Homeland Security Committee Passes Bipartisan Portman Bill to Strengthen Cybersecurity Coordination with State and Local Governments

Press Release

Date: June 19, 2019
Location: Washington, D.C

Today, the Homeland Security and Governmental Affairs Committee passed bipartisan legislation led by U.S. Senators Rob Portman (R-OH) and Gary Peters (D-MI) to promote stronger cybersecurity coordination between the Department of Homeland Security (DHS) and state and local governments to safeguard against cyber threats. The State and Local Government Cybersecurity Act will encourage national cybersecurity watchdogs to share information regarding cybersecurity threats, vulnerabilities, breaches and resources to prevent and recover from cyberattacks with states and localities who are increasingly targeted by bad actors. The legislation now awaits action on the Senate floor.

"Hackers with malicious intent can and do attack state and local cyber infrastructure consistently. Sometimes, state and local governments need some additional help or access to expertise to mitigate these threats," said Senator Portman. "I applaud the committee for passing this bill that will improve coordination and information sharing between the Department of Homeland Security and state and local partners to help protect our IT infrastructure at all levels of government. I urge all of my colleagues to support this legislation when it comes to the Senate floor."

NOTE: In recent years, several state and local governments have been targeted by high-profile cyberattacks, costing taxpayers millions of dollars and threatening the data privacy of millions of Americans. Hackers have exposed cybersecurity vulnerabilities in the city of Atlanta and at the Colorado Department of Transportation, and more recently seized control over parts of the computer systems for the City of Baltimore. State and local governments are an attractive target because they possess a broad array of information about their citizens but often do not have the tools to adequately safeguard their systems. Financial constraints, limited resources and outdated equipment can all hinder local governments' efforts to safeguard the personal data they collect.

The Multi-State Information Sharing and Analysis Center (MS-ISAC) is DHS's round-the-clock cyber threat monitoring and mitigation center for state and local governments, operating in all 50 states and 6 territories to provide cybersecurity resources to the public and private sectors. For example, in Ohio, there are several state agencies that are members and over 160 local governments and agencies are members of the MS-ISAC. The National Cybersecurity and Communications Integration Center (NCCIC) is the DHS branch tasked with coordinating various aspects of the federal government's cybersecurity efforts and with organizing national responses to significant cyber incidents.

The State and Local Government Cybersecurity Act will facilitate coordination between DHS and state and local governments in several key areas. The legislation permits the NICCIC to provide guidance and training, upon request, to state and local governments on combatting cybersecurity threats and safeguarding critical infrastructure. The bill authorizes the NCCIC to provide state and local actors with access to improved security tools, policies and procedures, and encourages collaboration for the effective implementation of those resources, including the ability to conduct joint cyber exercises to test cybersecurity systems. The legislation builds on previous efforts by the MS-ISAC that identified Russian attempts to interfere in American elections systems, and strengthen collaboration to prevent, protect, and respond to future cybersecurity incidents. These changes will support the cybersecurity needs of election officials and their staffs, providing access to hardware and software products that will allow states and localities to bolster their cyber defenses.


Source
arrow_upward