managers to include to mitigate existing risks across the system lifecycle as well as strengthen the cybersecurity design of future system variants. - Continue to develop automation of the RMF process, leveraging integrated digital engineering models that will streamline data and analytics to provide assessment results. The automated process includes integrating various RMF roles, data entry, and continued auditing/validating RMF steps (control selection, assessment, and authorization). Implement cyber operational risk threat assessments and continuous monitoring. Perform DON CISO Cyber Figure of Merit (CFOM) acquisition gate assessments, system of systems Cyber Risk to Mission (CRTM) assessments, develop and update cybersecurity technical standards, all of which support better understanding of and mitigation of cyber risk across the Navy. Advance the Continuous Monitoring (CONMON) and cyber operational picture capability required to meet Fleet Cyber Command (FCC) objectives. - Continue to perform Systems Engineering Technical Reviews (SETRs) across Command, Control, Communications, Computers, Intelligence, Surveillance, Reconnaissance (C4ISR) and Digital Enterprise Services (DES); Manpower, Logistics, and Business Solutions (MLB) programs to ensure compliance with statutory and regulatory directives, as well as implementing applicable Information Technology (IT) and Cybersecurity (CS) Technology Authority (TA) architectures, specifications, standards, policies, processes and profiles. Continue efforts to integrate digital engineering advances as applicable to accelerate and automate SETR reviews to better support programs leveraging Agile or DevSecOps frameworks to support the Adaptive Acquisition Framework pathways. - Continue digital reviews for program certifications and technical reviews of formal acquisition and engineering documentation through enhanced design and testing analysis. - Working to establish Enterprise Architecture to support design, development and delivery of integrated Navy Command, Control, Communications, Computers, Intelligence, Surveillance, and Reconnaissance (C4ISR), Business Information Technology (IT), and Space System capabilities. Perform mission-based system-of-systems kill chain and business thread analysis to ensure integration and interoperability and validate end-to-end warfighting capabilities to address emerging threats.
SEW (Project 2144) Decrease of $2.148M between FY26 and FY27 can be attributed to funding higher Departmental priorities resulting in decreased requirements for cyber capabilities to support technical analyses, program planning, and enterprise-level investment decisions across Information Warfare (IW) capabilities on both ashore and afloat platforms.
FY2026: the year under way
Prior-year accomplishments and current-year plans from the same exhibit. Context for the FY2027 plan, not a series — an activity partitions its project exactly in the request year, but can under-cover it in earlier years.
- Continuing key efforts to develop technical architectures, tools, standards, and best practices to advance the Navy's integrated plan for effective implementation of resilient cybersecurity. These critical Cyber Security Technical Authority (CS TA) artifacts: (1) leverage CS TA Cyber Risk Assessments (CRA) to account for emerging cyber threats and advances in technology, (2) drive the use of Risk Management Framework (RMF) Rapid Assess and Incorporate (A&I) Software Engineering (RAISE) process for inheritance to reduce redundant cybersecurity investments, lower operational risk and significantly improve delivery times for emerging capabilities. - Continuing to perform holistic Cyber Risk Assessments (CRA) that evaluate Navy systems in the context of warfighting missions across tabletop, lab, and operational environments. The results of the CS TA Tabletop Mission Cyber Risk Assessments (TMCRA), which examine access vectors and likelihood of adversary exploit, are tested in NAVWAR's IW Capability Testing environment, and are then used to support Navy-wide Live, Virtual, and Constructive (LVC) Information Warfare (IW) capability tests and Fleet experimentation. This holistic set of assessments allows Program Managers to include to mitigate existing risks across the system lifecycle as well as strengthen the cybersecurity design of future system variants. - Continuing to develop automation of the RMF process, leveraging integrated digital engineering models that will streamline data and analytics to provide assessment results. The automated process includes integrating various RMF roles, data entry, and continued auditing/validating RMF steps (control selection, assessment, and authorization). Implement cyber operational risk threat assessments and continuous monitoring. Perform DON CISO Cyber Figure of Merit (CFOM) acquisition gate assessments, system of systems Cyber Risk to Mission (CRTM) assessments, develop and update cybersecurity technical standards, all of which support better understanding of and mitigation of cyber risk across the Navy. Advance the Continuous Monitoring (CONMON) and cyber operational picture capability required to meet Fleet Cyber Command (FCC) objectives. - Continuing to perform Systems Engineering Technical Reviews (SETRs) across Command, Control, Communications, Computers, Intelligence, Surveillance, Reconnaissance (C4ISR) and Digital Enterprise Services (DES); Manpower, Logistics, and Business Solutions (MLB) programs to ensure compliance with statutory and regulatory directives, as well as implementing applicable Information Technology (IT) and Cybersecurity (CS) Technology Authority (TA) architectures, specifications, standards, policies, processes and profiles. Continue efforts to integrate digital engineering advances as applicable to accelerate and automate SETR reviews to better support programs leveraging Agile or DevSecOps frameworks to support the Adaptive Acquisition Framework pathways. - Continuing digital reviews for program certifications and technical reviews of formal acquisition and engineering documentation through enhanced design and testing analysis. - Working to establish Enterprise Architecture to support design, development and delivery of integrated Navy Command, Control, Communications, Computers, Intelligence, Surveillance, and Reconnaissance (C4ISR), Business Information Technology (IT), and Space System capabilities. Perform mission-based system-of-systems kill chain and business thread analysis to ensure integration and interoperability and validate end-to-end warfighting capabilities to address emerging threats.
Three years, and no five-year plan
An R-2A activity publishes the prior year, the current year and the budget year. The FYDP outyears exist at project and program-element level and are deliberately absent here rather than inferred. Estimate types are colored and never summed into one figure.
| Fiscal Year | Estimate Type | Amount ($M) |
|---|---|---|
| FY2025 | Actual | 25.3 |
| FY2026 | Enacted | 25.0 |
| FY2027 | Request | 22.8 |
This activity is 100% of project 2144's FY2027 request and 64% of PE 0606355N's. In the request year the activities under a project sum to it exactly; in the current year they under-cover it in about 9% of cases, so an activity's delta can legitimately exceed its parent's and the two must not be compared row to row.
2 activities in project 2144
Every R-2A line of this project, largest FY2027 request first. Linked where the activity has enough of its own narrative to carry a page; the rest are shown in full on the project page.