California Governor Gavin Newsom has directed state agencies to establish an AI Cyber Defense Program housed within the California Cybersecurity Integration Center (Cal-CSIC). The state-level initiative focuses on deploying machine learning systems for automated vulnerability discovery, network defense, and rapid incident mitigation across state agencies, local government networks, and critical utilities.
Operated under the Governor's Office of Emergency Services (Cal OES), Cal-CSIC will serve as the centralized operational coordination hub. The directive mandates that every California state agency appoint a dedicated AI Cybersecurity Officer to manage automated defense posture and protocol alignment.

Scope and Municipal Integration
The directive extends defensive AI tooling beyond state-level departments to municipal authorities and utility operators overseeing water, electrical power, regional transit, and emergency communications infrastructure.
Key provisions include:
- Automated Threat Detection: Implementing AI-assisted static and dynamic vulnerability scanning across public networks.
- Agency Leadership Requirements: Establishing an AI Cybersecurity Officer role inside every state agency to oversee system hardening and defensive telemetry.
- Municipal Operator Access: Broadening access to advanced security tooling and shared threat intelligence feeds for local public utilities and municipal agencies.
- Incident Coordination: Integrating incident alerts through the Cal-CSIC platform to manage cross-agency defensive responses in real time.
Policy Background and Threat Landscape
The directive builds on a sequence of California regulatory measures governing AI deployment and operational safety:
- Executive Order N-12-23 (September 2023): Mandated risk assessments for generative AI impacts on state energy networks.
- Transparency in Frontier Artificial Intelligence Act (September 2025): Established safety disclosure requirements for frontier developers and mandated incident reporting channels to Cal OES.
- State Procurement Standards (March 2026): Imposed heightened compliance guidelines for enterprise AI vendors contracting with state entities.
- Cal-Secure 2.0 (July 2026): Updated the state's multi-year cyber roadmap to prioritize AI-driven defensive infrastructure.
State officials noted that the initiative comes amid shifting federal cybersecurity support. Federal fiscal planning includes a proposed $707 million reduction to the Cybersecurity and Infrastructure Security Agency (CISA) budget for FY 2027 and the expiration of foundational grant cycles for the Multi-State Information Sharing and Analysis Center (MS-ISAC).
Concurrently, recent federal advisories from CISA, the FBI, and the EPA highlighted ongoing operational disruption campaigns targeting programmable logic controllers (PLCs) across regional water and wastewater utilities.
Implementation Framework
The gubernatorial directive establishes administrative mandates across existing departmental authorities rather than creating an independent statutory agency or new legislative appropriation. Operational progress will be marked by agency officer designations and the rollout of automated analysis tooling through Cal-CSIC infrastructure.



