• Research
  • Politika
  • About
Carnegie Russia Eurasia center logoCarnegie lettermark logo
  • Donate
{
  "authors": [
    "Tim Maurer",
    "Wyatt Hoffman"
  ],
  "type": "other",
  "centerAffiliationAll": "dc",
  "centers": [
    "Carnegie Endowment for International Peace"
  ],
  "collections": [
    "Cyber and Digital Policy"
  ],
  "englishNewsletterAll": "ctw",
  "nonEnglishNewsletterAll": "",
  "primaryCenter": "Carnegie Endowment for International Peace",
  "programAffiliation": "TIA",
  "programs": [
    "Technology and International Affairs"
  ],
  "projects": [],
  "regions": [
    "Iran"
  ],
  "topics": [
    "Security",
    "Technology"
  ]
}

Source: Getty

Other

The Privatization of Security and the Market for Cyber Tools and Services

A look at the emerging and expanding gaps in the governance of private cybersecurity companies and activities and the ways forward and policy options for governments.

Link Copied
By Tim Maurer and Wyatt Hoffman
Published on Aug 23, 2019

Source: Geneva Centre for Security Sector Governance

Abstract

This paper seeks to identify the emerging and expanding gaps in the governance of private cybersecurity companies and activities and to explore ways forward and policy options for governments. First, it explores the characteristics of typical cyber operations and challenges related to their conduct by private actors. Thereafter, it addresses the governance challenges around cybersecurity and three main departure points for regulation: the fact that geographic scope does not limit cybersecurity companies, that cyber operations can slide from defensive to offensive very quickly; and that cybersecurity services are often exported for the purpose of (or with the knowledge they will be) violating human rights. This section will also integrate perspectives of international law. Finally, the paper lays out suggestions for policy options in relation to international law and existing international normative frameworks. In conclusion, the paper offers a framework and way forward as food for thought in order to address cybersecurity operations in relation to PMSCs.

Read Full Text

This analysis was originally published by the Geneva Centre for Security Sector Governance.

About the Authors

Tim Maurer

Former Senior Fellow, Technology and International Affairs Program

Dr. Tim Maurer was a senior fellow in Carnegie’s Technology and International Affairs program.

Wyatt Hoffman

Former Senior Research Analyst, Cyber Policy Initiative

Wyatt Hoffman was a senior research analyst with the Nuclear Policy Program and the Cyber Policy Initiative at the Carnegie Endowment for International Peace.

Authors

Tim Maurer
Former Senior Fellow, Technology and International Affairs Program
Tim Maurer
Wyatt Hoffman
Former Senior Research Analyst, Cyber Policy Initiative
SecurityTechnologyIran

Carnegie does not take institutional positions on public policy issues; the views represented herein are those of the author(s) and do not necessarily reflect the views of Carnegie, its staff, or its trustees.

More Work from Carnegie Russia Eurasia Center

  • Commentary
    Carnegie Politika
    Why Is Belarus’s Approach to Online Censorship So Different From Russia’s?

    For Lukashenko, abandoning Western internet services and embracing Russian equivalents would mean tying himself even closer to Moscow.

      Artyom Shraibman

  • Commentary
    Carnegie Politika
    What Does Nuclear Proliferation in East Asia Mean for Russia?

    Troubled by the growing salience of nuclear debates in East Asia, Moscow has responded in its usual way: with condemnation and threats. But by exacerbating insecurity, Russia is forcing South Korea and Japan to consider radical security options.

      James D.J. Brown

  • Commentary
    Carnegie Politika
    Who Is Responsible for the Demise of the Russian Internet?

    The Russian state has opted for complete ideological control of the internet and is prepared to bear the associated costs.

      Maria Kolomychenko

  • Commentary
    Carnegie Politika
    Is Opposition to Online Restrictions an Inflection Point for the Russian Regime?

    After four years of war, there is no one who can stand up to the security establishment, and President Vladimir Putin is increasingly passive. 

      Tatiana Stanovaya

  • Commentary
    Carnegie Politika
    Russia Is Meddling for Meddling’s Sake in the Middle East

    The Russian leadership wants to avoid a dangerous precedent in which it is squeezed out of Iran by the United States and Israel—and left powerless to respond in any meaningful way.

      Nikita Smagin

Get more news and analysis from
Carnegie Russia Eurasia Center
Carnegie Russia Eurasia logo, white
  • Research
  • Politika
  • About
  • Experts
  • Events
  • Contact
  • Privacy
  • For Media
Get more news and analysis from
Carnegie Russia Eurasia Center
© 2026 Carnegie Endowment for International Peace. All rights reserved.