← OSINT Library

Batten the Hatches: Cybersecurity with Military Mariners

ArXiv · Ryan Von Brock, Anna Raymaker, Animesh Chhotaray, Frank Li, Saman Zonouz, Raheem Beyah ·

Executive Summary

This study investigates how U.S. military mariners from the Navy and Coast Guard perceive and respond to cyber risks, finding that cybersecurity is often abstract on ships, leading to reliance on informal experience over formal training. Mariners prioritize immediate operational safety, which can delay cyber attribution and containment. The research highlights a misalignment between perceived vulnerabilities and detection methods, suggesting gaps in current training and organizational structures.

Why It Matters

This document is crucial for defense analysts as it provides unique insights into the human element of military cybersecurity, revealing how frontline mariners perceive and respond to cyber threats in operational environments, which directly impacts naval readiness and strategic capabilities.

Key Takeaways

  • Military mariners primarily develop cybersecurity understanding through informal experience and situational factors, rather than formal, relevant training.
    Source evidence · PDF page 1
    We find that cybersecurity is organizationally abstract on ships, so mariners build cyber risk models from informal experience rather than formal instruction. They nonetheless make cybersecurity actionable by recognizing operational impacts and responding with a safety-oriented incident-response model that creates resilience but may delay cyber attribution and containment.
  • Classification barriers hinder effective cybersecurity training for most mariners, as critical threat information is often classified at levels inaccessible to them.
    Source evidence · PDF page 6
    Most of the cyber threat information that we have for afloat assets is at the [top secret] level. And it’s unfortunate that, generally, the [large cutter] commanding officers are the only ones to have that clearance” (P18). This classification barrier creates an obstacle to effectively describing cybersecurity threats, disconnecting formal training and operational reality for mariners without sufficient clearance.
  • There is a significant misalignment between mariners' perceived cyber vulnerabilities (e.g., navigation systems) and their actual detection methods, which often rely on obvious operational failures.
    Source evidence · PDF page 11
    Mariners’ perceived vulnerabilities and actual detection methods are misaligned, leaving detailed troubleshooting and cyber attribution to off-ship support.

Strategic Relevance

Understanding the human factors in military cybersecurity is strategically vital for enhancing operational resilience against cyberattacks. The findings highlight the need for improved, relevant training and clearer organizational responsibilities to mitigate risks like weapon takeover and geopolitical escalation, directly impacting force projection and deterrence.

Source Website View PDF

Key Entities

U.S. NavyU.S. Coast GuardGeorgia Institute of TechnologyRyan Von BrockAnna RaymakerAnimesh ChhotarayFrank LiSaman ZonouzRaheem BeyahDepartment of Defense

Best For

Cyber AnalystsMilitary StrategistsNaval CommandersPolicy MakersTraining Developers

Related Themes

Cyber WarfareNaval OperationsMilitary TrainingHuman Factors in DefenseMaritime Security

Get the week's most relevant defense documents

Subscribe to our free newsletter to receive curated OSINT reports, analysis, and strategic updates directly in your inbox.

Join the briefing Subscribe