Skip to main content
HR 6541 117th Congress House Science, Technology, Communications Computer security and identity theft Computers and information technology Congressional oversight Government information and archives Intergovernmental relations Internet, web applications, social media Small business

Improving Cybersecurity of Small Businesses, Nonprofits, and Local Governments Act

Introduced: February 1, 2022 See on congress.gov
This bill died when the 117th Congress ended
It never became law before the 117th Congress (2021–2022) adjourned, and bills don't carry over to the next Congress. It would have to be reintroduced. You can still save it for reference, but it won't receive updates.
 Everywhere this bill has been 3 steps
Introduced
In committee
Reported out
Passed House
Passed Senate
To President
Became law
Feb 2, 2022
Referred to the Subcommittee on Cybersecurity, Infrastructure Protection, and Innovation.
Feb 1, 2022
Referred to the Committee on Small Business, and in addition to the Committee on Homeland Security, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
Feb 1, 2022
Introduced in House
 Ask about this bill AI · grounded in the bill text

Have a question about what this bill does? Ask in plain English; the answer is drawn from the bill's actual text and official record, and it'll tell you when something isn't in the text rather than guess.

AI answers can be imperfect; always confirm against the full bill text.

 Plain-English summary Congressional Research Service

Improving Cybersecurity of Small Businesses, Nonprofits, and Local Governments Act

This bill requires reporting and other efforts to improve the cybersecurity of small entities. These include small businesses, governments (or certain governmental bodies) that represent populations of less than 50,000, and small nonprofits.

Specifically, the Cybersecurity and Infrastructure Security Agency (CISA) must periodically report on and make recommendations about cybersecurity policies and controls for small entities. CISA, the Small Business Administration (SBA), and the Minority Business Development Agency must (1) promote the report, including by making it available through their respective websites; and (2) make voluntary training and technical assistance available to employees of small entities concerning cybersecurity recommendations identified in the report.

In addition, the Department of Commerce must report to Congress about improving the cybersecurity of small entities. Further, the SBA must collect information from small businesses concerning cybersecurity matters and report to Congress about the cybersecurity of small businesses.

What's happening now February 2, 2022

Referred to the Subcommittee on Cybersecurity, Infrastructure Protection, and Innovation.

 Related & companion bills 1
 Bill text 1 version

Source documents hosted by congress.gov.

 Committees of jurisdiction 3
Cite this page click to expand
APA
U.S. Congress. (2026). H.R. 6541: Improving Cybersecurity of Small Businesses, Nonprofits, and Local Governments Act. 117th Congress. Open America. https://openamerica.io/bill/117-HR-6541/
MLA
"H.R. 6541: Improving Cybersecurity of Small Businesses, Nonprofits, and Local Governments Act." 117th Congress, 2026, Open America, https://openamerica.io/bill/117-HR-6541/.
Bluebook (legal)
H.R. 6541, 117th Cong. (2026), https://openamerica.io/bill/117-HR-6541/.
Markdown link
[H.R. 6541: Improving Cybersecurity of Small Businesses, Nonprofits, and Local Governments Act](https://openamerica.io/bill/117-HR-6541/)
Report a problem