Cybersecurity & Tech Executive Branch

Lawfare Daily: Sezaneh Seymour and Brandon Wales on Private-Sector Cyber Operations

Alan Z. Rozenshtein, Sezaneh Seymour, Brandon Wales, Jen Patja
Tuesday, July 29, 2025, 8:00 AM
Reevaluating whether offensive cyber operations should be a a government-only function.

Published by The Lawfare Institute
in Cooperation With
Brookings

Alan Rozenshtein, Senior Editor and Research Director at Lawfare, sits down with Sezaneh Seymour, Vice President and head of regulatory risk and policy at Coalition and a former Senior Adviser on the National Security Council staff, and Brandon Wales, Vice President for cybersecurity strategy at SentinelOne and the former Executive Director of the Cybersecurity and Infrastructure Security Agency (CISA), to discuss their new Lawfare Research Report, “Partners or Provocateurs? Private-Sector Involvement in Offensive Cyber Operations.”

They talk about why, in the face of escalating cyber threats from state and criminal actors, U.S. officials are reevaluating the policy that currently reserves offensive cyber operations as a government-only function. Rather than endorsing a change, Seymour and Wales propose a structured framework to guide the policy debate. This framework is built on three key factors: first, defining the core policy objectives for involving the private sector; second, determining the appropriate scope of authorized activities, including what actions are permissible and who can be targeted; and third, addressing the complex legal and liability considerations, especially when operations cause harm to innocent third parties. They conclude by weighing the potential for private actors to augment U.S. capabilities against the significant risks of escalation and diplomatic fallout.

To receive ad-free podcasts, become a Lawfare Material Supporter at www.patreon.com/lawfare. You can also support Lawfare by making a one-time donation at https://givebutter.com/lawfare-institute.


Alan Z. Rozenshtein is an Associate Professor of Law at the University of Minnesota Law School, Research Director and Senior Editor at Lawfare, a Nonresident Senior Fellow at the Brookings Institution, and a Term Member of the Council on Foreign Relations. Previously, he served as an Attorney Advisor with the Office of Law and Policy in the National Security Division of the U.S. Department of Justice and a Special Assistant United States Attorney in the U.S. Attorney's Office for the District of Maryland. He also speaks and consults on technology policy matters.
Sezaneh Seymour is vice president and head of regulatory risk and policy at Coalition, a leading provider of cyber insurance and security services. She served as senior advisor for cyber and emerging technology on the National Security Council staff, and as deputy assistant U.S. trade representative at the Office of the U.S. Trade Representative in the Executive Office of the President, where she negotiated and enforced trade agreements.
Brandon Wales is vice president for cybersecurity strategy at SentinelOne, a leading AI-powered cybersecurity firm, where he manages its strategic advisory work. He has more than twenty years of experience advancing U.S. national security interests at the highest level of the federal government, most recently as the executive director of the Cybersecurity and Infrastructure Security Agency (CISA).
Jen Patja is the editor of the Lawfare Podcast and Rational Security, and serves as Lawfare’s Director of Audience Engagement. Previously, she was Co-Executive Director of Virginia Civics and Deputy Director of the Center for the Constitution at James Madison's Montpelier, where she worked to deepen public understanding of constitutional democracy and inspire meaningful civic participation.
}

Subscribe to Lawfare