On the recordMarch 3, 2025
I thank my friend and the distinguished chairman of the Committee on Oversight and Government Reform, the gentleman from Kentucky (Mr. Comer), for yielding. I thank both the chairman and the ranking member, Mr. Connolly, for their leadership on this critical issue, not only in this congressional session but the last one, as well. Mr. Speaker, I rise today in strong support of my bill, H.R. 872, the Federal Contractor Cybersecurity Vulnerability Reduction Act. In 2020, the Office of Management and Budget directed Federal agencies to implement cybersecurity vulnerability disclosure policies. These policies enable third-party researchers and white hat hackers to work with the Federal Government to proactively identify and patch vulnerabilities in information systems before a cyberattack takes place. Mr. Speaker, we all know how critically important it is, particularly with systems that are older than some of us in this room, that these vulnerability disclosure policies require these third parties to notify the Federal agency of any sensitive data they encounter, like personally identifiable information, financial information, proprietary information, or trade secrets. This allows cybersecurity vulnerability to be addressed and data to be secured before it is exploited by malign actors, including our adversaries. My colleagues know that malign actors affiliated with China, Russia, Iran, and others are after us all day, every day, 365 days a year.…
Source
govinfo.gov




