CYBERSECURITYTRACKER
TRACKING
Permanent story citation

The push to designate AI as the next critical infrastructure sector

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4805

As cited

Copy frozen at (site build).

government policy

The push to designate AI as the next critical infrastructure sector

A new report from Americans for Responsible Innovation calls on the federal government to designate artificial intelligence as a critical infrastructure sector and name the Cybersecurity and Infrastructure Security Agency (CISA) as its lead regulator. The authors argue that the AI sector, encompassing frontier models, datacenters, semiconductors, and deployment platforms, already exhibits the concentration, interdependence, and systemic risk characteristics of critical infrastructure, with potential for cascading failures across multiple sectors. Current federal oversight remains fragmented across Commerce and Treasury departments, and experts debate whether CISA's existing authority or new mechanisms like ANCHOR-CI can adequately manage AI supply chain vulnerabilities and physical attacks on AI-supporting infrastructure.

Why it matters: CISOs and infrastructure operators need to track this policy shift: a formal critical infrastructure designation would unlock federal resources like CDM access, threat intelligence, and incident response services for AI companies and their suppliers, while reshaping compliance obligations and sector governance in ways that affect enterprise AI dependencies and third-party risk management.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

government policy

The push to designate AI as the next critical infrastructure sector

A new report from Americans for Responsible Innovation calls on the federal government to designate artificial intelligence as a critical infrastructure sector and name the Cybersecurity and Infrastructure Security Agency (CISA) as its lead regulator. The authors argue that the AI sector, encompassing frontier models, datacenters, semiconductors, and deployment platforms, already exhibits the concentration, interdependence, and systemic risk characteristics of critical infrastructure, with potential for cascading failures across multiple sectors. Current federal oversight remains fragmented across Commerce and Treasury departments, and experts debate whether CISA's existing authority or new mechanisms like ANCHOR-CI can adequately manage AI supply chain vulnerabilities and physical attacks on AI-supporting infrastructure.

Why it matters: CISOs and infrastructure operators need to track this policy shift: a formal critical infrastructure designation would unlock federal resources like CDM access, threat intelligence, and incident response services for AI companies and their suppliers, while reshaping compliance obligations and sector governance in ways that affect enterprise AI dependencies and third-party risk management.

VendorsAdobe
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary