Bill

Bill > S3600


US S3600

US S3600
Strengthening American Cybersecurity Act of 2022 Federal Secure Cloud Improvement and Jobs Act of 2022 Cyber Incident Reporting for Critical Infrastructure Act of 2022 Federal Information Security Modernization Act of 2022


summary

Introduced
02/08/2022
In Committee
Crossed Over
03/02/2022
Passed
Dead
01/03/2023

Introduced Session

117th Congress

Bill Summary

AN ACT To improve the cybersecurity of the Federal Government, and for other purposes.

AI Summary

This bill: Modernizes the Federal Information Security Modernization Act (FISMA) to improve federal cybersecurity, including by requiring ongoing agency risk assessments, implementing zero trust architecture, establishing a federal penetration testing policy, codifying vulnerability disclosure programs, and creating a risk-based budget model for cybersecurity spending. Establishes new cyber incident reporting requirements for critical infrastructure entities, requiring them to report covered cyber incidents and ransom payments to the Cybersecurity and Infrastructure Security Agency, with protections for shared information. It also creates a Joint Ransomware Task Force to coordinate federal efforts against ransomware attacks. Codifies the Federal Risk and Authorization Management Program (FedRAMP) to streamline the authorization of secure cloud computing products and services for use by federal agencies, reducing costs and burdens on both agencies and cloud providers. The bill aims to enhance federal cybersecurity, improve transparency and coordination around cyber incidents, and facilitate secure cloud adoption across the government to support IT modernization and reduce legacy technology.

Sponsors (16)

Last Action

Held at the desk. (on 03/02/2022)

bill text


bill summary

Loading...

bill summary

Loading...
Loading...