Sec. 9. Data and logging retention for incident response
89 words·~1 min read·
/bill/118/hr/4552/ih/section-9A research copy — for the controlling text, always check the official state or federal source. Not legal advice.
Not later than 2 years after the date of enactment of this Act the Director, in consultation with the National Cyber Director and the Director of the Cybersecurity and Infrastructure Security Agency, shall update guidance to agencies regarding requirements for logging, log retention, log management, sharing of log data with other appropriate agencies, or any other logging activity determined to be appropriate by the Director. The Secretary of Defense shall issue guidance that meets or exceeds the standards required in guidance issued under subsection
(a)for National Security Systems.