Nonpartisan civic infrastructure
AllCiv·Legis1
·

S. 3773

BillFederalSenateIn Committee
To require the Inspector General of the Department of Health and Human Services to evaluate the cybersecurity practices and protocols of the Department, and for other purposes.
About This Bill
Committee
Latest Action · February 8, 2024
Read twice and referred to the Committee on Health, Education, Labor, and Pensions.
Congress
118th (2023–2025)
Introduced
February 8, 2024
Cosponsors (3)
1D 1R
View PDF ↗

Summary

Highlight any text to annotate
This bill requires the Department of Health and Human Services to strengthen its cybersecurity defenses by having its Inspector General conduct regular security evaluations every two years. The evaluations will include penetration testing and other procedures to identify vulnerabilities in systems that handle patient data, Medicare information, and other sensitive health information. Within two years of the law's enactment and every two years after that, the Secretary of HHS must report to Congress on planned cybersecurity improvements, while the Inspector General must report on current spending and any additional funding or legislative changes needed to continue these evaluations. The bill affects patients whose health information is stored in HHS systems and the department's cybersecurity operations, though it does not specify upfront funding amounts. This legislation aims to protect patient privacy and safety by ensuring HHS systems are regularly tested against current cyberattack methods.

Take Action

Your position
Add a comment
to comment on this bill.
Annotate the text
Highlight any passage on the Summary or Full Text tab to attach a note. Annotations appear on the Annotations tab.