{
  "schema_version": "1.0.0",
  "rubric_version": "1.0",
  "license": "CC BY 4.0 (https://creativecommons.org/licenses/by/4.0/)",
  "record": {
    "id": "O-0210",
    "slug": "intelligence-security-laboratories",
    "title": "Intelligence Security Laboratories",
    "aliases": [
      "ISL"
    ],
    "status": "draft",
    "last_reviewed": "2026-09-24",
    "review_interval_days": 90,
    "steward": null,
    "provenance": {
      "drafted_by": "ai",
      "reviewed_by": []
    },
    "risk_flags": [],
    "flags": [],
    "kind": "nonprofit",
    "homepage": "https://intelligencesecuritylaboratories.org/",
    "one_liner": "A nonprofit lab doing implementation-driven research on high-security AI systems, including secure data centres, to demonstrate the security critical AI deployments will need.",
    "sources": [
      {
        "source": "S-1706",
        "supports": "nonprofit research lab and 501(c)(3) status; aim; threat of tampering and theft; integrator role; STPA-Sec and formal methods; hand-off of knowledge and artifacts; demonstration infrastructure; refers to the RAND report for STPA-Sec"
      },
      {
        "source": "S-1707",
        "supports": "executive director, staff director and technical director; executive director's earlier RAND fellowship"
      },
      {
        "source": "S-1510",
        "supports": "G. Kulp is a co-author of the RAND secure inference data center report"
      }
    ],
    "type": "organization",
    "url": "https://trustbutveri.fyi/organizations/intelligence-security-laboratories/",
    "source_file": "content/organizations/intelligence-security-laboratories.md",
    "flags_all": [
      "ai-drafted"
    ],
    "body_markdown": "Intelligence Security Laboratories (ISL) is a 501(c)(3) nonprofit research lab that describes its focus as \"implementation-driven R&D for high-security AI systems\" [[S-1706]]. It states that it exists to develop and demonstrate the level of security that critical AI deployments need, before it is needed [[S-1706]].\n\nISL expects the developer of a transformatively capable model to reach for off-the-shelf security solutions that will likely fail [[S-1706]]. It warns that an insecure model could be tampered with or stolen by nation-state actors, other AIs or the model itself [[S-1706]]; see [[C-0009]].\n\nIts stated approach has five parts:\n\n- ISL argues that studying each component in depth will not prove a secure data centre secure as a whole system [[S-1706]]. It aims to be the integrator that owns the whole problem [[S-1706]].\n- It applies STPA-Sec (Systems-Theoretic Process Analysis for Security), a system design method that emphasises unknown-unknown attack vectors [[S-1706]].\n- It uses formal methods and other high-assurance approaches wherever it can [[S-1706]].\n- It expects demonstration infrastructure to help train relevant talent, show policymakers what is feasible, and support discussion of high-assurance frontier AI [[S-1706]].\n- It plans to hand the knowledge and technical artifacts it produces to other actors when needed, and states that it does not expect to become the world's producer of secure compute [[S-1706]].\n\nFor details of STPA-Sec, ISL points to RAND's [[I-0010|secure inference data center design]] [[S-1706]]. Its executive director, Gabriel Kulp, is a co-author of that report [[S-1510]] [[S-1707]]. Before founding ISL, he was a fellow at RAND working on hardware-enabled governance mechanisms for GPU export controls and on international verification of agreements [[S-1707]]. Tom Gardiner is ISL's staff director and Paul Murley its technical director [[S-1707]].",
    "body_text": "Intelligence Security Laboratories (ISL) is a 501(c)(3) nonprofit research lab that describes its focus as \"implementation-driven R&D for high-security AI systems\" [S-1706]. It states that it exists to develop and demonstrate the level of security that critical AI deployments need, before it is needed [S-1706]. ISL expects the developer of a transformatively capable model to reach for off-the-shelf security solutions that will likely fail [S-1706]. It warns that an insecure model could be tampered with or stolen by nation-state actors, other AIs or the model itself [S-1706]; see Model weights or data have not left the facility. Its stated approach has five parts: - ISL argues that studying each component in depth will not prove a secure data centre secure as a whole system [S-1706]. It aims to be the integrator that owns the whole problem [S-1706]. - It applies STPA-Sec (Systems-Theoretic Process Analysis for Security), a system design method that emphasises unknown-unknown attack vectors [S-1706]. - It uses formal methods and other high-assurance approaches wherever it can [S-1706]. - It expects demonstration infrastructure to help train relevant talent, show policymakers what is feasible, and support discussion of high-assurance frontier AI [S-1706]. - It plans to hand the knowledge and technical artifacts it produces to other actors when needed, and states that it does not expect to become the world's producer of secure compute [S-1706]. For details of STPA-Sec, ISL points to RAND's secure inference data center design [S-1706]. Its executive director, Gabriel Kulp, is a co-author of that report [S-1510] [S-1707]. Before founding ISL, he was a fellow at RAND working on hardware-enabled governance mechanisms for GPU export controls and on international verification of agreements [S-1707]. Tom Gardiner is ISL's staff director and Paul Murley its technical director [S-1707].",
    "referenced_by": [
      {
        "id": "I-0010",
        "title": "RAND secure inference data center (SIDC) design",
        "url": "https://trustbutveri.fyi/implementations/rand-secure-inference-data-centers/"
      },
      {
        "id": "S-1706",
        "title": "Intelligence Security Laboratories: Building secure infrastructure for transformative AI",
        "url": "https://trustbutveri.fyi/sources/intelligence-security-laboratories-home/"
      },
      {
        "id": "S-1707",
        "title": "Our Team: Intelligence Security Laboratories",
        "url": "https://trustbutveri.fyi/sources/intelligence-security-laboratories-team/"
      }
    ]
  }
}