FAS

Pentagon Sets New Framework for Security Policy

10.03.12 | 2 min read | Text by Steven Aftergood

The Department of Defense this week established a new Defense Security Enterprise that is intended to unify and standardize the Department’s multiple, inconsistent security policies.

The new security framework “shall provide an integrated, risk-managed structure to guide DSE policy implementation and investment decisions, and to provide a sound basis for oversight and evolution.”

The Defense Security Enterprise, launched October 1 by DoD Directive 5200.43, is a response to the often incoherent and internally contradictory state of DoD security policy.

An Inspector General report earlier this year said that there were at least 43 distinct DoD policies on security that could not all be implemented together.

“The sheer volume of security policies that are not coordinated or integrated makes it difficult for those at the field level to ensure consistent and comprehensive policy implementation,” the DoD IG wrote.  (“DoD Security Policy is Incoherent and Unmanageable, IG Says,” Secrecy News, September 4, 2012.)

But under the new Defense Security Enterprise, “Standardized security processes shall be implemented, to the maximum extent possible and with appropriate provisions for unique missions and security environments,” the DoD directive said.

The new structure is supposed to “ensure that security policies and programs are designed and managed to improve standards of performance, economy, and efficiency.”

But the directive does not explain how to proceed if “performance, economy, and efficiency” prove to be incompatible objectives.

Nor does it provide a working definition for the crucial concept of “risk management.”  This term, often contrasted with “risk avoidance,” implies an increased tolerance for risk (i.e. risk of failure).  But the practical meaning (or the limit) of this tolerance is nowhere made explicit.

The Defense Security Enterprise will be managed by “a core of highly qualified security professionals,” the DoD directive said.

publications
See all publications
Government Capacity
Blog
Everything You Need to Know (and Ask!) About OPM’s New Schedule Policy/Career Role: Oversight Resource for OPM’s Schedule Policy/Career Rule

This rule gives agencies significantly more authority over certain career policy roles. Whether that authority improves accountability or creates new risks depends almost entirely on how agencies interrupt and apply it. 

02.13.26 | 8 min read
read more
Government Capacity
Policy Memo
Report
Rebuilding Environmental Governance: Understanding the Foundations

Our environmental system was built for 1970s-era pollution control, but today it needs stable, integrated, multi-level governance that can make tradeoffs, share and use evidence, and deliver infrastructure while demonstrating that improved trust and participation are essential to future progress.

02.12.26 | 26 min read
read more
Government Capacity
Policy Memo
Report
Costs Come First in a Reset Climate Agenda

Durable and legitimate climate action requires a government capable of clearly weighting, explaining, and managing cost tradeoffs to the widest away of audiences, which in turn requires strong technocratic competency.

02.12.26 | 41 min read
read more
Environment
Press release
FAS Launches New “Center for Regulatory Ingenuity” to Modernize American Governance, Drive Durable Climate Progress

FAS is launching the Center for Regulatory Ingenuity (CRI) to build a new, transpartisan vision of government that works – that has the capacity to achieve ambitious goals while adeptly responding to people’s basic needs.

02.12.26 | 4 min read
read more