US AI Security and Innovation Act
H.R.9363 - AI Security and Innovation Act
United States
RAI-US-NA-HR93630-2026H.R.9363
This bill establishes a Center for AI Security and Innovation within NIST to secure AI systems and promote innovation, balancing risks with technological advancement.
Overview
The H.R.9363, known as the AI Security and Innovation Act, represents a significant legislative effort by the United States Congress to address the burgeoning challenges and opportunities presented by artificial intelligence. Introduced in the House of Representatives, this bill aims to solidify the federal government's strategic approach to securing AI systems while simultaneously fostering a vibrant environment for continued innovation in the field. The core objective is to strike a delicate balance between harnessing the transformative potential of AI and mitigating its inherent risks, particularly those related to national security and economic stability. The legislation is designed to advance efforts in identifying, assessing, and mitigating AI-related risks, thereby ensuring the development and deployment of secure, resilient, and trustworthy AI technologies across various sectors. This proactive stance underscores a recognition that AI is not merely a technological advancement but a critical component of national infrastructure and global competitiveness. By focusing on both security and innovation, the Act seeks to establish a robust framework that supports American leadership in AI research, development, and evaluation, ensuring that the nation remains at the forefront of this rapidly evolving technological landscape. The bill's emphasis on coordination across government and industry highlights a collaborative model deemed essential for effective AI governance, recognizing that the complexities of AI demand a multi-stakeholder approach to address its multifaceted implications.
Furthermore, the AI Security and Innovation Act seeks to amend the National Artificial Intelligence Initiative Act of 2020, demonstrating an intent to build upon existing legislative foundations and adapt them to current needs. This amendment is crucial for establishing a dedicated Center for AI Security and Innovation (CAISI) within the National Institute of Standards and Technology (NIST), a move that centralizes expertise and resources for AI evaluation and research. The establishment of CAISI is envisioned as a cornerstone of the federal strategy, providing a focal point for technical leadership and coordination. The bill's progression through the House Committee on Science, Space, and Technology, including being ordered to be reported favorably, signifies bipartisan support and a shared understanding of the urgency in addressing AI governance. This consensus reflects a broader national imperative to equip federal agencies with the necessary tools and frameworks to navigate the complexities of AI, ensuring that technological advancements are aligned with national values and security interests. The Act’s comprehensive scope, ranging from risk identification to the promotion of secure AI development, positions it as a foundational piece of legislation in the ongoing effort to shape the future of artificial intelligence in the United States.
Definitions
The AI Security and Innovation Act introduces or expands upon several key definitions crucial for delineating the scope and applicability of its provisions, particularly in the context of establishing the Center for AI Security and Innovation (CAISI) within NIST. The legislation explicitly expands terms in the National Artificial Intelligence Initiative Act of 2020 to include "AI" alongside "artificial intelligence," clarifying that the shorter acronym is synonymous and equally applicable throughout the legislative text. This seemingly minor adjustment ensures consistency and avoids ambiguity in future references to artificial intelligence systems and models. More substantively, the bill adds specific definitions for "artificial intelligence model" and "artificial intelligence system," which are fundamental to understanding the technologies that CAISI will be tasked with evaluating and securing. These definitions are essential for precisely identifying the components and integrated solutions that fall under the purview of the Act, enabling targeted risk assessments and the development of relevant standards. Without clear definitions, the application of the bill's mandates could be vague, hindering effective implementation and oversight. The precision in defining these terms allows for a more focused approach to addressing the security and innovation aspects of AI, ensuring that the Center's efforts are directed toward the most impactful areas of AI development and deployment.
Furthermore, the Act introduces definitions for "foreign adversary" and "intelligence community," which are critical for framing the national security dimensions of AI and guiding CAISI’s strategic focus. The definition of "foreign adversary" is particularly important as it helps to identify specific entities or nations whose AI capabilities and intentions pose potential threats to U.S. interests. This enables CAISI to prioritize assessments of AI systems developed by or associated with these adversaries, thereby strengthening national defense and economic security. Similarly, defining "intelligence community" clarifies the federal agencies and departments that will collaborate with CAISI on matters of national security, ensuring seamless information exchange and coordinated efforts in protecting against AI-related threats. These definitions collectively establish a robust semantic framework that underpins the entire legislation, providing clarity for federal agencies, industry stakeholders, and the public. By meticulously defining these terms, the AI Security and Innovation Act lays the groundwork for a more precise and effective implementation of its goals, ensuring that all parties operate under a shared understanding of the key concepts and entities involved in securing and advancing artificial intelligence in the United States.
Governance and Institutional Framework
The cornerstone of the AI Security and Innovation Act's governance structure is the establishment of the Center for AI Security and Innovation (CAISI) within the National Institute of Standards and Technology (NIST). This strategic placement within NIST is deliberate, leveraging the agency's long-standing expertise in developing standards and measurements for critical technologies. CAISI is mandated to strengthen the federal government's approach to securing AI systems and to promote continued innovation. The bill requires the Secretary of Commerce, through the Under Secretary for Standards and Innovation, to establish the Center within 60 days of the Act's enactment. This swift establishment underscores the urgency with which Congress views the need for a centralized body dedicated to AI security. The Center will be led by a Director, who is to be appointed within three months of the Center's establishment. This Director will be responsible for overseeing CAISI's operations, setting its strategic direction, and ensuring its mandates are effectively carried out. The Director's role is critical in shaping the Center's activities, from evaluating AI risks to fostering collaboration between government and industry. The legislation also allows for the appointment of up to 15 technical experts with flexible pay rates, ensuring that CAISI can attract and retain top talent necessary to address the complex technical challenges of AI security. This provision acknowledges the specialized nature of AI expertise and the competitive landscape for such professionals.
CAISI's institutional framework emphasizes interagency coordination and collaboration with the private sector. The Center is tasked with improving coordination across government and industry, recognizing that a unified approach is essential for comprehensive AI security. This includes engagement with various federal agencies, such as the Departments of Defense, Energy, Homeland Security, and the intelligence community, to ensure a holistic understanding and response to AI-related risks. By fostering these partnerships, CAISI aims to create a cohesive national strategy that integrates diverse perspectives and capabilities. The bill also supports information sharing between private entities and federal agencies, acknowledging that much of the cutting-edge AI development occurs in the private sector. To encourage this collaboration, the Act includes provisions for confidentiality protections for information shared by private entities, ensuring that proprietary data is safeguarded and not used for regulatory purposes. This mechanism is designed to build trust and incentivize voluntary participation from industry, which is crucial for CAISI to gain insights into advanced AI systems and develop effective security measures. The overall governance model envisioned by the AI Security and Innovation Act is one of collaborative expertise, aiming to leverage both public and private sector strengths to secure AI and maintain the United States' leadership in this critical technological domain.
Key Focus Areas
The AI Security and Innovation Act delineates several key focus areas for the newly established Center for AI Security and Innovation (CAISI), all aimed at bolstering national security and fostering responsible AI development. A primary focus is the evaluation of security against specific threats posed by advanced AI systems. This includes rigorous assessment of vulnerabilities such as cyberattacks, data leaks, model tampering, prompt injection, and jailbreaks, as well as broader national-security risks involving foreign adversaries. CAISI is mandated to conduct comprehensive evaluations of "covered frontier systems," which are cutting-edge AI models that could have significant implications for national security or critical infrastructure. These evaluations are crucial for understanding the potential weaknesses and malicious exploitation vectors of advanced AI, enabling proactive defense strategies. The Center will also conduct assessments of AI systems developed by both U.S. entities and foreign adversaries, providing a comparative analysis of capabilities and identifying potential gaps or threats. This dual approach ensures that the United States maintains an awareness of its own AI security posture while also monitoring the advancements and intentions of rival nations. The insights gained from these evaluations will inform policy decisions, research priorities, and the development of defensive measures, thereby safeguarding national interests in the rapidly evolving AI landscape.
Another critical area of focus for CAISI is the development of voluntary standards and best practices for AI security. The Act directs the Center to support the creation and adoption of these guidelines, which are intended to provide a common framework for industry and government to enhance the security and trustworthiness of AI technologies. These standards will cover various aspects of the AI lifecycle, from design and development to deployment and post-market monitoring, addressing issues such as data integrity, model robustness, and ethical considerations. The voluntary nature of these standards is a key aspect of the bill's approach, aiming to foster broad adoption through collaboration and incentives rather than through prescriptive mandates. This flexibility is intended to allow for rapid adaptation to new technological advancements and emerging risks, ensuring that the standards remain relevant and effective. Furthermore, CAISI is tasked with supporting AI security research, which is essential for advancing the state of the art in defensive AI capabilities. This includes funding research into novel security techniques, vulnerability detection methods, and resilient AI architectures. By investing in foundational and applied research, the Center aims to generate new knowledge and tools that can be leveraged by both government and industry to build more secure and trustworthy AI systems. This comprehensive approach, encompassing threat evaluation, standards development, and research support, positions CAISI as a central pillar in the United States' strategy for securing and innovating in artificial intelligence.
Implementation Framework
The implementation framework for the AI Security and Innovation Act is characterized by a strong emphasis on voluntary cooperation and a non-regulatory approach, distinguishing it from more prescriptive legislative models. The bill explicitly prohibits the Center for AI Security and Innovation (CAISI) from exercising new regulatory authority, instead focusing its efforts on research, evaluation, and information sharing. This design choice reflects a deliberate strategy to foster collaboration with the private sector, which is often at the forefront of AI development. By avoiding mandates and penalties, the Act aims to create an environment where AI developers are incentivized to voluntarily participate in security evaluations and share information with federal agencies. The underlying premise is that a collaborative model, built on trust and mutual benefit, will be more effective in addressing the rapidly evolving challenges of AI security than a top-down regulatory framework that might stifle innovation. The legislation recognizes that the pace of AI innovation often outstrips the speed of traditional regulatory processes, making a flexible, cooperative approach more suitable for this dynamic field. This framework seeks to leverage the expertise and resources of both government and industry to collectively enhance the security and resilience of AI systems.
A critical component of this voluntary implementation framework is the provision for confidentiality protections for information shared by private entities with CAISI. The Act stipulates that information shared by private entities receives confidentiality protections and cannot be used for regulatory purposes. Furthermore, such information is exempt from public disclosure under the Freedom of Information Act (FOIA). These protections are designed to address industry concerns about the disclosure of proprietary data, intellectual property, or sensitive security vulnerabilities that could arise from collaboration with the government. By guaranteeing confidentiality, the bill aims to reduce barriers to participation and encourage AI companies to openly share insights and allow for security evaluations of their "covered frontier systems." This mechanism is vital for building trust between the government and the private sector, which is essential for CAISI to gain access to the most advanced AI models and conduct meaningful assessments. The five-year sunset provision and the explicit prohibition on using shared data for regulation further reinforce the bill's commitment to a non-punitive, collaborative approach. This framework seeks to balance the critical need for AI security with concerns about government overreach and the potential chilling effect on innovation, positioning the United States to lead in AI development while proactively managing its associated risks through cooperative engagement.
Monitoring and Evaluation
The AI Security and Innovation Act establishes robust mechanisms for the ongoing monitoring and evaluation of artificial intelligence systems, primarily through the functions assigned to the Center for AI Security and Innovation (CAISI) within NIST. A core responsibility of CAISI is to measure AI risks, which involves developing and applying methodologies to assess the security vulnerabilities and potential malicious uses of advanced AI systems. This includes evaluating AI systems against a spectrum of threats, such as cyberattacks, data leaks, model tampering, prompt injection, and jailbreaks, as well as broader national security risks. The monitoring process is dynamic, designed to keep pace with the rapid advancements in AI technology and the emergence of new threat vectors. CAISI will continuously assess the security posture of both U.S. and foreign adversary AI systems, providing a critical intelligence function that informs national policy and defense strategies. This ongoing evaluation ensures that the federal government maintains an up-to-date understanding of the global AI landscape and can adapt its security measures accordingly. The Center's ability to conduct these assessments, particularly for "covered frontier systems," is paramount to identifying risks before they can be exploited, thereby safeguarding critical infrastructure and national interests.
In addition to continuous risk measurement, the Act mandates that CAISI report annually to Congress on its findings and activities. This annual reporting requirement serves as a key oversight mechanism, ensuring transparency and accountability for the Center's operations. The reports will provide Congress with crucial insights into the state of AI security, the progress of research initiatives, and the effectiveness of voluntary standards and best practices. These reports are expected to detail the types of risks identified, the methodologies used for evaluation, the outcomes of assessments, and recommendations for future actions or policy adjustments. By requiring regular updates, the legislation ensures that Congress is well-informed about the evolving AI threat landscape and can make informed decisions regarding funding, policy, and strategic direction. Furthermore, the reports will likely highlight areas where greater collaboration between government and industry is needed, or where existing frameworks may need refinement. This systematic approach to monitoring and evaluation, coupled with transparent reporting, is designed to ensure that the AI Security and Innovation Act remains a living document, adaptable to the dynamic nature of artificial intelligence and responsive to the nation's security and innovation imperatives. It underscores a commitment to evidence-based policymaking and continuous improvement in the realm of AI governance.
Penalties, Liability, and Appeals
A distinctive feature of the AI Security and Innovation Act is its deliberate avoidance of establishing new penalties, liability frameworks, or appeal mechanisms. The legislation explicitly emphasizes a non-regulatory approach, focusing instead on fostering security through collaboration, research, and the development of voluntary standards and best practices. This means that the Center for AI Security and Innovation (CAISI) is not granted authority to impose fines, sanctions, or other punitive measures on AI developers or users. Its mandate is centered on evaluating risks, supporting information sharing, and promoting U.S. leadership in AI, rather than acting as an enforcement body. The bill's design reflects a strategic choice to encourage voluntary participation from the private sector by removing the specter of regulatory penalties that might otherwise deter innovation or open communication. This approach aims to build trust and facilitate a more open exchange of information regarding AI systems and their vulnerabilities, which is deemed crucial for collective security in a rapidly advancing technological domain. The absence of a formal liability regime within this Act suggests that Congress intends to address such issues through other legislative instruments or existing legal frameworks, or to allow market mechanisms and industry best practices to evolve in response to identified risks.
The bill's emphasis on voluntary measures and the protection of shared information from regulatory use further underscore its non-punitive philosophy. By ensuring that data shared with CAISI for security evaluations cannot be used to impose regulatory burdens or penalties, the Act seeks to create a safe harbor for industry engagement. This provision is critical for incentivizing AI companies to disclose potential flaws or vulnerabilities without fear of adverse legal or financial consequences. Consequently, the Act does not outline any procedures for appeals against CAISI's findings or recommendations, as its role is advisory and evaluative rather than adjudicative. Any disputes or grievances related to AI systems would likely fall under existing civil or criminal law, or be addressed through other specialized regulatory bodies if and when such frameworks are established. The limited scope of the AI Security and Innovation Act, by design, focuses on the upstream aspects of AI security—research, evaluation, and standards development—leaving the downstream issues of enforcement, liability, and redress to be potentially addressed by future legislation or existing legal mechanisms. This targeted approach allows the Act to concentrate on building foundational security capabilities and fostering a culture of responsible AI development without introducing new legal complexities or burdens on innovators.
Relationship to Other Instruments
The AI Security and Innovation Act is not a standalone piece of legislation but rather an integral component of the broader federal strategy for artificial intelligence, building upon and amending existing legal instruments. Specifically, the bill is designed to amend the National Artificial Intelligence Initiative Act of 2020. This earlier Act established a comprehensive initiative to ensure continued United States leadership in AI research and development, and the H.R.9363 seeks to enhance this initiative by creating a dedicated Center for AI Security and Innovation (CAISI) within NIST. This amendment signifies an evolution in federal AI policy, moving beyond general research promotion to a more focused emphasis on the security and risk management aspects of advanced AI systems. By integrating CAISI into the existing National AI Initiative, the Act ensures continuity and leverages established governmental structures, rather than creating an entirely new bureaucratic apparatus. This approach allows for a more streamlined implementation and better coordination with ongoing federal AI efforts, reinforcing the idea of a cohesive national strategy. The bill's provisions are intended to complement the foundational goals of the 2020 Act by providing a specific mechanism for addressing the security implications that have become increasingly apparent with the rapid advancement of AI technologies.
Furthermore, the AI Security and Innovation Act aligns with and builds upon broader federal AI policy frameworks, such as the Trump administration's National Policy Framework for Artificial Intelligence. This framework, released in March, set the stage for congressional action by emphasizing the importance of balancing AI security risks with American technological leadership. The H.R.9363 directly addresses these priorities by establishing a center focused on both security and innovation, reflecting the administration's strategic objectives. The bill is also part of a package of bipartisan AI bills advanced by the House Science, Space, and Technology Committee, indicating a concerted legislative effort to establish federal AI guardrails. Other related bills, such as the AI-Ready Federal Data Guidelines Act (H.R. 9341), the AI Flaw Incident Reporting and Security Enhancement Act (H.R. 9333), and the CREATE AI Act (H.R. 2385), address different facets of the AI ecosystem, including data quality, vulnerability reporting, and research access. The H.R.9363, by establishing CAISI, provides a central hub for evaluating frontier AI models for national security risks and supporting voluntary standards, thus serving as a crucial piece within this larger legislative puzzle. This interconnectedness demonstrates a comprehensive and multi-pronged approach by Congress to address the complex and rapidly evolving landscape of artificial intelligence, ensuring that various aspects of AI development, deployment, and security are systematically considered and addressed through a coordinated legislative effort.
International Alignment
The AI Security and Innovation Act implicitly and explicitly supports the United States' leadership role in the global artificial intelligence arena, with provisions that foster international alignment and strategic benchmarking. The bill's overarching goal to ensure continued United States leadership in research, development, and evaluation of artificial intelligence systems inherently positions it within a global context of technological competition. By establishing the Center for AI Security and Innovation (CAISI), the Act aims to enhance the nation's capacity to develop and deploy secure, resilient, and trustworthy AI technologies, thereby reinforcing its competitive edge against other global powers. A key aspect of CAISI's mandate includes conducting assessments of AI systems developed by "foreign adversaries," which directly involves benchmarking U.S. AI capabilities against those of other nations that may pose strategic challenges. This comparative analysis is vital for understanding the global threat landscape and identifying areas where U.S. AI security needs to be strengthened, ensuring that the nation remains ahead in the technological race. The Act's focus on national security risks from AI systems underscores a recognition that AI development is a global endeavor with significant geopolitical implications, necessitating a strong international posture.
Furthermore, the bill encourages coordination with international partners on AI-related security and innovation issues, although specific mechanisms for this coordination are not extensively detailed in the provided summaries. This implies a broader intent to engage with allied nations to develop shared standards, best practices, and collaborative research initiatives for AI security. Such international cooperation is crucial for addressing global AI challenges, as many AI systems operate across borders and their risks are not confined to national boundaries. By promoting the development of voluntary standards and best practices within the U.S., the Act indirectly contributes to the global discourse on AI governance, potentially influencing the adoption of similar frameworks internationally. The emphasis on information exchange between federal and non-federal entities could also extend to sharing insights with international partners, contributing to a collective understanding of AI risks and mitigation strategies. While the Act primarily focuses on domestic institutional strengthening, its underlying principles of secure and trustworthy AI development have clear international resonance. By solidifying its own AI security framework, the United States aims to set a precedent and provide a model for responsible AI development that can be adopted or adapted by other nations, thereby contributing to a more secure and stable global AI ecosystem.
Implementation Timeline
| Milestone | Date | Notes |
|---|---|---|
| Bill Introduction | 2026-06-18 | H.R.9363 introduced in the House of Representatives. |
| Committee Markup and Favorable Report | 2026-06-25 | House Committee on Science, Space, and Technology ordered the bill to be reported in the nature of a substitute (amended) by a vote of 29-0. |
| Establishment of CAISI | Within 60 days of enactment | The Secretary of Commerce, through the Under Secretary for Standards and Innovation, is required to establish the Center for AI Security and Innovation (CAISI) within NIST. |
| Appointment of CAISI Director | Within 3 months of CAISI establishment | A Director for CAISI is to be appointed to oversee its operations and strategic direction. |
| Ongoing Operations | Continuous after establishment | CAISI will continuously evaluate AI risks, support information sharing, and promote U.S. AI leadership. |
| Annual Reports to Congress | Annually | CAISI is required to report annually to Congress on its findings and activities. |
Compliance Checklist
| Check | Required Action |
|---|---|
| Federal Agencies | |
| Establishment of CAISI | Secretary of Commerce to establish the Center for AI Security and Innovation (CAISI) within NIST. |
| Director Appointment | Appoint a Director for CAISI within three months of its establishment. |
| Staffing CAISI | Appoint up to 15 technical experts for CAISI with flexible pay rates. |
| Interagency Coordination | Engage in improved coordination on AI security across government, including with Departments of Defense, Energy, Homeland Security, and the intelligence community. |
| Annual Reporting | CAISI to submit annual reports to Congress on its activities and findings. |
| AI Developers/Industry (Voluntary) | |
| Voluntary Participation in Evaluations | Consider entering into voluntary agreements with CAISI for risk evaluations of "covered frontier systems." |
| Information Sharing | Voluntarily share information with CAISI to support AI security research and evaluation, with confidentiality protections. |
| Adherence to Standards | Consider adopting voluntary standards and best practices developed or supported by CAISI for secure, resilient, and trustworthy AI technologies. |
| AI Security Research | Engage in and support AI security research initiatives, potentially in coordination with CAISI. |
Sources and References
| Source | Type |
|---|---|
| H.R. 9363, AI Security and Innovation Act - House Committee on Science Space & Tech - Republicans | government |
| Federal Science Bill Tracker - AIP.ORG (H.R. 9363) | government |
| June 26, 2026: State Update: The Report - Indiana University | government |
| Text (20.8 KB) - GovInfo | official |
| House Panel Approves Key Trahan AI Priorities - Congresswoman Lori Trahan | government |
| Rep. Foushee-led Generative AI Labeling, Frontier AI Safety, and Data Center Measures Advance Through House Science Committee - Congresswoman Valerie Foushee | government |
Related Regulations
AI Incident Reporting and Security Enhancement Act
Federal89% similar
The Great American AI Act
United States88% similar
Workforce for AI Trust Act
United States88% similar
Artificial Intelligence Practices, Logistics, Actions, and Necessities Act
United States88% similar
Secure Artificial Intelligence Development Act of 2026
United States88% similar
© Regulations.AI — created on 12-Jul-2026 using Gemini 2.5 Flash