But you can't make foreign intelligence assets "stay in the US" as it were. I bet every single large tech company in the US has rather substantial numbers of Chinese (and other countries') spies embedded within it. They also get caught again, and again, and again. And remember it's only the idiots who carry secrets on their person that get caught, rather than just upload data straight to some servers in China. I bet there's quite a bit of that going on as well.
The recent few cases are just baffling. The guy resigns and gets caught on the border exfiltrating trade secrets. For one thing, why resign? Just go - you'll get fired automatically when you don't return. For another, why carry this stuff in your suitcase? Just upload it to AWS in encrypted form sail through the customs with no problem at all. They are clearly not sending their best.