Federal Information Security Modernization Act of 2022
Summary
Federal Information Security Modernization Act of 2022 This bill addresses federal information security management, notification and remediation of cybersecurity incidents, and the roles of the Office of Management and Budget (OMB) and the Cybersecurity and Infrastructure Security Agency (CISA). CISA must perform, on an ongoing and continuous basis, assessments of federal risk posture. The bill requires evaluation by each agency of whether additional cybersecurity procedures are appropriate at least once every three years. An agency, as expeditiously as practicable and without unreasonable delay, and within 45 days after it has a reasonable basis to conclude that a breach has occurred, must (1) determine whether notice to any individual potentially affected by the breach is appropriate based on a risk assessment; and (2) as appropriate, provide written notice to each individual potentially affected. Notification may be delayed under specified circumstances. Each agency must provide any information relating to a major incident to CISA, the OMB, the Office of the National Cyber Director, the agency's office of inspector general, the Government Accountability Office, and Congress. An agency's contractors and grant recipients must notify the agency of an incident involving federal information within a specified time frame. Each agency shall develop training for individuals at the agency with access to federal information or information systems on how to identify and respond to an incident. CISA must establish a program to provide ongoing, hypothesis-driven threat-hunting services on the network of each agency. The bill establishes specified pilot programs to enhance federal cybersecurity.
Bill status
in committee
1 of 4 stages cleared
Introduction
Jan 2022
Committee Review
Floor Vote
President
Introduced Jan 25, 2022
Last action Feb 2, 2022
Floor votes
How they voted
No floor votes recorded yet.
Full legislative history
Actions timeline
Total actions
4
Key actions
1
Committee
2
Amendments
1
Feb 2, 2022
Introduced
Ordered to be Reported (Amended) by Voice Vote.
lower
Feb 2, 2022
Lower · Passed
Committee Consideration and Mark-up Session Held.
lower
Jan 25, 2022
Committee
Referred to the Committee on Oversight and Reform, and in addition to the Committee on Science, Space, and Technology, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
lower
Jan 25, 2022
Introduced
Introduced in House
lower
1 primary · 16 co-sponsors
Sponsors
Role
Legislator
Party
State
District
P
Carolyn B. Maloney
DDemocratic
Co
Bob Gibbs
RRepublican
Co
Debbie Wasserman Schultz
DDemocratic
Co
Eleanor Holmes Norton
DDemocratic
Co
Fred Keller
RRepublican
Co
Gerald E. Connolly
DDemocratic
Co
Jake LaTurner
RRepublican
Co
James Comer
RRepublican
Co
Jamie Raskin
DDemocratic
Co
Jim Cooper
DDemocratic
Co
Jody B. Hice
RRepublican
Ask Maddy
·
AI policy assistant
Ask Maddy about HR 6497
Scope: US
Hi! I can help you understand HR 6497. What would you like to know?
Try one of these
i
Maddy answers using official bill text and legislative records. Always verify before sharing.
Sources cited inline