The National Security Agency will develop a classified benchmarking process to identify "covered frontier models" under the framework. CISA, the Office of the National Cyber Director, OMB, OPM, and the Attorney General are tasked with building AI cybersecurity defenses and establishing a vulnerability clearinghouse. The order targets only the most powerful model developers, not broader industry or educational institutions. It also directs the Justice Department to prioritize enforcement against criminal use of AI for unauthorized computer access or damage.
The order represents a shift toward opt-in cooperation rather than regulatory mandate—a departure from earlier, stricter proposals. It follows the Biden administration's 2023 AI executive action as the next major federal policy move in the sector. Attorneys should monitor implementation across agencies and watch whether the voluntary framework achieves meaningful early visibility into frontier models, or whether the lack of enforcement mechanisms limits its practical effect on developer behavior.