2021 US Code
Title 15 - Commerce and Trade
Chapter 7 - National Institute of Standards and Technology
Sec. 278g-3d - Implementation of coordinated disclosure of security vulnerabilities relating to agency information systems, including Internet of Things devices

Download PDF
Citation 15 U.S.C. § 278g-3d (2021)
Section Name §278g–3d. Implementation of coordinated disclosure of security vulnerabilities relating to agency information systems, including Internet of Things devices
Section Text (a) Agency guidelines required

Not later than 2 years after December 4, 2020, the Director of OMB, in consultation with the Secretary, shall develop and oversee the implementation of policies, principles, standards, or guidelines as may be necessary to address security vulnerabilities of information systems (including Internet of Things devices).

(b) Operational and technical assistance

Consistent with section 3553(b) of title 44, the Secretary, in consultation with the Director of OMB, shall provide operational and technical assistance to agencies on reporting, coordinating, publishing, and receiving information about security vulnerabilities of information systems (including Internet of Things devices).

(c) Consistency with guidelines from National Institute of Standards and Technology

The Secretary shall ensure that the assistance provided under subsection (b) is consistent with applicable standards and publications developed by the Director of the Institute.

(d) Revision of Federal Acquisition Regulation

The Federal Acquisition Regulation shall be revised as necessary to implement the provisions under this section.

Source Credit

(Pub. L. 116–207, §6, Dec. 4, 2020, 134 Stat. 1005.)


Editorial Notes EDITORIAL NOTES CODIFICATION

Section was enacted as part of the Internet of Things Cybersecurity Improvement Act of 2020, also known as the IoT Cybersecurity Improvement Act of 2020, and not as part of the National Institute of Standards and Technology Act which comprises this chapter.


STATUTORY NOTES AND RELATED SUBSIDIARIES DEFINITIONS

For definitions of terms used in this section, see section 278g–3a of this title.

Publication Title United States Code, 2018 Edition, Supplement 3, Title 15 - COMMERCE AND TRADE
Category Bills and Statutes
Collection United States Code
SuDoc Class Number Y 1.2/5:
Contained Within Title 15 - COMMERCE AND TRADE
CHAPTER 7 - NATIONAL INSTITUTE OF STANDARDS AND TECHNOLOGY
Sec. 278g-3d - Implementation of coordinated disclosure of security vulnerabilities relating to agency information systems, including Internet of Things devices
Contains section 278g-3d
Date 2021
Laws In Effect As Of Date January 3, 2022
Positive Law No
Disposition standard
Statutes at Large References 134 Stat. 1005
Public Law References Public Law 116-207
Disclaimer: These codes may not be the most recent version. United States may have more current or accurate information. We make no warranties or guarantees about the accuracy, completeness, or adequacy of the information contained on this site or the information linked to on the state site. Please check official sources.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.