Sec. 4. DHS REPORT ON CLOUD-BASED CYBERSECURITY
274 words·~1 min read·
/statute-compilations/comps-15296/sec-4A research copy — for the controlling text, always check the official state or federal source. Not legal advice.
## SEC. 4 DHS REPORT ON CLOUD-BASED CYBERSECURITY ###
(a)Definition In this section, the term “Department” means the Department of Homeland Security. ###
(b)Report Not later than 120 days after the date of enactment of this Act, the Secretary of Homeland Security, in coordination with the Director of the Office of Management and Budget and the Administrator of General Services, shall submit to the Committee on Homeland Security and Governmental Affairs of the Senate and the Committee on Oversight and Government Reform and the Committee on Homeland Security of the House of Representatives a report on the leadership role of the Department in cloud-based cybersecurity deployments for civilian Federal departments and agencies, which shall include— ####
(1)information on the plan of the Department for ensuring access to a security operations center as a service capability in accordance with the December 19, 2017 Report to the President on Federal IT Modernization issued by the American Technology Council; ####
(2)information on what service capabilities under paragraph
(1)the Department will prioritize, including— #####
(A)criteria the Department will use to evaluate capabilities offered by the private sector; and #####
(B)how Federal government- and private sector-provided capabilities will be integrated to enable visibility and consistency of such capabilities across all cloud and on premise environments, as called for in the report described in paragraph (1); and ####
(3)information on how the Department will adapt the current capabilities of, and future enhancements to, the intrusion detection and prevention system of the Department and the Continuous Diagnostics and Mitigation Program of the Department to secure civilian Federal government networks in a cloud environment.