Skip to main content
HR 2866 118th Congress House Government Operations and Politics Computer security and identity theft Computers and information technology Congressional oversight Department of Homeland Security Executive agency funding and structure Government information and archives

Critical Technology Security Centers Act of 2023

Introduced: April 25, 2023 Introduced by: Torres, Ritchie Democratic · New York See on congress.gov
This bill died when the 118th Congress ended
It never became law before the 118th Congress (2023–2024) adjourned, and bills don't carry over to the next Congress. It would have to be reintroduced. You can still save it for reference, but it won't receive updates.
 Everywhere this bill has been 4 steps
Introduced
In committee
Reported out
Passed House
Passed Senate
To President
Became law
Apr 25, 2023
Referred to the Subcommittee on Emergency Management and Technology.
Apr 25, 2023
Introduced in House
Apr 25, 2023
Referred to the Subcommittee on Cybersecurity and Infrastructure Protection.
Apr 25, 2023
Referred to the House Committee on Homeland Security.
 Ask about this bill AI · grounded in the bill text

Have a question about what this bill does? Ask in plain English; the answer is drawn from the bill's actual text and official record, and it'll tell you when something isn't in the text rather than guess.

AI answers can be imperfect; always confirm against the full bill text.

 Plain-English summary Congressional Research Service

Critical Technology Security Centers Act of 2023

This bill directs the Science and Technology Directorate of the Department of Homeland Security, in coordination with the Cybersecurity and Infrastructure Security Agency (CISA), to support the establishment of at least two cybersecurity-focused Critical Technology Security Centers to evaluate and test the security of critical technology.

The centers shall leverage risk-based evaluations to focus on activities that have the greatest effect on the security of the critical technologies within each center's scope.

Each center must establish, in coordination with CISA, coordinated vulnerability disclosure processes. Vulnerabilities discovered by a center must be reported to the National Vulnerability Database of the National Institute of Standards and Technology.

Any center addressing open source software security may award grants to individual open source software developers and maintainers, nonprofit organizations, and other nonfederal entities to fund improvements in the security of the open source software ecosystem. Open source software is defined as software for which the human-readable source code is made available to the public for use, study, re-use, modification, enhancement, and redistribution.

Each center must report to the directorate on a biennial basis. The directorate shall then report to Congress.

What's happening now April 25, 2023

Referred to the Subcommittee on Emergency Management and Technology.

 Bill text 1 version

Source documents hosted by congress.gov.

 Committees of jurisdiction 3
Cite this page click to expand
APA
U.S. Congress. (2026). H.R. 2866: Critical Technology Security Centers Act of 2023. 118th Congress. Open America. https://openamerica.io/bill/118-HR-2866/
MLA
"H.R. 2866: Critical Technology Security Centers Act of 2023." 118th Congress, 2026, Open America, https://openamerica.io/bill/118-HR-2866/.
Bluebook (legal)
H.R. 2866, 118th Cong. (2026), https://openamerica.io/bill/118-HR-2866/.
Markdown link
[H.R. 2866: Critical Technology Security Centers Act of 2023](https://openamerica.io/bill/118-HR-2866/)
Report a problem