01 / Cybersecurity & Cryptography
CAM
Continuous Cyber Assurance for Complex Environments
Compliance snapshots go stale the moment they are produced.
Security evidence lives everywhere: scanners, configuration baselines, STIG results, RMF artifacts, ticketing systems. Assessments assemble that evidence into a snapshot, and the snapshot starts decaying immediately.
CAM is a research and development effort toward a different model. Instead of asserting posture on a dashboard, it aims to make posture independently verifiable: evidence from sources such as ACAS and Nessus, SCAP, STIG results, and configuration data is correlated against frameworks including NIST SP 800-53, NIST SP 800-171, and CMMC, so that every control claim traces to the technical evidence behind it.
The concepts under development target environments where connectivity is a constraint: portable signed evidence manifests, deterministic offline verification, and edge-to-governance synchronization that keeps disconnected and hybrid environments inside the same assurance model.
Working on problems CAM addresses?
We collaborate with government organizations, research institutions, and technology partners. Tell us what you are trying to solve.