Dear Attorney General Sessions, Secretary Mattis and Director Coats:
On July 25, 2016, the Federal Communications Commission (FCC) gave final approval to the North American Numbering Council (NANC) that Telcordia Technologies serve as the next local number portability administrator (LNPA). The LNPA is vital to the nation's critical communications infrastructure, public safety and virtually all significant criminal and national security investigations. Telcordia, a subsidiary of a foreign-owned company, will be responsible for routing millions of cellphone calls and text messages across the United States without an agreement on a rollback plan should the overhaul fail. The compressed timeline of this decision without a fallback plan and Telcordia's contentious history provide serious grounds for concern. That is why I am requesting an urgently needed Team Telecom review to assess the security risks of foreign ownership of the LNPA before the impending deadline on April 7, 2018.
Numerous stakeholders, including other lawmakers and the intelligence community, have heeded warnings regarding the transition to Telcordia without a workable contingency rollback plan. The North American Portability Management LLC's ("NAPM LLC") transition status report indicated that the lack of a contingency rollback plan remains a serious issue. Former Secretary of Homeland Security Michael Chertoff stated that the transition plan to Telcordia has "serious" problems and was "insufficient in both scope and specificity when compared with widely accepted national and international standards." Additionally, in a letter to stakeholders, Chairman Pai called the failure of parties to the LNPA transition to reach an agreement on a contingency rollback plan "unacceptable." Despite these concerns, the transition is set to begin as soon as April 7, 2018.
Just a year ago, a whistleblower revealed that Telcordia violated a federal requirement that only U.S. citizens could work on building the sensitive phone-number database for this project. Furthermore, the whistleblower was fired for revealing that Telcordia was using a chinese national to write the software code. In light of the national security breach, Telcordia was forced to rewrite the entire database computer code to mitigate concerns by intelligence officials. Following this incident, then Congressman Mike Pompeo sent a letter to the FCC in 2016 requesting that the agency thoroughly investigate the vendor's practice of permitting foreign nationals to write code and ensure that all national security and law enforcement requirements are met during the transition. The mishandling of U.S. computer code by a foreign company that will soon have access to our nation's most sensitive phone database should warrant skepticism.
While the database overhaul could save taxpayer dollars in management costs, it must not come at the risk of our national security. According to FCC Order 15-35, the FCC did not consult with Executive Branch entities with responsibility for law enforcement and national security matters regarding the LNPA selection. For that reason, I urge Team Telecom to issue an investigative review that proper rollback procedures are established before the transition takes place to ensure our critical infrastructure remains secure. Representatives charged with our national security should have the opportunity to carefully review this decision and implement an agreement on a rollback plan before the transition on April 7, 2018.
Thank you for your urgent attention to this matter.