The Cyber Success Vector™: Building Mission-Ready Cyber Talent for Life-Critical and Defense Systems

October, 2025

Abstract

Cybersecurity mandates across defense, aerospace, and life-critical systems are growing in urgency and complexity. Whether facing CMMC compliance, Agile integration, or zero-failure system demands, organizations increasingly depend on more than just secure code — they need people who are capable, aligned, and ready for what’s next.

This talk introduces the Cyber Success Vector™, a leadership and workforce development model designed to grow mission-ready cyber professionals. Fully compatible with the DoD Cyber Workforce Framework (DCWF), this model enables organizations to:

  • Build and sustain DCWF-aligned competencies across diverse roles
  • Integrate cyber readiness into Agile and DevSecOps environments
  • Align people capabilities with mission risk and system assurance needs
  • Develop leadership at every level—from practitioners to program managers
  • Prepare not only today’s workforce, but also shape the future force in cybersecurity

Attendees will walk away with actionable tools to assess, grow, and retain cyber talent in high-stakes environments — where operational resilience and human readiness are critical to mission success.

About the Presenter 

Doug Gray is a cybersecurity and strategic risk leader with over 20 years of experience spanning federal civilian, defense, intelligence, and commercial sectors. His career has focused on advancing operational resilience, maturing cybersecurity governance, and leading high-impact teams through transformational change.

Doug began his cyber journey as a senior Army officer, leading the 10th Mountain Division’s cybersecurity operations during combat and later guiding the U.S. Army Command and Control Support Agency to runner-up for the NSA’s prestigious Rowlett Award for organizational excellence in cybersecurity. These experiences laid the foundation for a career built on mission alignment, innovation, and measurable outcomes.

Since transitioning from uniformed service, Doug has held executive roles in government and industry, serving as a senior cybersecurity leader for a financial regulator, leading information assurance for the U.S. Senate, and managing global cybersecurity and ITSM efforts for a member of the Intelligence Community. He has developed enterprise risk programs, modernized ITSM platforms, and created frameworks such as the Software Engineering Institute, Carnegie Mellon University’s Intelligence Preparation for Operational Resilience (IPOR). His credentials include the CISSP-ISSMP, CRISC, and the CISO certificate from the National Defense University.

Doug is the creator of the Cyber Success Vector™, a comprehensive leadership and workforce development model that aligns cyber talent with mission-critical needs, fostering the skills, resilience, and leadership required to succeed in high-stakes environments.

Past Presentations

Accelerating DSE: Driving Adoption and Transition at NAVAIR/NAWCWD

The August 2026 Tech Talk was presented by Jennifer Ambrecht and Wendy ChangAbstractWhile the engineering community is increasingly familiar with what Digital Systems Engineering (DSE) is, the true challenge often lies in execution, adoption, and cultural shift. This...

Why Battle-Tested Software Engineering Still Matters in the Age of AI

The June 2026 Tech Talk was presented by Mario BenitezAbstractWhile use of AI in developing and maintaining software is increasing globally, this use is relatively new, and proven practices for using AI effectively are still emerging. There are different ways to use...

The SEA Data Warehouse

The April 2026 Tech Talk announced the availability of the SEA Data WarehouseAbstractThe Data Warehouse Working Group was initiated in September 2022, with the purpose of advancing the state of the practice and the art of software engineering by providing a source of...

Agentic Coding: The Earthquake That Topples the Software Factory

The March 2026 Tech Talk was presented by Larry MaccheroneAbstractThe tectonic plates beneath software development are shifting. They are moving too fast to predict what the landscape will look like when the earthquake hits. Still, we are sure that the coming...

Why Program Increment Estimates Miss: Hidden Variables for Planning

The February 2026 Tech Talk was presented by Dr. Bill Nichols and Dr. Tapajit Dey AbstractWhat is a credible range of dates for when the work in a product increment might finish? Software development work includes many sources of uncertainty, including the size of the...

Lessons from Using LLMs to Check Software Security

The January 2026 Tech Talk was presented by Dr. Mark ShermanAbstractLarge language models (LLMs) like ChatGPT are transforming the landscape of software development and evaluation, although claims of AI replacing programmers are often overstated. This session delves...

Process Isn’t a Four-Letter Word

The November 2025 Tech Talk was presented by David TumaAbstractAgile methods emerged as a direct rebellion against the heavyweight processes of the 1990s. And the Team Software Process (TSP) did too, by brilliantly reimagining process in a lightweight, agile way that...

Agile Strategy: Onward and Upward

The September 2025 Tech Talk was presented by Linda Parker GatesAbstractThis talk describes the application of Agile principles to strategic planning. It explores how applying balanced Agile values — such as prioritizing individuals and interactions, delivering...

Engineering of Complex Systems at NAVAIR: We Must Do More With Less!

The June 2025 tech talk was presented by Jeff SchwalbAbstractAt NAVAIR, we are experiencing a dwindling engineering workforce at the same time that we are trying to meet increasing demands for support to our warfighters. We have a combination of efforts uplifting the...

Victims vs. Victors: Navigating Career Uncertainty with Resilience

The May 2025 tech talk was presented by David VanEppsAbstractSetbacks are inevitable. Travel freezes, budget cuts, hiring slowdowns, layoffs — challenges like these can shake our sense of stability. While we can’t always control what happens, we can control how we...

Applying STPA to Improve Safety and Reliability of AI-Enabled Systems

The April 2025 tech talk was presented by Timothy DavisonAbstractThis talk explores the application of System-Theoretic Process Analysis (STPA) to enhance the safety and reliability of AI-enabled systems. STPA provides a structured and scalable approach to identifying...

Drive Improved Holistic Business Results with Lean/Agile Practices

The February 2025 tech talk was presented by Fred KoosAbstractAgile practices have roots in Lean Thinking and the Toyota Production System. These are holistic approaches to improve business results. As the word “Agile” was coined in 2001, the applications were...

Clarify Your Acceptance Criteria with GIVEN-WHEN-THEN

The January 2025 tech talk was presented by Matt McConnellAbstractGherkin, also known as GIVEN-WHEN-THEN, is an effective method for writing Acceptance Criteria at many levels in software development. It treats the software as a black box, focusing on the inputs,...

A Powerfully Simple Planning Framework

The December 2024 tech talk was presented by Dr. Brad HodginsAbstractUsing this very effective five-step approach, teams and individuals can create a detailed plan that will enable them to track their progress as they execute that plan. Organizations run on schedules...

Share This