arrow_back Back to App

Enhanced Digital Security: New Rules for Government IT Contractors.

New regulations aim to boost the security of data and IT systems used by the government. Companies providing IT services to government agencies will be required to implement clear policies for reporting security vulnerabilities, protecting citizens' data and improving overall digital security. This will ensure potential threats are quickly identified and fixed, reducing the risk of cyberattacks.
Key points
IT contractors working with the government must have a public vulnerability disclosure policy, accessible to everyone.
This policy must clearly state how to report bugs, what is allowed, and what is prohibited during system testing.
Companies commit not to sue individuals who report vulnerabilities in good faith, in accordance with their policies.
Discovered vulnerabilities must be reported to government agencies to improve security across the public sector.
article Official text account_balance Process page
Expired
Citizen Poll
No votes cast
Additional Information
Print number: 118_HR_5310
Sponsor: Rep. Lieu, Ted [D-CA-36]
Process start date: 2023-08-29