Institute for Security and Technology
@istorg
We are the 501(c)(3) critical action think tank that unites technology and policy leaders to create solutions to emerging security challenges.
🚨 LIVE in 1 hour: IST friends and experts tackle the latest developments in AI, cybersecurity, and vulnerability management. Prep your questions, bring your hot takes, and get ready to hear some debates for the latest edition of Vulns + AI = Oh My! ➡️ Register: us02web.zoom.us/webinar/regi...
From the OpenAI breakout to Microsoft’s Patch Day surge, AI is reshaping both offense and defense across the #cybersecurity landscape. Join IST friends & experts this Friday to cut through the noise and headline hype to figure out what’s happening on the ground. 🛡️ Register now: bit.ly/3RYRPYO
In the Bay Area last week, IST's Andrew Carnegie AI-Nuclear Policy Accelerator brought together 25 of nuclear policy’s rising stars for 5 days of in-person, technical immersion trainings, discussions, and site visits to confront the intersection between AI and nuclear issues.
This week, IST convened the first meeting of the inaugural cohort of the Andrew Carnegie AI-Nuclear Policy Accelerator. Together with IST staff, the 25 cohort members gathered in the Bay Area for a week of in-person, technical immersion training, including site visits at Nvidia and @microsoft.com.
While defense contractors play a vital role in U.S. natsec, they are not authorized to directly conduct offensive cyber ops. But now, a provision in the Senate’s defense spending bill could change that. Join IST on 6/30 to break down this timely topic. 🛡️ Register: us02web.zoom.us/webinar/regi...
AI is reshaping vulnerability management, and policy debates along with it. From Anthropic’s suspension of Fable5 & Mythos to the proposal to codify the CVE program in a defense policy bill, it's a lot to unpack. Join IST friends & adjunct advisors on 7/1 to learn more. 🛡️Register: bit.ly/4ePII45
🚀 #CriticalEffectDC ended with the annual #CyberPolicySharkTank, hosted by @beauwoods.com! After Stacey Myers, John Cavanaugh & Nicholas Carroll pitched our Sharks, Nicholas took home first place for Albert for Water, a cybersecurity playbook for under-resourced water utilities. Congratulations!
🚀 AI is transforming both #cyber for both attackers and defenders. At #CriticalEffectDC, Evan Wolf & Megan Stifel sat down with Charles Carmakal & Steve Elovitz to learn the latest: “We're very positive and bullish on how well AI is going to help defend organizations," Charles said.
🚀 Moderated by IST’s Stephanie Ross, this #CriticalEffectDC panel brought together #CyberCivilDefense experts, Matt Altomare, Paul Chang, Jessica Walton & Netta Squires, to share more about their work, why it matters, and what we can do to protect our critical infrastructure systems.
🚀 #CriticalEffect DC day 2 is off to a strong start! @craignewmark.bsky.social joined us for a keynote on philanthropy’s role in #cyber, from #Take9 on Sesame Street to #UnDisruptable27. "The solution requires smart people of goodwill to work together,” he said.
🚀 “The goal here is really understanding: in a crisis, we can't afford to be asking questions.” At #CriticalEffectDC, Matt Rogers presented CI Fortify, an emergency planning and resilience effort to ensure the continued operations of our critical infrastructure systems during major cyber incidents.
🚀 At #CriticalEffectDC, @lzxdc.bsky.social makes the case for #SecurebyDesign reforms across manufacturers, integrators, and policymakers to protect our critical infrastructure: “The root cause of our infrastructure vulnerability...is a market that has never had to pay the price of security."
🚀 No water, no hospitals, no kidding. At #CriticalEffectDC, IST’s @joshcorman.bsky.social moderated a panel with Dean Ford, Mark Montgomery, Natalie Sullivan, and Chuck Weissenborn to highlight water as a cyber‑physical weak point.
🚀 At #CriticalEffectDC, NY Acting Chief Cyber Officer Michaela Lee joined a discussion with other state cyber leaders on building resilience into Target-Rich, Cyber-Poor sectors: "Unless you have tabletop exercises & conversations in advance, you aren’t able to be prepared in...a crisis."
🚀 #CriticalEffect DC has kicked off in Washington! Acting CISA Director Nick Andersen delivered a keynote address on the threats to our critical infrastructure systems: “Each and every one of us is operating right now on the front lines of a war that is never going to be declared,” he said.
🚨NEW: From #cybersecurity to #natsec, AI is now a core component of critical infrastructure. Our society & gov’s dependence makes understanding the technical DNA of AI systems crucial to risk management. Today’s memo makes the case for a shared vision of AI Bills of Materials. ❇️ Read: bit.ly/4eKMjkZ
🚀 As the U.S. spends billions to modernize our energy infrastructure, our systems remain dependent on China for the underlying "electrotech stack." At #CriticalEffectDC, this session explores how the U.S. can secure its energy future & achieve maximum strategic return. ➡️ Register: bit.ly/49n0jyo
🚀 Modern digital infrastructure is often designed to support both civilian & military users, making civilians vulnerable to disruptions during conflict. Jonathan Horowitz presents practical solutions with the goal of improving civilian protection at #CriticalEffectDC. ➡️ Register now: bit.ly/49n0jyo
How can we fight back when adversaries know our defenses? At #CriticalEffect, Andrew Krapf explores how bad actors with a strong knowledge of cyber-physical systems could manipulate systems to cause damage, create uncertainty & evade detection in an under-protected system. ➡️ Register: bit.ly/49n0jyo
🚀 Malicious actors targeting national critical infrastructure often leverage proxies of local devices. At #CriticalEffectDC, Joe Slowik analyzes the technical nature of these networks, implications for monitoring & defense, and considerations for response & mitigation. ➡️ Register: bit.ly/49n0jyo
🚀 As PRC-linked actors pre-position inside U.S. critical infrastructure, Target-Rich, Cyber-Poor sectors still lack defensive resources. This #CriticalEffectDC panel brings together senior cyber leaders to map out a strategy that focuses on both survival and resilience. ➡️ Register: bit.ly/49n0jyo
🚀 You've seen Congressional hearings on TV, in newspapers, and seen the impact of laws. But what's it like behind the scenes? In this #CriticalEffectDC session, IST’s Nick Leiserson sits down with House staffers to discuss priorities, #natsec challenges & more. ➡️ Register to attend: bit.ly/49n0jyo
🚀 Don’t miss this #CriticalEffectDC session! Journalists Paul Roberts, @snlyngaas.bsky.social, @kimzetter.bsky.social, @ericjgeller.com & @maggiemiller.bsky.social join our annual press panel to share their perspectives on the narratives surrounding digital typhoons. ➡️ Register now: bit.ly/49n0jyo
Automox’s Jason Kikta responds to the admin’s latest Executive Order on AI & cybersecurity: “discovery was never the bottleneck,” yet the EO focused on it. He joined IST’s panel of practitioners in a webinar to assess what it gets right, what it could leave exposed & more. ▶️ Watch: bit.ly/4eept3Q
🚀 The countdown to #CriticalEffectDC is on! We're just 9️⃣ days away from gathering policymakers, the media, the IT/OT community & more. Want a sneak peek at the agenda? The Run of Show preview is live! Check out the lineup, pick your must-see sessions – and don’t forget to register! bit.ly/4avQzlR
📺 IN ONE HOUR: The new AI & cybersecurity Executive Order has important implications for cybersecurity and critical infrastructure. Are we ready for what's next? Join @megans.bsky.social, Katie Noble, @kikta.net, and Jen Ellis for a pop-up discussion: us02web.zoom.us/webinar/regi...
What impact will the Trump Admin's new EO on AI have? In a rapid reaction, IST experts weighed in with their initial takes. For IST CEO Philip Reiner, "Today’s EO is the first step we’ve seen from the U.S. government in a while to make AI more trustworthy and secure. Let’s keep the momentum going.”
🚀 Cyber Policy Shark Tank is returning to #CriticalEffectDC! Led by @iamthecavalry.org & @hackersonthehill.org @beauwoods.com, cyber policy innovators will have the opportunity to pitch a specific, actionable policy idea to Congressional staffers. ➡️ Apply by 6/8: docs.google.com/forms/d/e/1F...
🚀#CriticalEffectDC SPEAKER UPDATE! Johan Chamucero, Pedro Umbelino, Oleg Shakirov, Josh Ross & Michaela Lee will be joining us to unpack the effects of protracted disruptions, OT’s cyber needs, the convergence of IT/OT in hospitals, and more. ➡️ Register now: www.eventbrite.com/e/critical-e...
Too often, attackers aren’t even ‘hacking in’—they’re just logging in, IST’s Michael Klein told Governing's Jule Pattison-Gordon. “There are more stealthy ways... but the vast majority of situations we see are those kinds of basic cyber hygiene challenges." For more, see pausetake9.org! #PauseTake9