To require an assessment on manual operations for critical infrastructure, and for other purposes.
About This Bill
Committee
Latest Action · June 18, 2024
Referred to the Committee on Homeland Security, and in addition to the Committee on Transportation and Infrastructure, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
This bill requires federal agencies to assess how critical infrastructure can continue operating manually if a cyberattack disables computerized systems. Within 180 days of the law's enactment, the Cybersecurity and Infrastructure Security Agency and the Federal Emergency Management Agency must provide Congress with a detailed sector-by-sector report examining whether power plants, water systems, hospitals, and other critical facilities can switch to manual operations during cyber incidents, along with the costs and challenges of doing so. The agencies must also update their emergency planning guidelines to include best practices for manual operations, identify available federal and state resources to help during such transitions, and provide specific guidance for responding to attacks on industrial control systems. The bill affects critical infrastructure owners and operators across multiple sectors, as well as federal emergency response agencies. No specific funding amount is provided in the legislation, but the assessment and updated guidelines must be completed within 180 days of enactment.
Take Action
Your position
Add a comment
to comment on this bill.
Annotate the text
Highlight any passage on the Summary or Full Text tab to attach a note. Annotations appear on the Annotations tab.