FY2021 FEDERAL CYBERSECURITY R&D STRATEGIC PLAN IMPLEMENTATION ROADMAP This document provides FY2021 implementation plans for the 2019 Federal Cybersecurity Research and Development Strategic Plan (Plan), 1 developed by the Networking and Information Technology Research and Development (NITRD) Program’s Cyber Security and Information Assurance (CSIA) Interagency Working Group (IWG). This Strategic Plan Implementation Roadmap is provided per statutory requirement for public provision of this information pursuant to the Cybersecurity Enhancement Act of 2014, Public Law 113-274, Section 201(a)(2)(D), Implementation Roadmap, and under direction from the NITRD Subcommittee of the National Science and Technology Council Committee on Science and Technology Enterprise. This document accompanies the NITRD Supplement to the President’s FY2021 Budget. 2 In the NITRD budget supplement, agencies participating in the CSIA IWG report their research and development (R&D) programs in the Cybersecurity and Privacy Program Component Area in alignment with the research objectives of the Plan. The programs listed in the roadmap Table 1 (pp. 3–7) may address one or more of the following Defensive Elements from the Plan: • Deter: The ability to efficiently discourage malicious cyber activities by increasing the costs, risks, and uncertainty to adversaries and diminishing their spoils. • Protect: The ability of components, systems, users, and critical infrastructure to efficiently resist malicious cyber activities and to ensure confidentiality, integrity, availability, and accountability. • Detect: The ability to efficiently detect, and even anticipate, adversary decisions and activities, given that systems should be assumed to be vulnerable to malicious cyber activities. • Respond: The ability to dynamically react to malicious cyber activities by adapting to disruption, countering the malicious activities, recovering from damage, maintaining operations while completing restoration, and adjusting to be able to thwart similar future activities. The programs advance the following Priority Areas defined in the Plan and contribute to implementing the Administration’s vision for American leadership in the Industries of the Future (IotF): 3 • Artificial Intelligence (AI): Capabilities that enable computers and other automated systems to perform tasks that have historically required human cognition and what are typically considered human decision-making abilities. • Quantum Information Science (QIS): Capabilities that harness quantum mechanics and quantum material properties to achieve computation, information processing, communications, and sensing in ways that cannot be achieved with classical physics principles. • Trustworthy Distributed Digital Infrastructure (TDDI): Technologies that facilitate secure information communications infrastructure that enables next-generation wireless communication, distributed computing, seamless integration of telecommunication systems with cyber-physical systems, and provides the communications infrastructure for the IotF. • Privacy: Solutions that minimize privacy risks or prevent privacy violations arising from the collection and use of peoples’ private information. • Secure Hardware and Software (HW & SW): Technologies that provide and improve security properties of hardware and software components in computing and communication systems. 1 2 3 https://www.nitrd.gov/pubs/Federal-Cybersecurity-RD-Strategic-Plan-2019.pdf https://www.nitrd.gov/pubs/FY2021-NITRD-Supplement.pdf https://www.whitehouse.gov/briefings-statements/america-will-dominate-industries-future/ APPENDIX TO THE NITRD SUPPLEMENT TO THE PRESIDENT’S FY2021 BUDGET 1

Select target paragraph3