0
0

Strengthening American Cybersecurity Act of 2022

5/11/2023, 3:46 PM

Congressional Summary of S 3600

Strengthening American Cybersecurity Act of 2022

This bill addresses cybersecurity threats against critical infrastructure and the federal government.

The Cybersecurity and Infrastructure Security Agency (CISA) must perform ongoing and continuous assessments of federal risk posture.

An agency, within a specified time frame, must (1) determine whether notice to any individual potentially affected by a breach is appropriate based on a risk assessment; and (2) as appropriate, provide written notice to each individual potentially affected.

Each agency must (1) provide information relating to a major incident to specified parties, and (2) develop specified training for individuals with access to federal information or information systems.

The bill requires reporting and other actions to address cybersecurity incidents.

Entities that own or operate critical infrastructure must report cyber incidents and ransom payments within specified time frames.

The bill limits the use and disclosure of reported information.

The bill establishes (1) an interagency council to standardize federal reporting of cybersecurity threats, (2) a task force on ransomware attacks, and (3) a pilot program to identify information systems vulnerable to such attacks.

The bill provides statutory authority for the Federal Risk and Authorization Management Program (FedRAMP) within the General Services Administration (GSA).

FedRAMP is a government-wide program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud computing products and services.

The bill establishes a FedRAMP Board to examine the operations of FedRAMP and the Federal Secure Cloud Advisory Committee.

Current Status of Bill S 3600

Bill S 3600 is currently in the status of Bill Introduced since February 8, 2022. Bill S 3600 was introduced during Congress 117 and was introduced to the Senate on February 8, 2022.  Bill S 3600's most recent activity was Held at the desk. as of March 2, 2022

Bipartisan Support of Bill S 3600

Total Number of Sponsors
1
Democrat Sponsors
1
Republican Sponsors
0
Unaffiliated Sponsors
0
Total Number of Cosponsors
15
Democrat Cosponsors
7
Republican Cosponsors
7
Unaffiliated Cosponsors
1

Policy Area and Potential Impact of Bill S 3600

Primary Policy Focus

Government Operations and Politics

Potential Impact Areas

- Administrative law and regulatory procedures
- Advisory bodies
- Civil actions and liability
- Computer security and identity theft
- Computers and information technology
- Congressional oversight
- Criminal investigation, prosecution, interrogation
- Department of Homeland Security
- Employment and training programs
- Executive agency funding and structure
- Federal officials
- Government employee pay, benefits, personnel management
- Government information and archives
- Government studies and investigations
- Infrastructure development
- Performance measurement
- Public contracts and procurement
- Right of privacy
- Science, Technology, Communications
- Technology assessment
- Telephone and wireless communication

Alternate Title(s) of Bill S 3600

Strengthening American Cybersecurity Act of 2022
Federal Secure Cloud Improvement and Jobs Act of 2022
Cyber Incident Reporting for Critical Infrastructure Act of 2022
Federal Information Security Modernization Act of 2022
Strengthening American Cybersecurity Act of 2022
A bill to improve the cybersecurity of the Federal Government, and for other purposes.
Strengthening American Cybersecurity Act of 2022
Cyber Incident Reporting for Critical Infrastructure Act of 2022
Federal Information Security Modernization Act of 2022
Federal Secure Cloud Improvement and Jobs Act of 2022
Federal Secure Cloud Improvement and Jobs Act of 2022
Cyber Incident Reporting for Critical Infrastructure Act of 2022
Federal Information Security Modernization Act of 2022
Strengthening American Cybersecurity Act of 2022

Comments