Navy’s Aaron Weis on Use of Automated Red-Teaming in Addressing Cyber Vulnerabilities

Aaron Weis, chief information of the Department of the Navy and a 2022 Wash100 Award winner, said conducting regular automated red-teaming is far more effective than adopting a “checklist” approach when it comes to detecting and addressing cyber vulnerabilities, Defense One reported Tuesday.

It's a very compliance-driven mentality, like an audit… and it's wrong,” Weis told the publication of the checklist approach. “Cybersecurity is not a compliance problem.”

The Navy conducted an experiment using a tool called Nova from software startup Rebellion to perform automated red-teaming on networks and found that the process revealed which cyber vulnerabilities allow threat actors to gain wider access to networks and those that were the easiest to exploit.

“It can identify the system, understand its patch level, catalog its vulnerabilities according to what’s generally available, and then try to run an automated exploit against it, based on what it knows,” Weis said of the tool.

Share the Post:

Related Posts

Key Takeaways From Baird’s 2025 Defense & Government Conference

Co-authored with Pat Host For eight years, investment banking firm Baird has brought the government contracting community a sterling conference every November to take the pulse on the industry’s current...

Saluting First-Time 2025 Wash100 Winners From Government

The annual Wash100 Award represents the apex of an executive’s career. Issued by Executive Mosaic, the GovCon industry’s leading events, media and membership organization, the first-time winners from the class...

The Five Foundational Values of the Wash100 Award

The Wash100 Award is the ultimate achievement in a GovCon executive’s career. The award, created by Executive Mosaic in 2014, is the yearly recognition of GovCon leaders who demonstrate excellence...