• Director

Trey Herr

Dr. Trey Herr is Senior Director of the Cyber Statecraft Initiative, part of the Atlantic Council Technology Programs and assistant professor of Global Security and Policy at American University’s School of International Service. The CSI team works at the intersection of cybersecurity and geopolitics across conflict, cloud computingsupply chain policy, and more. Previously, Trey was a senior security strategist with Microsoft handling cybersecurity policy as well as a fellow with the Belfer Cybersecurity Project at Harvard Kennedy School and a non-resident fellow with the Hoover Institution at Stanford University. He holds a PhD in Political Science and BS in Musical Theatre and Political Science.

July 2020

Deep impact: States and software supply chain attacks

by Trey Herr, June Lee, Will Loomis, and Stewart Scott

States have used software supply chain attacks to great effect. Hijacked updates have routinely delivered the most crippling state-backed attacks, thanks in part to a continued failure to secure the code-signing process.
read more
June 2020

The 5×5—Baseball and cybersecurity: Stealing insights from America’s pastime

by Simon Handler

Whether you have played, watched, hated, or never heard of baseball, lessons from the sport can be applied to many things in life—including cybersecurity. Cyber Statecraft Initiative experts go 5×5 to draw parallels between America’s pastime and today’s cybersecurity issues.
read more
June 2020

The reverse cascade: Enforcing security on the global IoT supply chain

by Nathaniel Kim, Trey Herr, and Bruce Schneier

The Internet of Things (IoT) refers to the increasing convergence of the physical and digital worlds and it affects us all. Hundreds of “things” are being connected to the Internet and each other, with more than fifty billion devices expected to be connected by 2030. Many IoT devices are manufactured abroad at low cost with little consideration for security. How can we secure these devices, especially those manufactured outside the United States?
read more