Printed from https://fiscalreceipts.com/program/0303140K/ — data as of August 12, 2026. Every figure is citation-backed; see the page online for per-number provenance.
Information Systems Security Program
Budget Figures
FY2026 award data is a partial year — USASpending awards are reported on a rolling basis and the fiscal year does not close until September 30. why partial FY2026 data? →
| Fiscal year | Amount |
|---|---|
| FY24 | $8.03M |
| FY25 | $31.4M |
| FY26 | $23.2M |
All series figures: R-1 TOA · PB2026
The vertical scale does not start at zero: the baseline sits just below this program’s smallest year, so a low point on this line is not a small amount. Read the shape for direction and the grid below for the figures.
● actuals (line) · ○ enacted · ◇ request — gaps are editions the program is absent from, never interpolated.
| Series | FY17 | FY18 | FY19 | FY20 | FY21 | FY22 | FY23 | FY24 | FY25 | FY26 |
|---|---|---|---|---|---|---|---|---|---|---|
| Actuals | $0 | $0 | $42.3M | $39.8M | $6.22M | $5.71M | $6.72M | $8.03M | ||
| Enacted | – | $0 | $19.6M | $40.4M | $8.92M | $5.71M | $6.97M | $8.35M | $31.4M | |
| Request | – | – | $19.6M | $42.8M | $8.92M | $5.71M | $7.00M | $8.35M | $31.4M | $23.2M |
blank = series not published for this year; – = absent from that edition.
Asked vs spent: the PB2019 book requested $19.6M for FY2019; the PB2021 book reported $42.3M as actual total obligation authority — $22.7M above the request. 42.3 − 19.6 = 22.7 USD millions — the compact figures above are rounded for reading.
Program Lineage
No predecessor/successor lineage was recorded for this program element — no FY-to-FY transfer into or out of this line was stated in the ingested J-books, and none was inferred from the program structure.
Description
Mission — Information Systems Security Program
Cyber Security & Analytics enables mission operations for global partners and the warfighter by providing communications through the delivery of optimized cyber infrastructure solutions. The intent is to be dominant in providing strategic and innovative cyber infrastructure to support Department of Defense (DoD) missions. Cyber Security & Analytics ensures enterprise services evolve support for a joint information assurance model. The joint information assurance model manages risks related to the use, storage, and transmission of information and supports a broad range of information sharing policies across the unclassified and classified communities. The enhancements to SIPRNet and its enablers will help to secure devices on the network. Cyber Security & Analytics will: • Test and develop active defensive capabilities. • Test and integrate software defined networking and orchestration closed-loop security, which through analytics, monitors and assesses network activities to improve network performance and mitigate negative network occurrences. • Perform research, development, and engineering of emerging cyber situational awareness technologies. • Improve the network performance by providing architecture support, systems engineering and analytical functions.
Mission — Information Systems Security Program
Cyber Security & Analytics enables mission operations for global partners and the warfighter by providing communications through the delivery of optimized cyber infrastructure solutions. The intent is to be dominant in providing strategic and innovative cyber infrastructure to support Department of Defense (DoD) missions. Cyber Security & Analytics ensures enterprise services support a joint information assurance model. The joint information assurance model mitigates risks related to the use, storage, and transmission of information and supports a broad range of information sharing policies across the unclassified and classified communities. Cyber Security & Analytics will: • Test and develop active defensive capabilities. • Test and integrate software defined networking and orchestration closed-loop security, which through analytics, monitors and assesses network activities to improve network performance and mitigate negative network occurrences. • Perform research, development, and engineering of emerging cyber situational awareness technologies. • Improve the network performance by providing architecture support, systems engineering and analytical functions.
Justification
Accomplishments & Planned Programs (5)
Automation Technical Integration and Engineering in Cyberspace
This program provides research and development, conducts technology assessments, and provides data to drive real time automation integration decisions and enterprise solutions, ultimately improving the user experience. As DISA moves towards a shared transparency of understanding, automation of technical solutions promotes increased information sharing and improved understanding of interdependencies underlying service operations and mission activities. Emerging information technology must support the current and next-generation warfighters to ensure systems are protected while also leveraging advances in automation to deliver capabilities. Ultimately, these efforts support the achievement of an optimized IT environment to protect against threats in cyberspace that remain dynamic and persistent.
Zero Trust Architecture (ZTA)
The ZTA project supports the effort to create a Zero Trust Commercial Cloud Lab (ZTCCL). The ZTCCL is an environment that provides an integration space to develop, test, and mature concepts, capabilities, and technology to benefit the DoD Information Network (DoDIN). These concepts, capabilities, and technologies will increase the DoDIN’s ability to prevent, detect, respond, and recover from malicious cyber activities while proving scalability to enterprise levels. The ZTCCL will: • Provide a test and development environment to test ZT capabilities within a cloud lab environment. • Provide automations for customer research and development with an activity template to include standard IT domain builds, three tiered applications that improve scalability and availability, and "Gold images" that provide a consistent system baseline for common Operating Systems deployments. The ZT project stemmed from a FY 2018 initial Zero Trust Reference Architecture effort with US Cyber Command, NSA, and DoD-CIO.
Public Key Infrastructure (PKI)
Provide non-reputable digital identities of users, devices, applications, and services for both DoD and external mission partners using hardware and software-based certificate/key pairs, and a suite of capabilities that uses interoperable industry standards (OCSP/CRLs) to enable real-time revocation status of those identities. Enable secure communication at OSI 5/6.
Endpoint License and Support
DISA, at the request of the United States Strategic Command (USSTRATCOM) and in support of National Security goals established by the President, has purchased a capability from industry that takes data from Endpoint tools and centralizes it for monitoring and roll up for all Endpoint Security System (ESS) solution(s). This solution will provide data points for network administrators and security personnel with intelligence to prevent, detect, track, report, and remediate malicious computer-related activities and incidents across all DoD networks and information systems.
SIPRNet Endpoint Management
DISA will provide an enterprise Unified Endpoint Management (UEM) suite of tools that will be available to the Department to help secure devices on the network. DISA will invest in people, processes and policy coordination and work with vendors, such as Microsoft and others, to bring Impact Level 5 (IL) security tools over to the Impact Level (IL6) environment that secures the SIPRNet. By porting tools supporting Unified Endpoint Management, DISA and the DoD gain advantages at scale by having a shared UEM solution that ensures endpoints are operating at a common security level across the SIPRNet domain. Without these tools, the enterprise is left to less efficient and disparate methods for updating devices which leads to varying software versions on the network.
Budget Line Items(workbook-cited)
P-1/R-1 workbook Total Obligation Authority basis (USD thousands) · PB2026.
Exhibit R-1
| Account | Org | Type | Amount |
|---|---|---|---|
| Research, Development, Test and Evaluation, Defense-Wide | DISA | FY24 Actuals | $8.03M |
| Research, Development, Test and Evaluation, Defense-Wide | DISA | FY25 Enacted | $31.4M |
| Research, Development, Test and Evaluation, Defense-Wide | DISA | FY25 Total | $31.4M |
| Research, Development, Test and Evaluation, Defense-Wide | DISA | FY26 Disc. Request | $23.2M |
| Research, Development, Test and Evaluation, Defense-Wide | DISA | FY26 Total | $23.2M |
Budget Details(R-2/P-40 facts)
J-book detail basis (R-2/P-40, USD millions) · PB2026 — a different accounting basis from the P-1/R-1 workbook TOA above; where the two disagree, the reconciliation strip under Budget Figures shows both.
Wider than this screen — swipe the table sideways for the remaining fiscal-year columns.
| Project | All Prior Years | FY24 Actuals | FY25 Total | FY26 Base | FY26 Request |
|---|---|---|---|---|---|
| Program Element | $100.7M | $8.03M | $31.4M | $23.2M | $23.2M |
| IA3: Information Systems Security Program | $100.7M | $8.03M | $31.4M | $23.2M | $23.2M |
No follow-the-dollar view — this program's awards haven't been crosswalked at high confidence (flows cover 17 of 1,741 programs). why coverage is partial? →
Awards
No awards are linked to this program element at high confidence — the budget→award crosswalk only asserts links it can defend, and this line has none yet.
Lobbying Mentions
No Senate LDA lobbying filing in the tracked data mentions this program element by code or alias.
Oversight
Department-level designation (not specific to this program)
GAO lists 5 high-risk areas for DOD as a whole. That designation covers the department, not Information Systems Security Program — no program-specific GAO finding for this line is in the ingested data. See the DOD oversight record.
No research dossier for this program — dossiers cover 50 of 1,741 programs, the largest fully J-book-detailed lines by FY2026 requested dollars. why no dossier here? →