Bill

Bill > HR5680


US HR5680

Cybersecurity Vulnerability Identification and Notification Act of 2020


summary

Introduced
01/27/2020
In Committee
01/29/2020
Crossed Over
Passed
Dead
12/31/2020

Introduced Session

116th Congress

Bill Summary

To amend the Homeland Security Act of 2002 to protect United States critical infrastructure by ensuring that the Cybersecurity and Infrastructure Security Agency of the Department of Homeland Security has necessary legal tools to notify entities at risk of cybersecurity vulnerabilities in the enterprise devices or systems that control critical assets of the United States, and for other purposes. This bill authorizes the Department of Homeland Security (DHS) to issue a subpoena for the production of information to identify and notify an entity that is put at risk by cybersecurity vulnerabilities. Specifically, the bill requires the DHS Cybersecurity and Infrastructure Security Agency (CISA) to detect, identify, and receive information about security vulnerabilities relating to critical infrastructure in the information systems and devices of public and private entities. To do this, the bill authorizes CISA, upon identification of a system determined to have such a security vulnerability, to issue a subpoena for the production of information that is necessary to identify and notify the at-risk entity.

AI Summary

This bill authorizes the Department of Homeland Security (DHS) to issue subpoenas to identify and notify entities at risk of cybersecurity vulnerabilities in their enterprise devices or systems that control critical infrastructure. Specifically, the bill requires the DHS Cybersecurity and Infrastructure Security Agency (CISA) to detect, identify, and receive information about security vulnerabilities in public and private entities' information systems and devices. CISA can then issue subpoenas to obtain the information necessary to identify and notify the at-risk entity, subject to certain limitations and procedures. The bill also mandates the development of inter-agency coordination procedures, internal CISA policies, and annual reporting requirements regarding the use of this subpoena authority.

Committee Categories

Military Affairs and Security

Sponsors (7)

Last Action

Ordered to be Reported. (on 01/29/2020)

bill text


bill summary

Loading...

bill summary

Loading...
Loading...