Review of Public-Private Partnership of U. S. Cyber Threat Intelligence and Its Enlightenment

Zhou Yuxin,Lu Mingxin,Yang Haiping
DOI: https://doi.org/10.3969/j.issn.1002-1965.2023.03.004
2023-01-01
Abstract:[Research purpose] As cyber threat has become a global challenge, threat intelligence has risen to strategic intelligence at the level of national security. The public-private partnership model is an important cornerstone for the U.S. to establish threat intelligence system. Analyzing and discussing the public-private partnership of U.S. threat intelligence is of great significance to promote the construction of China’s threat intelligence system and explore a new governance model in cyberspace.[Research method] Combined with public goods theory, this paper analyzes the causes, development process, system guarantee, practical experience and existing problems of the public-private partnership of threat Intelligence in U.S., and puts forward suggestions for the practice of public-private partnership of threat intelligence in China.[Research conclusion] Compared with traditional national security intelligence, threat intelligence is not a pure public security product. It has stronger external drive and internal demand of public-private cooperation, which promotes the development of public-private partnership in the intelligence community. At present, the public-private partnership of U.S. threat intelligence is shifting from intelligence sharing to intelligence empowerment, which has improved the ability of U.S. network security situational awareness, emergency response and network attribution. According to the practical experience and existing problems of public-private cooperation in Threat Intelligence in U.S, this paper puts forward that China should improve the threat intelligence sharing mechanism, promote the development of the threat intelligence industry, and give play to the governance role of the public-private partnership model.
What problem does this paper attempt to address?