{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,10]],"date-time":"2026-06-10T16:34:18Z","timestamp":1781109258033,"version":"3.54.1"},"reference-count":41,"publisher":"IGI Global Scientific Publishing","issue":"4","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2017,10,1]]},"abstract":"<p>Modern military forces rely heavily on cyber-enabled systems; for logistics, communication, and control. Modern military platforms are heavily integrated with computing capability. This integration and reliance will only increase over time. Modern military operations require the support of flexible, responsive and resilient cyber-capabilities. Current information system security models and information assurance constructs seek to achieve information assurance, a high degree of certainty in the confidentiality, integrity and availability of cyber-systems supporting combat operations. However, this approach assumes that an information assurance approach is a complete and comprehensive defense. History though, has proven otherwise. This work argues that the information assurance approach, whilst a worthy goal, is not reflective of the lessons of history or warfare. Specifically, this work outlines the need for, and introduces The Military Cyber-Maturity Model, a pragmatic model that assumes a technically capable and intelligent adversary. This model assumes the possibility of an adversary utilizing an unknown vulnerability to attack the system, and expends resources to minimise the impact of the successful attack rather than relying entirely on an impregnable defense. This approach extends beyond the assumption that a cyber-attack immediately causes mission failure, by recognizing that each cyber-attack has different requirements and outcomes and will affect different assets and processes. The Military Cyber-Maturity Model seeks to model business continuity through a high degree of cultural change, embedded work practices that parallel analogue and digital work practices with deceptive counterintelligence behavior. The Military Cyber-Maturity Model incorporates the concepts of behavioral defense and mission assurance to provide agility and increase the likelihood of success in combat. Information deception provides a behavioral defense, creating uncertainty and doubt in the adversary's mind and reducing the degree of trust they have in the information available. This paper introduces the model, outlines its aims, components and justifications. This work also outlines the need for simulation and testing to validate the model's effectiveness, and introduces a number of potential use-cases.<\/p>","DOI":"10.4018\/ijcwt.2017100101","type":"journal-article","created":{"date-parts":[[2017,10,11]],"date-time":"2017-10-11T11:54:49Z","timestamp":1507722889000},"page":"1-13","source":"Crossref","is-referenced-by-count":0,"title":["Developing a Military Cyber Maturity Model for Multi-Domain Battle Mission Resilience and Success"],"prefix":"10.4018","volume":"7","author":[{"given":"David","family":"Ormrod","sequence":"first","affiliation":[{"name":"Australian Centre for Cyber-Security, University of New South Wales at the Australian Defence Force Academy, Canberra, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Benjamin","family":"Turnbull","sequence":"additional","affiliation":[{"name":"Australian Centre for Cyber-Security, University of New South Wales at the Australian Defence Force Academy, Canberra, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"2432","reference":[{"key":"IJCWT.2017100101-0","doi-asserted-by":"crossref","unstructured":"Alberts, D. S. (2014). Agility Quotient (AQ). Paper presented at the 19th International Command and Control Research and Technology Symposium (ICCRTS), Alexandria, VA. Retrieved 20 August 2015 from http:\/\/www.dodccrp.org\/events\/19th_iccrts_2014\/post_conference\/papers\/072.pdf","DOI":"10.21236\/ADA605273"},{"key":"IJCWT.2017100101-1","unstructured":"Bishop, M., Carvalho, M., Ford, R., & Mayron, L. M. (2011). Resilience is more than availability. Paper presented at the 2011 workshop on New security paradigms workshop, Marin County, CA. http:\/\/dl.acm.org\/citation.cfm?doid=2073276.2073286http:\/\/delivery.acm.org\/10.1145\/2080000\/2073286\/p95- bishop.pdf?ip= 131.236.233.114&id= 2073286&acc=ACTIVE%20SERVICE&key= 65D80644F295BC0D%2EB811333C2AA88C82% 2E4D4702B0C3E38B35%2E4D4702B0C3E38B35&CFID= 648564880&CFTOKEN=41559247&__acm__ =1427417999_201262289da54354a75aca4f162a080c"},{"key":"IJCWT.2017100101-2","unstructured":"Bodeau, D., & Graubart, R. (2011). Cyber Resiliency Engineering Framework."},{"key":"IJCWT.2017100101-3","unstructured":"Bodeau, D., Graubart, R., LaPadula, L., Kertzner, P., Rosenthal, A., & Brennan, J. (2012). Cyber Resiliency Metrics (Vers. 1.0, Rev. 1)."},{"key":"IJCWT.2017100101-4","author":"D. J.Bodeau","year":"2011","journal-title":"Cyber Resiliency Engineering Framework. MITRE Technical Report, Document Number MTR110237"},{"key":"#cr-split#-IJCWT.2017100101-5.1","unstructured":"Bush, G. W. (2008). National Security Presidential Directive\/NSPD-54, Homeland Security Presidential Directive HSPD-23, Cybersecurity Policy"},{"key":"#cr-split#-IJCWT.2017100101-5.2","unstructured":"(U) Declassified. Retrieved 01 October 2015 from http:\/\/fas.org\/irp\/offdocs\/nspd\/nspd-54.pdf"},{"key":"IJCWT.2017100101-6","unstructured":"Carvalho, M., Dasgupta, D., Grimaila, M., & Perez, C. (2011, March). Mission Resilience in Cloud Computing: A Biologically Inspired Approach."},{"key":"IJCWT.2017100101-7","doi-asserted-by":"publisher","DOI":"10.6028\/NIST.SP.800-61r2"},{"key":"IJCWT.2017100101-8","doi-asserted-by":"crossref","DOI":"10.1093\/oso\/9780192840554.001.0001","author":"B. J.Copeland","year":"2006","journal-title":"Colossus: The secrets of Bletchley Park\u2019s code-breaking computers. Oxford, OX"},{"key":"IJCWT.2017100101-9","unstructured":"Department of Defence, Australian Signals Directorate. (2014a). Strategies to Mitigate Targeted Cyber Intrusions. Cyber Security Operations Centre. Retrieved 01 Oct 15 from http:\/\/www.asd.gov.au\/publications\/Mitigation_Strategies_2014.pdf"},{"key":"IJCWT.2017100101-10","unstructured":"Department of Defence, Australian Signals Directorate. (2014b). Top 4 Strategies to Mitigate Targeted Cyber Intrusions: Mandatory Requirement Explained. Cyber Security Operations Centre. Retrieved 01 October 15 from http:\/\/www.asd.gov.au\/infosec\/top-mitigations\/top-4-strategies-explained.htm"},{"key":"IJCWT.2017100101-11","unstructured":"Department of Defense, USA. (2009). The United States Air Force Blueprint for Cyberspace."},{"key":"IJCWT.2017100101-12","doi-asserted-by":"crossref","unstructured":"Dwivedi, A., Tebben, D., & Harshavardhana, P. (2010). Characterizing cyber-resiliency. Paper presented at theMilitary Communications Conference (MILCOM), 31 Oct. - 03 Nov., San Jose, CA.","DOI":"10.1109\/MILCOM.2010.5680128"},{"key":"IJCWT.2017100101-13","doi-asserted-by":"publisher","DOI":"10.1073\/pnas.231499798"},{"key":"IJCWT.2017100101-14","author":"R.Erskine","year":"2002","journal-title":"Action This Day: Bletchley Park from the Breaking of the Enigma Code to the Birth of the Modern Computer"},{"key":"IJCWT.2017100101-15","author":"J. M.Gilmore","year":"2013","journal-title":"The Office of the Director Operational Test and Evaluation FY12 Overarching Assessment of Information Assurance During Operational Test and Evaluation"},{"key":"IJCWT.2017100101-16","unstructured":"Gilmore, J. M. (2015). The Office of the Director Operational Test and Evaluation FY2014 Annual Report. Washington, DC. USA.: Department of Defense. Retrieved from http:\/\/www.dote.osd.mil\/pub\/reports\/FY2014\/"},{"key":"IJCWT.2017100101-17","unstructured":"Haigh, T., Harp, S., & Payne, C. (2010). AIMFIRST: Planning for Mission Assurance. Retrieved from http:\/\/search.proquest.com\/docview\/869617359?accountid=12763http:\/\/primoa.library.unsw.edu.au\/openurl\/61UNSW_INST\/UNSW_SERVICES_PAGE?url_ver= Z39.88- 2004&rft_val_fmt= info:ofi\/fmt:kev:mtx:journal&genre= article&sid=ProQ:ProQ%3Apoliticalscience&atitle= AIMFIRST%3A+Planning+for+Mission+Assurance&title= International+Conference+on+Information+Warfare+and+Security&issn=&date=2010-04- 01&volume=&issue=&spage=416&au= Haigh%2C+Tom%3BHarp%2C+Steven%3BPayne%2C+Charles&isbn=&jtitle=International+Conference+on+Information+ Warfare+and+Security&btitle=&rft_id=info:eric\/&rft_id=info:doi\/"},{"key":"IJCWT.2017100101-18","unstructured":"Holdren, J. P., & Lander, E. S. (2013). Report to the President Immediate Opportunities for Strengthening the Nation's Cybersecurity. Executive Office of the President. President\u2019s Council of Advisors on Science and Technology. Retrieved 01 October 2015 from https:\/\/www.whitehouse.gov\/sites\/default\/files\/microsites\/ostp\/PCAST\/pcast_cybersecurity_nov-2013.pdf"},{"key":"IJCWT.2017100101-19","year":"2008","journal-title":"ISO\/IEC 21827:2008 Information technology -- Security techniques -- Systems Security Engineering -- Capability Maturity Model"},{"key":"IJCWT.2017100101-20","unstructured":"Kramer, F. D. (2012). Achieving International Cyber Stability. Retrieved from Washington, DC.: http:\/\/www.atlanticcouncil.org\/publications\/reports\/achieving-international-cyber-stability"},{"key":"IJCWT.2017100101-21","unstructured":"Maclntosh, J., Reid, J., & Tyler, L. (2011). Cyber Doctrine: Towards a Coherent Evolutionary Framework for Learning Resilience. London, UK.: Institute for Security and Resilience Studies, University College London. Retrieved 01 Oct 2015 from https:\/\/www.ucl.ac.uk\/isrs\/publications\/CyberDoctrine"},{"key":"IJCWT.2017100101-22","first-page":"2001","article-title":"Mathematical Proofs of Mayfield\u2019s Paradox: A Fundamental Principle of Information Security. Information Systems Audit and Control Association (ISACA)","volume":"2","author":"C.Mayfield","year":"2001","journal-title":"Journal."},{"key":"IJCWT.2017100101-23","unstructured":"McLean, V.A., Musman, S., Tanner, M., Temin, A., Elsaesser, E., & Loren, L. (2011). Computing the impact of cyber attacks on complex missions. Paper presented at the2011 IEEE International Systems Conference (SysCon), Montreal, Quebec, Canada."},{"key":"IJCWT.2017100101-24","doi-asserted-by":"crossref","unstructured":"Musman, S., & Agbolosu-Amison, S. (2014). A Measurable Definition of Resiliency Using \u201cMission Risk\u201d as a Metric.","DOI":"10.21236\/ADA610494"},{"key":"IJCWT.2017100101-25","unstructured":"National Research Council. (2010). Information Assurance for Network-Centric Naval Forces. Washington, D.C.: National Academies Press. Retrieved 01 October 2015 from http:\/\/www.nap.edu\/catalog\/12609\/information-assurance-for-network-centric-naval-forces"},{"key":"IJCWT.2017100101-26","unstructured":"Pritchett, M. D. (2012). Cyber Mission Assurance: A Guide to Reducing the Uncertainties of Operating in a Contested Cyber Environment."},{"key":"IJCWT.2017100101-27","doi-asserted-by":"crossref","unstructured":"Qian, Y., Tipper, D., Krishnamurthy, P., & Joshi, J. (2008). Information assurance: dependability and security in networked systems. Burlington, MA: Morgan Kaufmann.","DOI":"10.1016\/B978-012373566-9.50003-3"},{"key":"IJCWT.2017100101-28","author":"R. A.Ratcliff","year":"2006","journal-title":"Delusions of Intelligence: Enigma, Ultra, and the End of Secure Ciphers"},{"key":"IJCWT.2017100101-29","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2014.11.007"},{"key":"IJCWT.2017100101-30","year":"2010","journal-title":"HB 158\u20142010 Delivering assurance based on ISO 31000:2009 Risk management\u2014 Principles and guidelines."},{"key":"IJCWT.2017100101-31","unstructured":"Takai, T. M. (2014). Cybersecurity. Department of Defense Instruction 8500.01. Department of Defense. Washington D.C. USA. Retrieved 01 October 2015 fromhttp:\/\/www.dtic.mil\/whs\/directives\/corres\/pdf\/850001_2014.pdf"},{"key":"IJCWT.2017100101-32","unstructured":"The Open Group. (2011). Information Security Management Maturity Model. The Open Group Technical Standard. The Open Group. Retrieved on 01 Oct 15 fromhttps:\/\/www2.opengroup.org\/ogsys\/jsp\/publications\/PublicationDetails.jsp?publicationid=12238"},{"key":"IJCWT.2017100101-33","unstructured":"Thompson, M. A. (2015). Harmonised taxonomies of security and resilience: a suitable foundation for the security discipline [PhD Thesis]. School of Engineering and Information Technology. University of New South Wales."},{"key":"IJCWT.2017100101-34","unstructured":"Tr\u00e9pant, H., Jansen, M., Lamaa, A., & Suddards, A. (2014). Achieving information superiority - Five imperatives for military transformation. PricewaterhouseCoopers. Retrieved 01 October 2015 from http:\/\/www.strategyand.pwc.com\/media\/file\/Strategyand_Achieving-information-superiority.pdf"},{"key":"IJCWT.2017100101-35","unstructured":"UK Ministry of Defence. (2013). Joint Doctrine Note 2\/13. Information Superiority. Head of Doctrine, Air and Space. Development, Concepts and Doctrine Centre. Retrieved 01 October 2015 from https:\/\/www.gov.uk\/government\/uploads\/system\/uploads\/attachment_data\/file\/239342\/20130813_JDN_2_13_Info_Super.pdf"},{"key":"IJCWT.2017100101-36","unstructured":"UK Ministry of Defence. (2014). Joint Doctrine Publication 0-01 UK Defence Doctrine."},{"key":"IJCWT.2017100101-37","unstructured":"US Department of Defense. (2013). Joint Publication 3-12 (R) - Cyberspace Operations. Retrieved from http:\/\/www.dtic.mil\/doctrine\/new_pubs\/jointpub_operations.htm"},{"key":"IJCWT.2017100101-38","doi-asserted-by":"publisher","DOI":"10.1016\/j.jtbi.2009.11.008"},{"key":"IJCWT.2017100101-39","doi-asserted-by":"crossref","unstructured":"Whitacre, J., & Bender, A. (2013). Pervasive flexibility in living technologies through degeneracy-based design. Artificial life, 19(3-4), 365-386.","DOI":"10.1162\/ARTL_a_00116"}],"container-title":["International Journal of Cyber Warfare and Terrorism"],"original-title":[],"language":"ng","link":[{"URL":"https:\/\/www.igi-global.com\/viewtitle.aspx?TitleId=190587","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,5,6]],"date-time":"2022-05-06T20:08:26Z","timestamp":1651867706000},"score":1,"resource":{"primary":{"URL":"https:\/\/services.igi-global.com\/resolvedoi\/resolve.aspx?doi=10.4018\/IJCWT.2017100101"}},"subtitle":[""],"short-title":[],"issued":{"date-parts":[[2017,10,1]]},"references-count":41,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2017,10]]}},"URL":"https:\/\/doi.org\/10.4018\/ijcwt.2017100101","relation":{},"ISSN":["1947-3435","1947-3443"],"issn-type":[{"value":"1947-3435","type":"print"},{"value":"1947-3443","type":"electronic"}],"subject":[],"published":{"date-parts":[[2017,10,1]]}}}