The Planetary Defense Model
The Planetary Defense Model (PDM) is CDA's unified framework for cybersecurity. Think of it as a planet with six layers, each defending a critical aspect of your organization.
DPS: Data Protection and Sovereignty (innermost layer, Geology metaphor, color: blue) Your data is the core of your planet. DPS covers data classification, encryption, privacy engineering, and sovereignty. Methodology: Sovereign Data Protocol (SDP).
VSD: Vulnerability and Surface Defense (Oceans metaphor, color: cyan) The surface where attackers probe. VSD covers attack surface management, vulnerability scanning, patch management, and surface reduction. Methodology: Continuous Surface Reduction (CSR).
SPH: Security Posture and Hygiene (Terrain metaphor, color: green) The daily operations that keep defenses healthy. SPH covers configuration management, baseline enforcement, drift detection, and automated remediation. Methodology: Autonomous Posture Command (APC).
IAT: Identity Access and Trust (Civilization metaphor, color: purple) Who gets in and what they can touch. IAT covers identity management, access control, zero trust, and privilege management. Methodology: Zero Possession Architecture (ZPA).
TID: Threat Intelligence and Defense (Atmosphere metaphor, color: red) What is coming and how to prepare. TID covers threat feeds, hunting, detection engineering, and incident response. Methodology: Predictive Defense Intelligence (PDI).
RGA: Risk Governance and Assurance (Outer Space metaphor, color: amber) Strategic oversight and compliance. RGA covers risk assessment, policy management, audit preparation, and continuous compliance. Methodology: Perpetual Compliance Assurance (PCA).
Everything in CDA maps to the PDM: missions, certifications, scans, ratings, and courses. When you see a domain code like "DPS" or "TID", it refers to one of these six layers.