AttackIQ Hired Former DISA CTO for Federal Ops
The cybersecurity firm recruited Dave Mihelcic to lead its enterprise Adversarial Exposure Validation efforts for federal agencies.
Updated on Sept. 29, 2026 in People

Live Poll
Should federal government agencies transition from periodic cyber security audits to continuous, automated threat testing?
AttackIQ has appointed former Defense Information Systems Agency (DISA) chief technology officer Dave Mihelcic as field chief technology officer for its federal operations. He is tasked with overseeing the DISA enterprise Adversarial Exposure Validation program.
Why it matters
The hire reflects a strategic push to modernize federal cybersecurity as agencies shift defensive models to combat adversaries leveraging automation and artificial intelligence. Mihelcic will serve as the primary bridge between the company and federal leaders.
The appointment involves a single executive hire to manage the DISA enterprise Adversarial Exposure Validation platform, with no specific budget or headcount figures provided. The role functions as the primary point of integration for Defense Agencies and Combatant Commands.
The players
AttackIQ
A cybersecurity firm that provides platforms for continuous security validation and threat exposure management.
Dave Mihelcic
The former chief technology officer of the Defense Information Systems Agency now serving as field chief technology officer for AttackIQ federal operations.
Defense Information Systems Agency
A combat support agency of the U.S. Department of Defense that provides, operates, and assures command and control and information-sharing capabilities.
The details
Mihelcic is responsible for translating complex mission requirements into operational Continuous Threat Exposure Management (CTEM) programs across the defense sector. He will coordinate directly with Military Services and Defense Agencies to drive the deployment and broader adoption of AttackIQ's validation platform. His role is specifically designed to align federal cybersecurity infrastructure with modern, automated defense requirements.
Timeline
September 22, 2026: AttackIQ announced the appointment of Dave Mihelcic.
Market Landscape
This move signals an intensifying push by private-sector vendors to align their technology stacks with federal cybersecurity mandates. It follows the wider industry transition toward Continuous Threat Exposure Management (CTEM) frameworks as the standard for evaluating defensive readiness.
Operators in the government contracting space should monitor how this appointment affects the interoperability of federal cybersecurity platforms. Businesses in the sector should evaluate whether their own defensive models rely on the same automated threat validation standards now being driven by DISA.
The takeaway
The addition of a former high-level defense official to a private firm underscores the premium placed on deep institutional knowledge within federal sales. Contractors should watch for new operational requirements stemming from the DISA enterprise Adversarial Exposure Validation program.
Further reading
For broader insight into executive shifts, explore the People section.
Source note: This article includes information reported by Intelligence Community News.
Live Poll
Should federal government agencies transition from periodic cyber security audits to continuous, automated threat testing?










