Developer docs
API playgroundTry for free, no card

Search company profiles

Institute for Security and Technology

Full company profile

uuid0002m4j

Namestring
Institute for Security and Technology
Legal namestring
Institute for Security and Technology
Company typeenum
Private
Founded yearint
2020
Short descriptiontext

The Institute for Security and Technology (IST) is a 501(c)(3) critical action think tank that convenes policymakers, technology companies, and researchers to produce policy recommendations on AI security, ransomware, critical infrastructure, and nuclear stability.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
11–50
akta.pro rankint
HeadquartersSan Francisco, United States
HQ citystring
San Francisco
HQ countrystring
United States
HQ regionstring
North America
Markets served

Serves global market

Offices1 record

Each record includes

City, Country, Type, Description, Source

Keyword5 values
cybersecurity policy research, AI safety governance, critical infrastructure protection, ransomware mitigation, nuclear command security
Industry3 codes
1Think Tanks, Policy Research & Public Policy Institutes
CodeBPAGAFAOPrimaryYes
2Cyber Defense & Information Security (National Security)
CodeBPAIAHAEPrimaryNo
3Education Policy Research Institutes & Think Tanks
CodeEDADADAAPrimaryNo
NAICS code3 codes
  • National Security928110
  • National Security and International Affairs9281
  • International Affairs92812
SIC code2 codes
  • Services-Engineering, Accounting, Research, Management8700
  • International Affairs9721
Product category
Policy Research and Advocacy
GTM motion2 records

Each record includes

Type, Description, Source

Revenue model3 records
1Foundation and Grant Funding
TypeGrants Donations
Description

IST is a 501(c)(3) nonprofit organization supported by foundations and organizations. Major supporters include Craig Newmark Philanthropies, Patrick J. McGovern Foundation, Longview Philanthropy, Future of Life Institute, Hewlett Foundation, Mastercard, Coefficient, Foreign Commonwealth and Development Office, and others. Funding supports specific initiatives and programs.

securityandtechnology.org
2Event Sponsorships
TypeGrants Donations
Description

Revenue generated from event sponsorships including the Cyber Policy Awards (sponsored at Platinum, Gold, Silver, Bronze levels) and Critical Effect conference. Sponsors include Microsoft, Cloudflare, Halcyon, Cape, and others.

securityandtechnology.org
3Individual Donations
TypeGrants Donations
Description

Individual donations from supporters who contribute to advancing IST's mission of national security through technology built on trust.

securityandtechnology.org
Marketing channels6 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels4 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components4 values
Personnel, Operations, Marketing or Sales, Others
GTM typeB2B
B2B
Offering typeServices
Services
Brand1 of 10 records shown
1Ransomware Task Force (RTF)
Description

A multistakeholder effort to identify and advance recommendations to reduce the risk of ransomware, with participation from across government, industry, and civil society

securityandtechnology.org
+9 more records
Core offering1 text field

The Institute for Security and Technology is a 501(c)(3) critical action think tank that produces policy research, frameworks, and recommendations at the intersection of technology and security. Its core offerings include multistakeholder convening services, policy initiatives on AI security, ransomware, critical infrastructure, and nuclear stability, as well as public events such as the Cyber Policy Awards and Critical Effect Conference. The organization provides these outputs at no cost to advance public good and national security objectives.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 4 values shown
  • Ransomware Task Force framework published days before Colonial Pipeline attack, establishing foundational guidance for combating ransomware
+3 more records
Product overview1 text field

The Institute for Security and Technology is a 501(c)(3) critical action think tank that operates a portfolio of interconnected initiatives addressing technology and security challenges. Rather than a single product, IST offers multiple core initiatives focused on AI security (AI Risk Reduction Initiative, AI and NC3, AI Antitrust and National Security, AI Chip Export Control Initiative, AI Risk Barometer, SL5 Task Force), critical infrastructure resilience (UnDisruptable27, Energy FIRST), cybersecurity (Ransomware Task Force, K-12 Cyber Defense Coalition), and global stability (CATALINK, Religious Voices and Responsible AI). These initiatives produce policy frameworks (AIBOM, AI Loss of Control Risk Framework), toolkits (Blueprint for Ransomware Defense), reporting standards (Cyber Incident Reporting Framework), and convene stakeholders through programs (Cyber Policy Awards) and events (Critical Effect Conference). The organization unites policymakers, technology experts, and industry leaders to translate discourse into impact for national security and global stability.

Product and service16 records
1AI and NC3 Initiative
CategoryAI and nuclear security policy
2AI Risk Reduction Initiative
CategoryAI policy and governance
3AI Chip Export Control Initiative
CategoryAI policy and trade controls
4Ransomware Task Force (RTF)
CategoryCybersecurity policy
5UnDisruptable27
CategoryCritical infrastructure resilience
6Energy FIRST Initiative
CategoryEnergy security policy
7CATALINK
CategoryCrisis communications and global stability
8SL5 Task Force
CategoryAI security standards
9Religious Voices and Responsible AI
CategoryAI ethics and societal engagement
10K-12 Cyber Defense Coalition
CategoryK-12 cybersecurity
11Blueprint for Ransomware Defense
CategoryCybersecurity toolkit
12Cyber Incident Reporting Framework
CategoryCyber incident reporting standard
13AI Bills of Materials (AIBOM) Framework
CategoryAI transparency policy framework
14AI Loss of Control Risk Framework
CategoryAI risk assessment framework
15AI Risk Barometer
CategoryAI futures research survey
16Cyber Policy Awards
CategoryCybersecurity policy recognition program
Scale indicator7 records

Each record includes

Type, Value, Description, Source

Partnership7 partners
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-17
Description

ICS Village is the presenting host of Critical Effect 2026 conference in partnership with IST's UnDisruptable27 project and Akin. ICS Village is a 501(c)(3) nonprofit equipping industry experts and policymakers with tools and trained workforce to defend critical infrastructure.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-17
Description

Akin is a partner in presenting Critical Effect 2026 conference alongside ICS Village and IST's UnDisruptable27 project. Akin DC hosted the venue at 2001 K Street NW, Washington DC.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2025-10-30
Description

IST partnered with AI and Faith to launch the Religious Voices and Responsible AI initiative, engaging religious communities on safe and beneficial AI development. The partnership works with evangelical churches and mosques to explore ethical implications of AI.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2025-10-14
Description

Future of Life Institute partnered with IST on the AI Risk Barometer project, which measures national security professionals' perceptions of AI futures through technically-informed surveys to elucidate AGI/ASI capability thresholds, potential benefits and harms, and governance approaches.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2025-06-15
Description

Global Cyber Alliance is part of the 7-member secretariat coordinating the Common Good Cyber Fund, a $50 million yearly budget initiative to support nonprofits protecting the internet.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2025-06-15
Description

CyberPeace Institute is part of the 7-member secretariat coordinating the Common Good Cyber Fund, supporting nonprofits protecting the internet with a $50 million yearly budget target.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2025-06-15
Description

Shadowserver Foundation is part of the 7-member secretariat coordinating the Common Good Cyber Fund, working with Global Cyber Alliance and CyberPeace Institute on nonprofit cybersecurity support.

Recent move6 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight6 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

Major bipartisan national security and technology policy think tank headquartered in Washington, DC. Directly comparable to IST as a peer institution producing reports, convening experts, and shaping U.S. cybersecurity and technology policy.

TypeDirect peer
Description

International affairs think tank with significant programs on cyber policy, technology, and national security, including the GeoTech Center and Cyber Statecraft Initiative. Highly comparable to IST's work on AI, cybersecurity, and international engagement.

TypeDirect peer
Description

Established policy research organization producing rigorous analysis on national security, technology, and cybersecurity. Operates a similar nonprofit think-tank model with a focus on research and convening to inform policy.

TypeDirect peer
Description

Global think tank with programs on technology, nuclear policy, and international security. Comparable to IST in combining policy research with convening on emerging technology risks and great-power competition.

TypeDirect peer
Description

Major public policy research organization with active programs on AI policy, cybersecurity, and national security. Comparable to IST in producing influential policy outputs and convening multistakeholder discussions.

TypeDirect peer
Description

Nonpartisan policy and leadership studies organization with a cybersecurity-focused program (Aspen Cyber Group). Similar to IST in hosting working groups and producing policy recommendations on cybersecurity and technology.

TypeDirect peer
Description

Nonprofit organization focused on reducing cyber risk through practical tools and global partnerships. Directly comparable as a fellow 501(c)(3) working on cybersecurity capacity-building, and an actual IST partner on the Common Good Cyber Fund.

TypeDirect peer
Description

Policy institute focused on national security and foreign policy, with growing work on technology and AI policy. Comparable to IST in producing policy research and convening experts on U.S. national security priorities.

TypeDirect peer
Description

Center-right think tank with active programs on cybersecurity and technology policy. Comparable to IST in addressing emerging technology risks through policy research and multistakeholder engagement.

TypeDirect peer
Description

Policy research organization with work on national security, technology, and great-power competition. Comparable to IST in producing policy outputs on AI, cyber, and critical infrastructure security for U.S. policymakers.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses5 records

Each record includes

Headline, Details, Source

Competitive moat6 records

Each record includes

Type, Details

Key risks5 records

Each record includes

Headline, Details, Source

Key highlights6 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Segment5 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile3 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
No
API detail
Has APIbool
No

Docs URL, Description

AI capability2 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles19 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

No data
No data
Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds2 records

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors2 records

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Institute for Security and Technology

Policy Research and Advocacysecurityandtechnology.org

The Institute for Security and Technology (IST) is a 501(c)(3) critical action think tank that convenes policymakers, technology companies, and researchers to produce policy recommendations on AI security, ransomware, critical infrastructure, and nuclear stability.

Institute for Security and Technology firmographics

Firmographics
Name
Institute for Security and Technology
Legal name
Institute for Security and Technology
Website
https://securityandtechnology.org
Company type
Private
Founded year
2020
Operating status
Operating
Headcount range
11–50 employees
Short description
The Institute for Security and Technology (IST) is a 501(c)(3) critical action think tank that convenes policymakers, technology companies, and researchers to produce policy recommendations on AI security, ransomware, critical infrastructure, and nuclear stability.
Ownership category
akta.pro rank

Institute for Security and Technology industry classification

Industry
Product category
Policy Research and Advocacy
NAICS
National Security (928110), National Security and International Affairs (9281), International Affairs (92812)
SIC
Services-Engineering, Accounting, Research, Management (8700), International Affairs (9721)
akta.pro primary industry
Think Tanks, Policy Research & Public Policy Institutes (BPAGAFAO)
akta.pro secondary industries
Cyber Defense & Information Security (National Security) (BPAIAHAE), Education Policy Research Institutes & Think Tanks (EDADADAA)

Keywords

  • Cybersecurity policy research
  • AI safety governance
  • Critical infrastructure protection
  • Ransomware mitigation
  • Nuclear command security

Where Institute for Security and Technology is headquartered

Location

Headquarters

HQ city
San Francisco
HQ country
United States
HQ region
North America

Offices1 record

Markets served

Institute for Security and Technology business model

Business model
GTM type
B2B
Offering type
Services
Cost components
Personnel, Operations, Marketing or Sales, Others

Revenue model

  1. Foundation and Grant Funding: IST is a 501(c)(3) nonprofit organization supported by foundations and organizations. Major supporters include Craig Newmark Philanthropies, Patrick J. McGovern Foundation, Longview Philanthropy, Future of Life Institute, Hewlett Foundation, Mastercard, Coefficient, Foreign Commonwealth and Development Office, and others. Funding supports specific initiatives and programs.
  2. Event Sponsorships: Revenue generated from event sponsorships including the Cyber Policy Awards (sponsored at Platinum, Gold, Silver, Bronze levels) and Critical Effect conference. Sponsors include Microsoft, Cloudflare, Halcyon, Cape, and others.
  3. Individual Donations: Individual donations from supporters who contribute to advancing IST's mission of national security through technology built on trust.

Go-to-market motion2 records

Distribution channels4 records

Marketing channels6 records

Institute for Security and Technology product offering

Product offering

Core offering

The Institute for Security and Technology is a 501(c)(3) critical action think tank that produces policy research, frameworks, and recommendations at the intersection of technology and security. Its core offerings include multistakeholder convening services, policy initiatives on AI security, ransomware, critical infrastructure, and nuclear stability, as well as public events such as the Cyber Policy Awards and Critical Effect Conference. The organization provides these outputs at no cost to advance public good and national security objectives.

Product overview

The Institute for Security and Technology is a 501(c)(3) critical action think tank that operates a portfolio of interconnected initiatives addressing technology and security challenges. Rather than a single product, IST offers multiple core initiatives focused on AI security (AI Risk Reduction Initiative, AI and NC3, AI Antitrust and National Security, AI Chip Export Control Initiative, AI Risk Barometer, SL5 Task Force), critical infrastructure resilience (UnDisruptable27, Energy FIRST), cybersecurity (Ransomware Task Force, K-12 Cyber Defense Coalition), and global stability (CATALINK, Religious Voices and Responsible AI). These initiatives produce policy frameworks (AIBOM, AI Loss of Control Risk Framework), toolkits (Blueprint for Ransomware Defense), reporting standards (Cyber Incident Reporting Framework), and convene stakeholders through programs (Cyber Policy Awards) and events (Critical Effect Conference). The organization unites policymakers, technology experts, and industry leaders to translate discourse into impact for national security and global stability.

Differentiator

Problem solved

Functional benefit

Brands

  • Ransomware Task Force (RTF): A multistakeholder effort to identify and advance recommendations to reduce the risk of ransomware, with participation from across government, industry, and civil society
  • AI and NC3 Initiative
  • AI Risk Reduction Initiative
  • AI Chip Export Control Initiative
  • AI Risk Barometer
  • CATALINK
  • Energy FIRST
  • SL5 Task Force
  • Religious Voices and Responsible AI
  • UnDisruptable27

Products and services

  • AI and NC3 Initiative
  • AI Risk Reduction Initiative
  • AI Chip Export Control Initiative
  • Ransomware Task Force (RTF)
  • UnDisruptable27
  • Energy FIRST Initiative
  • CATALINK
  • SL5 Task Force
  • Religious Voices and Responsible AI
  • K-12 Cyber Defense Coalition
  • Blueprint for Ransomware Defense
  • Cyber Incident Reporting Framework
  • AI Bills of Materials (AIBOM) Framework
  • AI Loss of Control Risk Framework
  • AI Risk Barometer
  • Cyber Policy Awards

Quantifiable outcome

  • Ransomware Task Force framework published days before Colonial Pipeline attack, establishing foundational guidance for combating ransomware
  • +3 more outcomes

Companies that use Institute for Security and Technology

Customer profile

Segments5 records

Ideal customer profiles3 records

Institute for Security and Technology technology and API

Technology

Technology focussed No

API detail

Has API
No
API docs
API detail

Core technology

AI maturity

App detail

AI capability2 records

Institute for Security and Technology partnerships and signals

Strategic signal

Partnerships

Seven partnerships are on record, tiered core.

  • ICS VillagecoreStrategic or Co-development Partner · 17 June 2026ICS Village is the presenting host of Critical Effect 2026 conference in partnership with IST's UnDisruptable27 project and Akin. ICS Village is a 501(c)(3) nonprofit equipping industry experts and policymakers with tools and trained workforce to defend critical infrastructure.
  • AkincoreStrategic or Co-development Partner · 17 June 2026Akin is a partner in presenting Critical Effect 2026 conference alongside ICS Village and IST's UnDisruptable27 project. Akin DC hosted the venue at 2001 K Street NW, Washington DC.
  • AI and FaithcoreStrategic or Co-development Partner · 30 October 2025IST partnered with AI and Faith to launch the Religious Voices and Responsible AI initiative, engaging religious communities on safe and beneficial AI development. The partnership works with evangelical churches and mosques to explore ethical implications of AI.
  • Future of Life InstitutecoreStrategic or Co-development Partner · 14 October 2025Future of Life Institute partnered with IST on the AI Risk Barometer project, which measures national security professionals' perceptions of AI futures through technically-informed surveys to elucidate AGI/ASI capability thresholds, potential benefits and harms, and governance approaches.
  • Global Cyber AlliancecoreStrategic or Co-development Partner · 15 June 2025Global Cyber Alliance is part of the 7-member secretariat coordinating the Common Good Cyber Fund, a $50 million yearly budget initiative to support nonprofits protecting the internet.
  • CyberPeace InstitutecoreStrategic or Co-development Partner · 15 June 2025CyberPeace Institute is part of the 7-member secretariat coordinating the Common Good Cyber Fund, supporting nonprofits protecting the internet with a $50 million yearly budget target.
  • Shadowserver FoundationcoreStrategic or Co-development Partner · 15 June 2025Shadowserver Foundation is part of the 7-member secretariat coordinating the Common Good Cyber Fund, working with Global Cyber Alliance and CyberPeace Institute on nonprofit cybersecurity support.

Scale indicators7 records

Recent moves6 records

Expansion highlights6 records

Institute for Security and Technology competitors and assessment

Company assessment

Direct peers

  • Center for Strategic and International Studies (CSIS): Major bipartisan national security and technology policy think tank headquartered in Washington, DC. Directly comparable to IST as a peer institution producing reports, convening experts, and shaping U.S. cybersecurity and technology policy.
  • Atlantic Council: International affairs think tank with significant programs on cyber policy, technology, and national security, including the GeoTech Center and Cyber Statecraft Initiative. Highly comparable to IST's work on AI, cybersecurity, and international engagement.
  • RAND Corporation: Established policy research organization producing rigorous analysis on national security, technology, and cybersecurity. Operates a similar nonprofit think-tank model with a focus on research and convening to inform policy.
  • Carnegie Endowment for International Peace: Global think tank with programs on technology, nuclear policy, and international security. Comparable to IST in combining policy research with convening on emerging technology risks and great-power competition.
  • Brookings Institution: Major public policy research organization with active programs on AI policy, cybersecurity, and national security. Comparable to IST in producing influential policy outputs and convening multistakeholder discussions.
  • Aspen Institute: Nonpartisan policy and leadership studies organization with a cybersecurity-focused program (Aspen Cyber Group). Similar to IST in hosting working groups and producing policy recommendations on cybersecurity and technology.
  • Global Cyber Alliance: Nonprofit organization focused on reducing cyber risk through practical tools and global partnerships. Directly comparable as a fellow 501(c)(3) working on cybersecurity capacity-building, and an actual IST partner on the Common Good Cyber Fund.
  • Foundation for Defense of Democracies (FDD): Policy institute focused on national security and foreign policy, with growing work on technology and AI policy. Comparable to IST in producing policy research and convening experts on U.S. national security priorities.
  • R Street Institute: Center-right think tank with active programs on cybersecurity and technology policy. Comparable to IST in addressing emerging technology risks through policy research and multistakeholder engagement.
  • Hudson Institute: Policy research organization with work on national security, technology, and great-power competition. Comparable to IST in producing policy outputs on AI, cyber, and critical infrastructure security for U.S. policymakers.

Market position

Strengths5 records

Weaknesses5 records

Competitive moat6 records

Key risks5 records

Key highlights6 records

Customer concentration

Institute for Security and Technology social profiles

Digital presence

Institute for Security and Technology financial estimates

Financial estimate

Revenue estimate

Valuation estimate

Institute for Security and Technology leadership team

Management profile

Number of profiles

Profiles19 records

Institute for Security and Technology funding detail

Funding detail

Funding overview

Funding rounds2 records

Investors2 records

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

Institute for Security and Technology M&A and investment

M&A and investment

M&A

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about Institute for Security and Technology

What does Institute for Security and Technology do?

The Institute for Security and Technology is a 501(c)(3) critical action think tank that produces policy research, frameworks, and recommendations at the intersection of technology and security. Its core offerings include multistakeholder convening services, policy initiatives on AI security, ransomware, critical infrastructure, and nuclear stability, as well as public events such as the Cyber Policy Awards and Critical Effect Conference. The organization provides these outputs at no cost to advance public good and national security objectives.

Is Institute for Security and Technology a public or private company?

Institute for Security and Technology is a private company. It is classified as nonprofit foundation owned and is currently operating.

When was Institute for Security and Technology founded?

Institute for Security and Technology was founded in 2020. It employs 11 to 50 people.

Where is Institute for Security and Technology based?

Institute for Security and Technology is headquartered in San Francisco, United States, in the North America region.

How does Institute for Security and Technology make money?

Three revenue lines are on record. Foundation and Grant Funding is the primary driver. The others are event Sponsorships and individual Donations.

Who are Institute for Security and Technology's main competitors?

Direct peers on record are Center for Strategic and International Studies (CSIS), Atlantic Council, RAND Corporation, Carnegie Endowment for International Peace, Brookings Institution, Aspen Institute, Global Cyber Alliance, Foundation for Defense of Democracies (FDD), R Street Institute and Hudson Institute.

Does Institute for Security and Technology have an API?

No public API is recorded for Institute for Security and Technology.

What industry is Institute for Security and Technology in?

Institute for Security and Technology's product category is Policy Research and Advocacy. Its primary akta.pro industry code is BPAGAFAO, Think Tanks, Policy Research & Public Policy Institutes, with a secondary code of BPAIAHAE, Cyber Defense & Information Security (National Security). Its NAICS code is 928110 and its SIC code is 8700.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
WebProNewsSecurity Experts Warn of AI Loss of Control as National Risks MountSecurity experts surveyed by the Institute for Security and Technology and Future of Life Institute estimate a one-in-three chance of losing control over advanced AI within a decade. Ninety-three percent had worked on AI policy, and 61% said AI-related catastrophe risk is high enough to hesitate on U.S. leadership. Recent incidents, including Anthropic's cyber-espionage and OpenAI's model breaches, underscore the gap between perceived danger and operational readiness.Federal News NetworkPolicymakers struggle to factor cybersecurity into federal funding programsThe Institute for Security and Technology published a policy memo urging Congress and the Trump administration to make cybersecurity a mandatory factor in federal grants and infrastructure funding programs. The report highlights that despite billions in spending on infrastructure—including the $1.2 trillion Bipartisan Infrastructure Law—agencies have largely failed to implement and enforce meaningful cybersecurity requirements, leaving power grids, water utilities, and other critical systems vulnerable. The memo notes that foreign hackers, notably the China-connected group 'Volt Typhoon,' have infiltrated U.S. critical infrastructure, and offers policy options including agency-specific cyber requirements, mandatory plans with audit provisions, and cybersecurity set-asides for federally funded programs.CyberScoopA case for how to shape ‘ingredient lists’ for AI modelsThe Institute for Security and Technology published a policy paper on Tuesday advocating for AI Bills of Materials (AIBOMs) as a transparency and security mechanism for AI systems, modeled on software bills of materials (SBOMs) standards. The paper provides a roadmap for policymakers, lawmakers, and federal agencies on implementing AIBOMs, addressing the chicken-and-egg problem where neither supply nor demand for AIBOM data currently exists without the other. Co-authored by Allan Friedman and Nick Leiserson, the paper suggests both supply-side data capture requirements and demand-side forcing functions such as industry mandates or government contracting conditions.Dark ReadingBlame Game: Why Public Cyber Attribution Carries RisksA panel at RSAC 2026 Conference in San Francisco brought together cybersecurity experts from FTI Consulting, the Institute for Security and Technology, and Cooley LLP to discuss the risks of public attribution of cyberattacks, with panelists agreeing that attribution is inherently probabilistic rather than definitive. The discussion highlighted consequences of premature attribution including potential insurance claim denials (citing NotPetya cases), narrative shifts that can extend the lifespan of breach stories, and blowback from named entities, while also noting risks of non-attribution such as signaling acceptance of malicious behavior. Experts disagreed on response strategies, with some recommending a 'no comment' approach while others argued organizations should fill information gaps rather than leave narratives to others.EIN PresswireThe Institute for Security and Technology Announces the Winners of the Third Annual Cyber Policy Awards™The Institute for Security and Technology announced the winners of its Third Annual Cyber Policy Awards at a gala at the National Press Club in Washington, DC, on February 6, 2026. Seven individuals and organizations received the Atlas trophy for contributions to cyber policy in 2025, spanning categories including U.S. Domestic Policy Impact, International Policy Impact, Research Impact, and Excellence in Journalism. Senator Gary Peters delivered a keynote address and received the Congressional Cyber Leadership Award, while over 250 leaders from public sector, industry, academia, and civil society attended the event.PR NewswireThe Institute for Security and Technology Announces Finalists for the Third Annual Cyber Policy Awards™The Institute for Security and Technology announced 23 finalists for the third annual Cyber Policy Awards, selected from 85 submissions by an independent panel of judges. The winners will be revealed at a gala on February 5, 2026, at the National Press Club in Washington, DC. The awards recognize excellence in cybersecurity policy, leadership, diplomacy, research, and journalism across U.S. domestic and international categories.SecurityandtechnologyAutonomous Agents, Human Consequences: Key Insights from IST’s Workshop on AI Agents & Agency in the Internet EcosystemThe Institute for Security and Technology (IST) hosted a closed-door workshop in Washington, D.C. to discuss the implications of autonomous AI agents on human agency. Key issues addressed included identity, attribution, agency, responsibility, and security risks associated with increasing autonomy in AI systems. The workshop aimed to establish a baseline for governance and safeguards in an evolving digital landscape.SecurityandtechnologyAI Risk Reduction InitiativeThe Institute for Security and Technology, supported by the Patrick J. McGovern Foundation, is engaging stakeholders across the AI ecosystem to address emerging risks in AI foundation models and develop risk reduction strategies. The article outlines key governance challenges including ambiguous safety definitions, rapid development pace, interpretability problems, and liability issues with AI agents. It warns that without proper safeguards, public trust in AI could erode and industry practices could prioritize speed over safety, affecting innovation beyond the AI sector.PR NewswireVoices for a World Free of Nuclear Weapons, Announces Sahil Shah as Winner of the 2021 Gorbachev/Shultz, Voices Youth AwardVoices for a World Free of Nuclear Weapons selected Sahil Shah as the 2021 Gorbachev/Shultz, Voices Youth Award winner to recognize his efforts in nuclear disarmament. Shah currently serves as a Policy Fellow at the European Leadership Network and has held advisory roles with organizations such as the Comprehensive Nuclear-Test-Ban Treaty Organization and the Institute for Security and Technology.