RDT&E Program Element · President's Budget PB2027

Assessments and Evaluations Cyber Vulnerabilities

PE 0606942A·U.S. Army·Approp. 2040 — RDT&E·BA6 — RDT&E Management Support
FY2027 Request
$6.5M
Army · RDT&E
HitchAI read

U.S. Army requests $6.5M in FY2027, sustained across the five-year plan. In the FY2027 defense authorization, the House funded it in full; the Senate funded it in full; House appropriators funded it in full.

FY2027 Request
$6.5M
▲ 1.8% vs FY2026
FY2026 Enacted
$6.4M
▼ 37% vs FY2025
FY2025 Actual
$10.1M
Prior year

For fiscal year 2027, the U.S. Army is requesting $6.5M for Assessments and Evaluations Cyber Vulnerabilities under RDT&E program element 0606942A, up 1.8% over FY2026.

Funding trajectory

Funding profile, FY2025–FY2031

Prior years are actuals, the budget year is the request, and the outyears are the FYDP plan. Estimate types are colored and never summed into one figure.

010.1FY25ACTUAL6.4FY26ENACTED6.5FY27REQUEST6.5FY286.6FY296.7FY306.7FY31
Actual Enacted Request Outyear (FYDP)
Fiscal YearEstimate TypeAmount ($M)
FY2025Actual10.1
FY2026Enacted6.4
FY2027Request6.5
FY2028Outyear6.5
FY2029Outyear6.6
FY2030Outyear6.7
FY2031Outyear6.7
Where it sits

Acquisition lifecycle

This program is funded in RDT&E Budget Activity 6 — RDT&E Management Support.

Complete
Research
BA 1–2
Complete
Advanced Technology
BA 3
Complete
Prototyping
BA 4
Current
Development & Fielding
BA 5–7
Inside the program element

1 project rolls up into PE 0606942A

Projects are the summable leaves — the PE total is their sum, never added to it. Program elements and projects carry the full five-year plan; activities stop at the budget year. This PE moves 2% overall, which can hide much larger swings below.

Project FL2

Cyber Vulnerabilities Assessments and Evaluations

$6.5MFY2027 request ▲ 2%
FY2025 actual$10.1M
FY2026 enacted$6.4M
FY2027 request$6.5M

This funding line reduces the Army's risk to adversarial cyber intrusions or attacks that could compromise critical weapon systems and kill chains. Cyberspace Operational-Resilience Assessment - Platform (CORA-P) is the Army program to improve survivability across Army modernization efforts and maintain readiness of operational capabilities. CORA-P addresses the requirements of Section 1502 of the FY24 NDAA, which directed the Services to harmonize the identification and mitigation cyberspace vulnerabilities in critical weapon systems. Headquarters, Department of the Army initially established CORA-P to continue Section 1647 assessments, while expanding to include supply chain risk analysis and electromagnetic spectrum vulnerabilities. CORA-P has since shifted from executing new assessments to harmonizing defensive efforts across existing Army and DoW assessment programs (including the Strategic Cybersecurity Program). CORA-P now focuses on developing and delivering vulnerability remediations that result from these assessments as well as from sensitive threat intelligence and other potential indicators of compromise. Activities include improving the structure and visibility of vulnerability data to improve portfolio risk management, initiating remediation efforts for high-priority, crosscutting issues, and avoiding future risks by driving improvements earlier in materiel development for modernization programs. As part of CORA-P, the Army identifies and prioritizes capabilities most-relevant to National Defense Strategy priorities based on input from mission planning, JROC guidance, and sensitive threat intelligence. This also includes coordinating Army Cyber Command lead Crisis Action Teams, where specific vulnerabilities affect the Army weapon/business systems. A key aspect is integrating efforts across both HQDA and Army Commands to understand total risk exposure while avoiding duplication. The Army then reviews the security posture of these critical components, develops remediation strategies, and facilitates delivery of fixes at mission-relevant speed. This includes working with program offices, capability managers, and resource managers to develop realistic plans of action for manage risk across outyears, and then gaining Army Senior Leader approval as needed.

Accomplishments / planned programs (R-2A) — prior, current and budget year only
Cyberspace Operational Resiliency Assessment - Platform (CORA-P)▲ 2%
FY2025 actual$6.2M
FY2026 enacted$6.4M
FY2027 request$6.5M

FY2027 planned work ASA(ALT) will continue to address cyber vulnerability trends and crosscutting remediations to deliver resilient and survivable weapon systems. This includes continued oversight of ongoing and development of new strategies for recent and ongoing Strategic Cybersecurity Program evaluations. Additionally, CORA-P will synergize findings and remediation actions from multiple Army and DoW sensitive initiatives to Mitigate Critical Vulnerabilities across critical capabilities. The Army will complete multiple efforts to improve software readiness by improving the electronic and automated delivery of software updates to deployed weapon systems, as well as improving accountability by integrating…

FY2026 to FY2027 change Increase due to economic assumption.

FY2026 plans — current year ASA(ALT) will continue to address cyber vulnerability trends and crosscutting remediations to deliver resilient and survivable weapon systems. This includes continued oversight of ongoing and development of new strategies for recent and ongoing Strategic Cybersecurity Program evaluations. Additionally, CORA-P will synergize findings and remediation actions from multiple Army and DoW sensitive initiatives to Mitigate Critical Vulnerabilities across critical capabilities. The Army will complete multiple efforts to improve software readiness by improving the electronic and automated delivery of software updates to deployed weapon systems, as well as improving accountability by integrating…

FY2025 accomplishments The funding provides the Army the opportunity to assure its digital transformation through automation to improve efficiency and effectiveness of cyber vulnerability collection, analysis, and reporting to deliver resilient and survivable weapon systems. Improved automation will enable the analysis of products from engineering, Test & Evaluation, and other assessments to proactively identify areas of risk (e.g. compromised software, unsecure configurations, supply chain vulnerabilities, etc). Enhancements will be leveraged to develop specific remediation plans/actions for priority findings from the DoD Security Cooperation Program and other defensive cyberspace operations in order to deliver…

Red Team
FY2025 actual$3.9M
FY2026 enacted
FY2027 request

FY2025 accomplishments The funding provides the Army the ability to further develop the TCAI capability to test emerging and evolving DoD/Army AI and ML capabilities against operationally relevant and realistic threats critical to testing Army modernization priorities. The Army Acquisition Red Team will also provide PCO at the Combatant Command (COCOM) mission level, develop adversary Tactics Techniques and Procedures (TTPs), conduct broad assessments of S&T and acquisition office environments and industrial base assets. The Army Acquisition Red Team will support CORA-P providing PCO, Close Access Assessments, and Adversarial Assessments. The Army Acquisition Red Team supports multiple goals of the Army Campaign…

Congressional action

Congressional marks

Committee marks on the FY2027 request. Adds and cuts are reconciled in conference before they become law.

RequestPresident's Budget
$6.5M
House NDAA (HASC)HASC
$6.5M full · +$0
Senate NDAA (SASC)SASC
$6.5M full · +$0
House Approps (HAC-D)HAC_D
$6.5M full · +$0
unresolved as of 2026-07-27. These are FY2027 authorization marks (NDAA); appropriations and the conference agreement may differ.
Program detail

Mission & acquisition strategy

This funding line reduces the Army's risk to adversarial cyber intrusions or attacks that could compromise critical weapon/business systems and kill chains. Cyberspace Operational-Resilience Assessment - Platform (CORA-P) is the Army program to improve survivability across Army modernization efforts and maintain readiness of operational capabilities. CORA-P addresses Congressional requirements beginning with FY16 NDAA Section-1647, and through FY24 NDAA Section-1502, which directs the Services to identify and mitigate cyberspace vulnerabilities in critical weapon systems.

Project FL2 — Cyber Vulnerabilities Assessments and Evaluations
Ask Hitch

Ask this program element

Answers are generated from the figures on this page — the FY2027 justification exhibits and the marks tracked above — and nothing else is consulted. Confirm any figure against the cited exhibit before you use it externally.

H
Questions this page can answer
How does the FY2027 request compare with FY2026, and what does the five-year plan show?What did the FY2027 NDAA committees do to this request?In plain terms, what is this program element for and how is it being acquired?

This page carries the budget justification and the NDAA marks — nothing else. For what a contractor has actually been obligated, the ledger is at hitchintel.com/vendors; for live solicitations, hitchintel.com/opportunities. Both are member surfaces.

Provenance

Cite this page

Sources
FY2027 Department of the Army RDT&E Budget Justification · Exhibits R-2 / R-3 · PE 0606942A (President's Budget PB2027) — and FY2027 NDAA committee marks, as tracked 2026-07-27.
Suggested citation
HitchAI, "Assessments and Evaluations Cyber Vulnerabilities (PE 0606942A)," federal budget intelligence, PB2027 vintage. hitchintel.com/programs/0606942A
Machine access
Markdown twin /programs/0606942A.md · MCP mcp.hitchintel.combudget_get_program_element, budget_get_cong_marks