The Cyber Statecraft Initiative works at the nexus of geopolitics, technology, and security to craft strategies to help shape the conduct of statecraft and to better inform and secure users. This work extends through the competition of state and non-state actors, the security of the internet and computing systems, the safety of operational technology and physical systems, and the communities of cyberspace. The Initiative convenes a diverse network of passionate and knowledgeable contributors, bridging the gap among technical, policy, and user communities.

Our work

The Atlantic Council Technology Programs comprises five existing efforts—the Digital Forensic Research Lab (DFRLab), the GeoTech Center, the Cyber Statecraft Initiative, the Democracy + Tech Initiative, and the Capacity Building Initiative. These operations work together to address the geopolitical implications of technology and provide policymakers and global stakeholders necessary research, insights, and convenings to address challenges around global technology and ensure its responsible advancement.

Team

Fellows

Publications

The 5×5

Jan 24, 2024

The 5×5—Forewarned is forearmed: Cybersecurity policy in 2024

By Nitansha Bansal, Trey Herr

Members of the Cyber Statecraft Initiative team discuss the regulatory requirements and emerging technology they are closely following in 2024, and forewarn of the year ahead.

Cybersecurity

Report

Jan 16, 2024

Design questions in the software liability debate

By Maia Hamin, Sara Ann Brackett, and Trey Herr, with Andy Kotz

Software liability—resurgent in the policy debate since its mention in the 2023 US National Cybersecurity Strategy—describes varied potential structures to create legal accountability for vendors of insecure software. This report identifies key design questions for such regimes and tracks their discussion through the decades-long history of the debate.

Cybersecurity

The 5×5

Dec 13, 2023

The 5×5—2023: The cybersecurity year in review

By Simon Handler

A group of Atlantic Council fellows review the past year in cybersecurity, which organizations and initiatives made positive steps, and areas for improvement going forward. 

Cybersecurity National Security

Cyber 9/12 Project

Dec 5, 2023

2024 DC Cyber 9/12 Strategy Challenge

By Cyber Statecraft Initiative

The Atlantic Council’s Cyber Statecraft Initiative, in partnership with American University’s School of International Service and Washington College of Law, will hold the twelfth annual Cyber 9/12 Strategy Challenge both virtually and in-person in Washington, DC on March 15-16, 2024. This event will be held in a hybrid format, meaning teams are welcome to attend either […]

Cybersecurity

The 5×5

Nov 29, 2023

The 5×5—Veteran perspectives on cyber workforce development

By Simon Handler, Nitansha Bansal

In honor of National Military Veterans and Families Month, a group of veterans discuss their transitions from the military to the cyber workforce and suggest ways to improve the process for others. 

Cybersecurity National Security

Report

Nov 13, 2023

This job post will get you kidnapped: A deadly cycle of crime, cyberscams, and civil war in Myanmar

By Emily Ferguson and Emma Schroeder

In Myanmar, cybercrime has become an effective vehicle through which nonstate actors can fund and perpetuate conflict.

Cybersecurity Indo-Pacific

Cybersecurity, Strategy, and Policy

Oct 30, 2023

Homogeneity and concentration in the browser

By Justin Sherman and Jessica Edelson

Web browsers are the gateway to the internet. As browser developers replicate design features and concentrate around shared underlying technologies, they create cybersecurity risks with the potential to impact many internet users at once.

Cybersecurity Internet

The 5×5

Oct 27, 2023

The 5×5—The cybersecurity implications of artificial intelligence

By Maia Hamin, Simon Handler

A group of experts with diverse perspectives discusses the intersection of cybersecurity and artificial intelligence.

Artificial Intelligence Cybersecurity

Issue Brief

Oct 12, 2023

Driving software recalls: Manufacturing supply chain best practices for open source consumption

By Jeff Wayman, Brian Fox

Product recalls require practices that can help software vendors move toward better component selection and tracking and better relationships with customers, all while making software vendors responsible for OSS security instead of maintainers.

Cybersecurity

Article

Sep 27, 2023

Kink in the chain: Eight perspectives on software supply chain risk management

By Cyber Statecraft Initiative

Software supply chain attacks are popular, impactful, and are used to great effect by malicious actors. To dive deeper on this topic, we asked eight experts about these threats and how policymakers can help protect against them.

Cybersecurity United States and Canada

Events


The Atlantic Council’s Cyber Statecraft Initiative, part of the Atlantic Council Technology Programs, works at the nexus of geopolitics and cybersecurity to craft strategies to help shape the conduct of statecraft and to better inform and secure users of technology.

Licensing CSI Graphics

All original graphics created by the Cyber Statecraft Initiative (CSI) are available for re-use under the following conditions:

  • Written permission must be granted by CSI.
  • Graphics may be copied and distributed in any medium or format in unadapted form only, for noncommerical purposes, and only so long as attribution is given.1Language based on Creative Commons CC BY-NC-ND 4.0
  • The attribution must reference the Cyber Statecraft Initiative and include a link to the content.
  • CSI cannot grant permission for the use of images or graphics licensed from third parties.