Framework
The Center for Cybersecurity Policy and Law brings together leaders from government, industry, and the broader security community to advance policies that strengthen United States and allied cybersecurity while promoting legal clarity, strategic stability, and responsible Cyber Operations. While Cyber Defense remains an essential component of national cybersecurity, policymakers are increasingly confronting questions that extend beyond defending individual systems to the governance of Collective Cyber Operations involving government and the private sector.
As malicious cyber activity becomes more frequent, sophisticated, and integrated into geopolitical competition, policymakers are increasingly examining the legal, strategic, and operational frameworks that govern Cyber Operations. Questions surrounding Authorization, oversight, accountability, public-private coordination, international law, and international norms have become central to national security policy.
At the same time, the community involved in Cyber Operations remains fragmented. Government agencies, private-sector organizations, managed service providers, researchers, legal experts, and other stakeholders often engage policymakers independently, despite sharing common policy challenges. As a result, critical policy discussions risk becoming siloed, inconsistent, or disconnected from operational realities. This fragmentation can lead to inconsistent policy discussions and missed opportunities to develop informed, durable approaches.
The Cyber Operations Policy Coalition (COPC) will build on the Center’s established track record of convening diverse stakeholders to create a trusted, consensus-driven forum for engagement with U.S. and international policymakers. Coalition members will collaborate to inform policy development, clarify legal and regulatory frameworks, and promote approaches that enhance national security while supporting responsible and effective Collective Cyber Operations.
The coalition will focus on improving legal and policy frameworks, promoting responsible and lawful cyber operations, and ensuring policymakers have access to diverse operational, technical, and legal perspectives.
Mission & Purpose
The Cyber Operations Policy Coalition advances responsible, lawful, and strategically aligned approaches to Collective Cyber Operations by convening government and industry leaders to inform policy, strengthen public-private coordination, and improve the legal and governance frameworks that enable Cyber Operations in support of national security.
The coalition exists to help close the gap between rapidly evolving Cyber Capabilities and the policies that govern their use. It provides a structured forum where stakeholders can develop common perspectives, identify shared policy priorities, and engage constructively with policymakers.
Scope & Focus Areas
The coalition focuses exclusively on policy, governance, and legal frameworks related to Collective Cyber Operations.
Core areas of focus include:
- Legal authorities, Authorization, and oversight
- Public-private coordination
- International norms and governance
- Cyber Capability development and the policy environment supporting responsible use
The coalition does not engage in:
- Operational planning or operational execution
- Unlawful or reckless cyber responses to a cyber incident
- Sharing operational techniques, vulnerabilities, or targeting information
Policy Agenda
The coalition's agenda will be established by its members and evolve alongside legislative, regulatory, and international developments.
Initial areas of focus may include:
- Legal and regulatory clarity for Collective Cyber Operations
- Public-private coordination frameworks
- International engagement and norm development
- Responsible use, oversight, and accountability
- Policy issues affecting Cyber Capability development

