Skip to main content
S 4785 116th Congress Senate Economics and Public Finance

Risk-Informed Spending for Cybersecurity Act

Introduced: October 1, 2020 See on congress.gov
 Everywhere this bill has been 2 steps
Introduced
In committee
Reported out
Passed House
Passed Senate
To President
Became law
Oct 1, 2020
Read twice and referred to the Committee on Homeland Security and Governmental Affairs.
Oct 1, 2020
Introduced in Senate
 Plain-English summary Congressional Research Service

Risk-Informed Spending for Cybersecurity Act

This bill requires the Office of Management and Budget, in coordination with the Cybersecurity and Infrastructure Security Agency, to develop a standard model for creating a risk-based budget for cybersecurity spending.

The risk-based budget must (1) be developed by identifying and prioritizing cybersecurity risks and vulnerabilities through analysis of threat intelligence, incident data, and tactics, techniques, procedures, and capabilities of cyber threats; and (2) allocate resources based on the risks identified and prioritized.

Within two years of the development of the model, federal agencies must begin using the model to develop annual cybersecurity and information technology budget requests.

What's happening now October 1, 2020

Read twice and referred to the Committee on Homeland Security and Governmental Affairs.

 Committees of jurisdiction 1