National AI Defense Architecture for Cyber operations
What would it cost your country to implement NADAC?
The framework specifies 21 controls across four tiers, a 36-month roadmap and seven KPIs. Its reference costing is US$150–300M over three years for a country of ~50 million people at moderate critical-infrastructure exposure. Select a country and this planner scales that anchor to its population, income level, exposure and existing cyber maturity.
Step 1
Country
Dataset defaults load automatically. Every value below is editable.
0.5 is the paper's baseline. Higher maturity reduces greenfield Tier 1 build.
Drives Tier 2 enforcement feasibility and Tier 3 staffing.
Step 2
Programme scenario
Paper default is 36 months. Compression carries a surge premium.
Share of the specified scope actually delivered across designated critical infrastructure.
Five Eyes. The paper endorses this route for states without full institutional capacity.
Live estimate
US$522–1043M
Cumulative 36-month expenditure for United States
- Annual run-rate
- US$261M
- Per capita
- US$2.34
- Share of GDP
- 0.0027%
- Share of gov. spend (annual)
- 0.002%
- AI-CSIRT
- 39–65 FTE
The four tiers
Tier 1 · Foundational Cyber Hygiene
Within reach of any state with a functional cybersecurity institution.
Tier 2 · AI-Specific Technical Controls
Requires regulatory sophistication and enforcement capacity.
Tier 3 · Institutional Capability
Requires significant human capital.
Tier 4 · International Coordination
Smaller states can substitute regional coalitions (ASEAN CERT-SEA, AU-CERT, OAS CSIRTAmericas).
Source
A Layered National Defense Framework for AI-Enabled Cyber Warfare: Actionable Controls, Metrics, and Implementation — Shahmeer Amir, Independent Cybersecurity Researcher