Sec. 203. NIST authority for cybersecurity and privacy activities
242 words·~1 min read·
/bill/117/hr/4609/ih/section-203·A research copy — for the controlling text, always check the official state or federal source. Not legal advice.
Section 2 of the National Institute of Standards and Technology Act ( 15 U.S.C. 272 et seq. ) is amended— in subsection (c)— in paragraph (16), by striking the period at the end and inserting a semicolon; by redesignating paragraphs
(16)through
(27)as paragraphs
(21)through (32), respectively; and by inserting after paragraph
(15)the following: support information security measures for the development and lifecycle of software and the software supply chain, including development of best practices, technical standards, frameworks, methodologies, procedures, processes, and software engineering toolkits and configurations; support information security measures, including best practices, guidelines, and technical standards, for the design, adoption and deployment of cloud computing services; support research, development, and practical application to improve the usability of cybersecurity processes and technologies; facilitate and support the development of a voluntary, consensus-based set of technical standards, guidelines, best practices, methodologies, procedures, and processes to cost-effectively ensure appropriate privacy protections for personally identifiable information in systems, technologies, and processes used by both the public and private sector; support privacy measures, including best practices, guidelines, technical standards, metrology, and testbeds for the design, adoption and deployment of privacy enhancing technologies; ; and in subsection (e)(1)(A)— in clause (viii), by striking and at the end; by redesignating clause
(ix)as clause (x); and by inserting after clause
(viii)the following: conduct reviews of and create impact metrics for cybersecurity solutions and capabilities developed by the Institute for purposes of improvement; and .
Connectionstraces to 1
Traces to 1 document
Citation graph
cites case law
Sec. 203
NIST authority for cybersecurity and privacy activities
Cites 1Cited by 0 across 0 sources