Skip to main content
HR 4505 113th Congress House Armed Forces and National Security Computer security and identity theft Computers and information technology Congressional oversight Government studies and investigations Licensing and registrations Public contracts and procurement

DOD Cloud Security Act

Introduced: April 28, 2014 See on congress.gov
 Everywhere this bill has been 3 steps
Introduced
In committee
Reported out
Passed House
Passed Senate
To President
Became law
Jul 1, 2014
Referred to the Subcommittee on Intelligence, Emerging Threats & Capabilities.
Apr 28, 2014
Referred to the Committee on Armed Services, and in addition to the Committee on Oversight and Government Reform, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
Apr 28, 2014
Introduced in House
 Plain-English summary Congressional Research Service

DOD Cloud Security Act - Directs the Comptroller General to: (1) review and summarize the best practices relating to cloud security by reviewing the practices of other federal agencies and commercial cloud providers, (2) assess the cloud capacity of the Department of Defense (DOD) and other departments by assessing how and to what extent DOD has adopted commercial cloud practices, and (3) assess the opportunities for DOD to utilize cloud computing in lieu of or in addition to conventional computing.

Requires the Chief Information Officer of DOD to: (1) determine the security requirements that are necessary for any cloud service to store DOD information; (2) conduct a threat-based assessment of whether security controls resident in commercial cloud services and the cloud services of other federal agencies meet DOD's security requirements; (3) require any government-owned, operated, or unique system that is or will be designed to provide cloud capabilities for DOD to be certified and accredited through the same process used for commercial service providers; (4) ensure that, as part of any DOD pilot demonstrations with commercial cloud vendors, an analysis is conducted of the Defense Information Systems Agency working with commercial service providers operating for DOD; and (5) ensure that a briefing is provided to specified congressional committees within 30 days after the conclusion of such pilot demonstrations.

What's happening now July 1, 2014

Referred to the Subcommittee on Intelligence, Emerging Threats & Capabilities.

 Committees of jurisdiction 3