Tap any paragraph to write a margin note. Your notes collect in the Desk below the text and file under cases with @. The side-by-side margin rail opens on a larger screen.

Code · U.S. Code · Title 50 - WAR AND NATIONAL DEFENSE · CHAPTER 41— NATIONAL NUCLEAR SECURITY ADMINISTRATION · SUBCHAPTER I— ESTABLISHMENT AND ORGANIZATION · § 2412

§ 2412. Cybersecurity Risk Inventory, Assessment, and Mitigation Working Group

355 words·~2 min read·/usc/title-50/section-2412

A research copy — for the controlling text, always check the official state or federal source. Not legal advice.

(a)Establishment There is in the Administration a working group, to be known as the “Cybersecurity Risk Inventory, Assessment, and Mitigation Working Group” (referred to in this section as the “working group”).
(b)Membership Members of the working group shall include—
(1)the Deputy Administrator for Defense Programs;
(2)the Associate Administrator for Information Management and Chief Information Officer; and
(3)such other personnel of the Administration as are determined appropriate for inclusion in the working group by the Chairperson.
(c)Chairperson The Deputy Administrator for Defense Programs shall serve as the Chairperson of the working group, except that the Administrator may designate another member of the working group to serve as Chairperson in lieu of the Deputy Administrator if the Administrator determines it is appropriate to do so.
(d)Comprehensive strategy The working group shall prepare a comprehensive strategy for inventorying the range of systems of the Administration that are potentially at risk in the operational technology and nuclear weapons information technology environments, assessing the systems at risk based on mission impact, and implementing risk mitigation actions. Such strategy shall incorporate key elements of effective cybersecurity risk management strategies, as identified by the Government Accountability Office, including the specification of—
(1)goals, objectives, activities, and performance measures;
(2)organizational roles, responsibilities, and coordination;
(3)resources needed to implement the strategy through 2034; and
(4)detailed milestones and schedules for completion of tasks.
(e)Submission to Congress
(1)Interim briefing Not later than 120 days after December 22, 2023, the working group shall provide to the congressional defense committees a briefing on the plan of the working group to develop the strategy required under subsection (d).
(2)Completed strategy Not later than April 1, 2025, the working group shall submit the congressional defense committees a copy of the completed strategy.
(f)Termination The working group shall terminate on a date determined by the Administrator that is not earlier than the date that is five years after December 22, 2023.
(Pub. L. 106–65, div. C, title XXXII, § 3222, as added Pub. L. 118–31, div. C, title XXXI, § 3113, Dec. 22, 2023, 137 Stat. 789.)
Connections4 cite this · traces to 1
2 references not yet in our index
  • Pub. L. 106–65, div. C, title XXXII, § 3222
  • 137 Stat. 789
Citation graph
cites case law
§ 2412
Cybersecurity Risk Inventory, Assessment, and Mitigation Working Group
Stat. Comp.×2
Pub. L.×1
Stat.×1
Pub. L.Pub. L. 106–65, div. C, title XXXII, § 3222
Stat.137 Stat. 789
Cites 3Cited by 4 across 3 sources
★   the supreme law of the land   ★
Don't Tread on Me
E Pluribus Unum — out of many, one

"If you don't know your rights, you don't have any."

Marginalia · a citizen's law index
A research desk, not legal advice. Always read the cited source before relying on a summary.
Questions or an issue? support@self-law.org
disclaimerMarginalia is a research index, not a law firm. Nothing on this site is legal, tax, or financial advice and no attorney–client relationship is formed by using it. Statutes, regulations, and case law change; summaries, search results, AI output, and member posts may be incomplete, out of date, or wrong. Any interpretation drawn from material on this site should be validated by a licensed attorney in your jurisdiction before you act on it.