{"id":"https://openalex.org/W7160905454","doi":"https://doi.org/10.48550/arxiv.2605.08449","title":"SL5 Standard for AI Security","display_name":"SL5 Standard for AI Security","publication_year":2026,"publication_date":"2026-05-08","ids":{"openalex":"https://openalex.org/W7160905454","doi":"https://doi.org/10.48550/arxiv.2605.08449"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2605.08449","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.08449","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2605.08449","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5114761035","display_name":"Lisa Thiergart","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Thiergart, Lisa","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135991041","display_name":"Yoav Tzfati","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Tzfati, Yoav","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135910096","display_name":"Peter Wagstaff","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Wagstaff, Peter","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135916262","display_name":"Guy","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Guy","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135910298","display_name":"Luis Cosio","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Cosio, Luis","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5135985565","display_name":"Philip Reiner","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Reiner, Philip","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.1793999969959259,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.1793999969959259,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.09889999777078629,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10883","display_name":"Ethics and Social Impacts of AI","score":0.06620000302791595,"subfield":{"id":"https://openalex.org/subfields/3311","display_name":"Safety Research"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/terminology","display_name":"Terminology","score":0.6730999946594238},{"id":"https://openalex.org/keywords/notice","display_name":"Notice","score":0.5953999757766724},{"id":"https://openalex.org/keywords/government","display_name":"Government (linguistics)","score":0.5414000153541565},{"id":"https://openalex.org/keywords/computer-security-model","display_name":"Computer security model","score":0.4560999870300293},{"id":"https://openalex.org/keywords/state","display_name":"State (computer science)","score":0.4255000054836273},{"id":"https://openalex.org/keywords/frontier","display_name":"Frontier","score":0.3564999997615814},{"id":"https://openalex.org/keywords/security-policy","display_name":"Security policy","score":0.32019999623298645},{"id":"https://openalex.org/keywords/security-through-obscurity","display_name":"Security through obscurity","score":0.30230000615119934}],"concepts":[{"id":"https://openalex.org/C547195049","wikidata":"https://www.wikidata.org/wiki/Q1725664","display_name":"Terminology","level":2,"score":0.6730999946594238},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6093000173568726},{"id":"https://openalex.org/C2779913896","wikidata":"https://www.wikidata.org/wiki/Q7063001","display_name":"Notice","level":2,"score":0.5953999757766724},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5888000130653381},{"id":"https://openalex.org/C2778137410","wikidata":"https://www.wikidata.org/wiki/Q2732820","display_name":"Government (linguistics)","level":2,"score":0.5414000153541565},{"id":"https://openalex.org/C121822524","wikidata":"https://www.wikidata.org/wiki/Q5157582","display_name":"Computer security model","level":2,"score":0.4560999870300293},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.4535999894142151},{"id":"https://openalex.org/C48103436","wikidata":"https://www.wikidata.org/wiki/Q599031","display_name":"State (computer science)","level":2,"score":0.4255000054836273},{"id":"https://openalex.org/C2778571376","wikidata":"https://www.wikidata.org/wiki/Q1355821","display_name":"Frontier","level":2,"score":0.3564999997615814},{"id":"https://openalex.org/C154908896","wikidata":"https://www.wikidata.org/wiki/Q2167404","display_name":"Security policy","level":2,"score":0.32019999623298645},{"id":"https://openalex.org/C114869243","wikidata":"https://www.wikidata.org/wiki/Q133735","display_name":"Security through obscurity","level":5,"score":0.30230000615119934},{"id":"https://openalex.org/C195518309","wikidata":"https://www.wikidata.org/wiki/Q13424265","display_name":"Security testing","level":5,"score":0.299699991941452},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.29030001163482666},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.2840999960899353},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.274399995803833},{"id":"https://openalex.org/C103377522","wikidata":"https://www.wikidata.org/wiki/Q3493999","display_name":"Security information and event management","level":4,"score":0.26980000734329224},{"id":"https://openalex.org/C42475967","wikidata":"https://www.wikidata.org/wiki/Q194292","display_name":"Operations research","level":1,"score":0.2646999955177307},{"id":"https://openalex.org/C2779547435","wikidata":"https://www.wikidata.org/wiki/Q1121492","display_name":"Directive","level":2,"score":0.26249998807907104},{"id":"https://openalex.org/C168167062","wikidata":"https://www.wikidata.org/wiki/Q1117970","display_name":"Component (thermodynamics)","level":2,"score":0.2621000111103058},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.257099986076355},{"id":"https://openalex.org/C2777306048","wikidata":"https://www.wikidata.org/wiki/Q1116124","display_name":"Common Criteria","level":2,"score":0.2533000111579895}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2605.08449","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.08449","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2605.08449","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.08449","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[{"display_name":"Industry, innovation and infrastructure","score":0.6641026139259338,"id":"https://metadata.un.org/sdg/9"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Security":[0],"Level":[1],"5":[2],"(SL5)":[3],"is":[4],"a":[5],"security":[6,64,145,188],"posture":[7],"for":[8,105,141,162],"AI":[9,51,55,62,164],"systems":[10],"that":[11,81],"could":[12],"plausibly":[13],"thwart":[14],"top-priority":[15],"operations":[16],"by":[17,107],"the":[18,34,38,45,70,121,163,168],"world's":[19],"most":[20],"cyber-capable":[21],"institutions:":[22],"those":[23],"with":[24,76],"extensive":[25],"resources,":[26],"state-level":[27],"infrastructure,":[28],"and":[29,60,94,146,156,166,200],"expertise":[30],"years":[31,85],"ahead":[32],"of":[33,37,69,144],"public":[35],"state":[36],"art.":[39],"The":[40],"SL5":[41,71,106],"terminology":[42],"originates":[43],"from":[44,130],"RAND":[46],"Corporation's":[47],"2024":[48],"report":[49],"\"Securing":[50],"Model":[52],"Weights\".":[53],"Frontier":[54],"development":[56],"requires":[57,109],"use-case-specific,":[58],"productivity-optimised":[59],"updateable":[61],"datacenter":[63],"standards.":[65],"This":[66],"first":[67],"revision":[68],"standard":[72,133],"focuses":[73],"on":[74,117],"requirements":[75,101,126,171,185],"long":[77],"lead":[78],"times:":[79],"interventions":[80],"must":[82],"be":[83,115,194,207],"planned":[84],"in":[86],"advance,":[87],"such":[88],"as":[89,172,174],"facility":[90],"construction,":[91],"hardware":[92],"procurement,":[93],"organizational":[95],"capability":[96],"development.":[97],"We":[98,135,196],"prioritize":[99],"these":[100,198],"because":[102],"preserving":[103],"optionality":[104],"2028/2029":[108],"starting":[110],"now.":[111],"These":[112],"capabilities":[113,189],"cannot":[114],"retrofitted":[116],"short":[118],"notice":[119],"when":[120],"need":[122],"becomes":[123],"urgent.":[124],"Some":[125,184],"represent":[127],"significant":[128],"departures":[129],"current":[131],"day":[132],"practice.":[134],"believe":[136],"bold":[137],"measures":[138],"are":[139],"necessary":[140],"this":[142,182],"level":[143],"see":[147],"clear":[148],"opportunities":[149],"to":[150,154,159,179],"apply":[151],"optimization":[152],"pressure":[153],"existing":[155],"novel":[157],"solutions":[158],"customize":[160],"them":[161],"industry":[165],"address":[167],"practical":[169],"operational":[170],"much":[173],"possible.":[175],"Our":[176],"organization":[177],"exists":[178],"begin":[180],"paving":[181],"path.":[183],"approximate":[186],"government":[187,203],"where":[190,202],"private-sector":[191],"approaches":[192],"may":[193,205],"insufficient.":[195],"identify":[197],"gaps":[199],"note":[201],"involvement":[204],"ultimately":[206],"necessary.":[208]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-05-13T00:00:00"}
