Jared Serbu writes DISA also plans to open the National Background Investigation System’s source code to the general public in a push to attract white-hat hackers that can help address security bugs.
“Weâve identified a couple of programs within DISA where as soon as the software development is done, weâll publish the source code and weâll do a bug bounty on that,” said Maj. Gen. Sarah Zabel, DISA vice director.
DISA will utilize indefinite-delivery/indefinite-quantity contracts the Defense Department issued as part of the Hack the Pentagon program such as an IDIQ in which hackers will offer managed services and hunt for potential vulnerabilities in agencies’ networks.