Cyberespionage: US finds FBI agents in elite unit lack necessary skills
With US increasingly vulnerable to cyberespionage, a Justice Department report finds that many agents attached to the FBI's elite cyber unit lack the skills to investigate such cases.
Many of the Federal Bureau of Investigation's field agents assigned to an elite cyber investigative unit lack the skills needed to investigate cases of cyberespionage and other computerized attacks on the US, the Justice Department inspector general reported Wednesday.
That's a problem because the US is under constant and increasing cyberattack with 5,499 known intrusions into US government computer systems in 2008 alone â€“ a 40 percent jump from 2007, the inspector general's office found.
Investigating these kinds of cyberespionage attacks falls largely on the FBI as the lead agency for the National Cyber Investigative Joint Task force, which also includes representatives from 18 different intelligence agencies and is assigned to investigate the most difficult national security intrusions â€“ those by a foreign power for intelligence gathering or terrorist purposes.
But in interviews with 36 field agents in 10 of the FBI's 56 field offices nationwide, 13 agents, or more than a third, â€śreported that they lacked the networking and counterintelligence expertise to investigate national security [computer] intrusion cases.â€ť Five of the agents told investigators â€śthey did not think they were able or qualifiedâ€ť to investigate such cases, the report said. The inspector general report does not indicate whether the 36 field agents who were interviewed are a representative sampling of the FBIâ€™s cyber unit.
Still, having enough highly qualified digital experts defending US government and other computer systems is neither an unknown problem nor one exclusive to the FBI.
More experts are needed
â€śWhile billions of dollars are being spent on new technologies to secure the US government in cyberspace, it is the people with the right knowledge, skills, and abilities to implement those technologies who will determine success,â€ť the cyber education section of President Obama's Comprehensive National Cybersecurity Initiative found last year. â€śHowever there are not enough cybersecurity experts within the federal government or private sectorâ€ť to secure the government.
Existing training and education programs, it said, are â€ślimited in focus and lack unity of effort.â€ť To ensure an adequate pipeline of skilled people â€śit will take a national strategy, similar to the effort to upgrade science and mathematics education in the 1950s, to meet this challenge.â€ť
Other cybersecurity experts have cited the same problem.
â€śThere are about 1,000 security people in the US who have the specialized security skills to operate at world-class levels in cyberspace â€“ we need 10,000 to 30,000,â€ť Jim Gosler, founding director of the CIA's Clandestine Information Technology Office, was quoted as saying in a report last year by the Center for Strategic and International Studies in Washington.
Agent rotation is criticized
Among the issues that impeded developing strong expertise and solving cyber investigations was the practice of rotating field agents to a new field office every three years, the inspector general said. After rotating to a new office, an agent with cyber investigation experience often is not assigned to a cyber unit â€śleaving their cyber background underutilized.â€ť
â€śWhen a foreign country uses computer networks to attack a cleared-defense contractor in Memphis, it uses the same technology and techniquesâ€ť as an attack on a defense contractor in New York, the inspector general's report said.
The FBI cybersquads were also not as effective as they could be because the squads did not always have intelligence analysts embedded in their units to provide a strategic perspective and overall threat analysis, the inspector general found. The FBI also â€śneeds to make also failed to share information better with other agencies in the joint task force,â€ť the report said.
In its written response to the critical report, FBI associated deputy director T.J. Harrington concurred with 10 recommendations in the report and noted that the bureau had met 20 of 22 mandates outlined in the president's Comprehensive National Cybersecurity Initiative. The bureau also outlined a number of other steps it is taking to cultivate cyber expertise said it is also considering â€śdeveloping regional hubs with agents expert in investigating national security intrusions.â€ť