S 278 — Support for Rapid Innovation Act of 2018
Last action — Placed on Senate Legislative Calendar under General Orders. Calendar No. 735.
-
✓Introduced
-
2In Committee
-
3Passed Senate
-
4Passed House
-
5To Executive
-
6Enacted
This bill died with 115th Congress. It reached “In Committee” and never advanced before the session ended, so it can no longer move — a new version would have to be reintroduced in the current session.
This bill is no longer active — its legislative session has ended, so there are no live odds of enactment. It would have to be reintroduced in the current session to move again.
Bill Text
What changed in the latest version
253 added · 69 removedPlain-language change summary
The recent amendment to S 278 removed the section that provided a short title for the bill and some specific activities related to cybersecurity research and development. The changes focus on streamlining the support for cybersecurity projects, emphasizing a full life cycle approach to research, development, testing, evaluation, and transitions, while shifting away from explicitly listing several specific activities. This matters because it broadens the scope of activities that may be supported under the bill, allowing for more flexibility in addressing cybersecurity challenges.
278 IntroducedReported in Senate (IS)](RS)] <DOC> 115thCalendar CONGRESSNo. 1st Session S.
278735 To115th amendCONGRESS the2d HomelandSession SecurityS. Act of 2002 to provide for innovative research and development, and for other purposes.
278 [Report No.
115-444] To amend the Homeland Security Act of 2002 to provide for innovative research and development, and for other purposes.
which was read twice and referred to the Committee on Homeland Security and Governmental Affairs _______________________________________________________________________December A19, BILL2018 ToReported amendby theMr. Homeland Security Act of 2002 to provide for innovative research and development, and for other purposes.
BeJohnson, itwith enactedan byamendment [Strike out all after the Senateenacting clause and Houseinsert ofthe Representativespart ofprinted in italic] _______________________________________________________________________ A BILL To amend the UnitedHomeland StatesSecurity Act of America2002 into Congressprovide assembled,for SECTIONinnovative 1.research and development, and for other purposes.
Be it enacted by the Senate and House of Representatives of the United States of America in Congress assembled, <DELETED>SECTION 1.
SHORT TITLE.</DELETED> <DELETED> This Act may be cited as the ``Support for Rapid Innovation Act of 2017''.</DELETED> <DELETED>SEC.
2.
CYBERSECURITY RESEARCH AND DEVELOPMENT PROJECTS.</DELETED> <DELETED> (a) Cybersecurity Research and Development.--</DELETED> <DELETED> (1) In general.--Title III of the Homeland Security Act of 2002 (6 U.S.C.
181 et seq.) is amended by adding at the end the following new section:</DELETED> <DELETED>``SEC.
321.
CYBERSECURITY RESEARCH AND DEVELOPMENT.</DELETED> <DELETED> ``(a) In General.--The Under Secretary for Science and Technology shall support the research, development, testing, evaluation, and transition of cybersecurity technologies, including fundamental research to improve the sharing of information, information security, analytics, and methodologies related to cybersecurity risks and incidents, consistent with current law.</DELETED> <DELETED> ``(b) Activities.--The research and development supported under subsection (a) shall serve the components of the Department and shall--</DELETED> <DELETED> ``(1) advance the development and accelerate the deployment of more secure information systems;</DELETED> <DELETED> ``(2) improve and create technologies for detecting and preventing attacks or intrusions, including real- time continuous diagnostics, real-time analytic technologies, and full lifecycle information protection;</DELETED> <DELETED> ``(3) improve and create mitigation and recovery methodologies, including techniques and policies for real-time containment of attacks, and development of resilient networks and information systems;</DELETED> <DELETED> ``(4) support, in coordination with non-Federal entities, the review of source code that underpins critical infrastructure information systems;</DELETED> <DELETED> ``(5) assist the development and support infrastructure and tools to support cybersecurity research and development efforts, including modeling, testbeds, and data sets for assessment of new cybersecurity technologies;</DELETED> <DELETED> ``(6) assist the development and support of technologies to reduce vulnerabilities in industrial control systems;</DELETED> <DELETED> ``(7) assist the development and support cyber forensics and attack attribution capabilities;</DELETED> <DELETED> ``(8) assist the development and accelerate the deployment of full information lifecycle security technologies to enhance protection, control, and privacy of information to detect and prevent cybersecurity risks and incidents;</DELETED> <DELETED> ``(9) assist the development and accelerate the deployment of information security measures, in addition to perimeter-based protections;</DELETED> <DELETED> ``(10) assist the development and accelerate the deployment of technologies to detect improper information access by authorized users;</DELETED> <DELETED> ``(11) assist the development and accelerate the deployment of cryptographic technologies to protect information at rest, in transit, and in use;</DELETED> <DELETED> ``(12) assist the development and accelerate the deployment of methods to promote greater software assurance;</DELETED> <DELETED> ``(13) assist the development and accelerate the deployment of tools to securely and automatically update software and firmware in use, with limited or no necessary intervention by users and limited impact on concurrently operating systems and processes;
and</DELETED> <DELETED> ``(14) assist in identifying and addressing unidentified or future cybersecurity threats.</DELETED> <DELETED> ``(c) Coordination.--In carrying out this section, the Under Secretary for Science and Technology shall coordinate activities with--</DELETED> <DELETED> ``(1) the Under Secretary appointed pursuant to section 103(a)(1)(H);</DELETED> <DELETED> ``(2) the heads of other relevant Federal departments and agencies, as appropriate;
and</DELETED> <DELETED> ``(3) industry and academia.</DELETED> <DELETED> ``(d) Transition to Practice.--The Under Secretary for Science and Technology shall support projects carried out under this title through the full life cycle of such projects, including research, development, testing, evaluation, pilots, and transitions.
The Under Secretary shall identify mature technologies that address existing or imminent cybersecurity gaps in public or private information systems and networks of information systems, protect sensitive information within and outside networks of information systems, identify and support necessary improvements identified during pilot programs and testing and evaluation activities, and introduce new cybersecurity technologies throughout the homeland security enterprise through partnerships and commercialization.
The Under Secretary shall target federally funded cybersecurity research that demonstrates a high probability of successful transition to the commercial market within two years and that is expected to have a notable impact on the public or private information systems and networks of information systems.</DELETED> <DELETED> ``(e) Definitions.--In this section:</DELETED> <DELETED> ``(1) Cybersecurity risk.--The term `cybersecurity risk' has the meaning given such term in section 227.</DELETED> <DELETED> ``(2) Homeland security enterprise.--The term `homeland security enterprise' means relevant governmental and nongovernmental entities involved in homeland security, including Federal, State, local, and tribal government officials, private sector representatives, academics, and other policy experts.</DELETED> <DELETED> ``(3) Incident.--The term `incident' has the meaning given such term in section 227.</DELETED> <DELETED> ``(4) Information system.--The term `information system' has the meaning given such term in section 3502(8) of title 44, United States Code.</DELETED> <DELETED> ``(5) Software assurance.--The term `software assurance' means confidence that software--</DELETED> <DELETED> ``(A) is free from vulnerabilities, either intentionally designed into the software or accidentally inserted at any time during the life cycle of the software;
and</DELETED> <DELETED> ``(B) functioning in the intended manner.''.</DELETED> <DELETED> (2) Clerical amendment.--The table of contents in section 1(b) of the Homeland Security Act of 2002 is amended by inserting after the item relating to the second section 319 the following new item:</DELETED> <DELETED>``Sec.
321.
Cybersecurity research and development.''.
<DELETED> (b) Research and Development Projects.--Section 831 of the Homeland Security Act of 2002 (6 U.S.C.
391) is amended--</DELETED> <DELETED> (1) in subsection (a)--</DELETED> <DELETED> (A) in the matter preceding paragraph (1), by striking ``2016'' and inserting ``2021'';</DELETED> <DELETED> (B) in paragraph (1), by striking the last sentence;
and</DELETED> <DELETED> (C) by adding at the end the following new paragraph:</DELETED> <DELETED> ``(3) Prior approval.--In any case in which the head of a component or office of the Department seeks to utilize the authority under this section, such head shall first receive prior approval from the Secretary by providing to the Secretary a proposal that includes the rationale for the utilization of such authority, the funds to be spent on the use of such authority, and the expected outcome for each project that is the subject of the use of such authority.
In such a case, the authority for evaluating the proposal may not be delegated by the Secretary to anyone other than the Under Secretary for Management.'';</DELETED> <DELETED> (2) in subsection (c)--</DELETED> <DELETED> (A) in paragraph (1), in the matter preceding subparagraph (A), by striking ``2016'' and inserting ``2021'';
and</DELETED> <DELETED> (B) by amending paragraph (2) to read as follows:</DELETED> <DELETED> ``(2) Report.--The Secretary shall annually submit to the Committee on Homeland Security and the Committee on Science, Space, and Technology of the House of Representatives and the Committee on Homeland Security and Governmental Affairs of the Senate a report detailing the projects for which the authority granted by subsection (a) was utilized, the rationale for such utilizations, the funds spent utilizing such authority, the extent of cost-sharing for such projects among Federal and non-Federal sources, the extent to which utilization of such authority has addressed a homeland security capability gap or threat to the homeland identified by the Department, the total amount of payments, if any, that were received by the Federal Government as a result of the utilization of such authority during the period covered by each such report, the outcome of each project for which such authority was utilized, and the results of any audits of such projects.'';
and</DELETED> <DELETED> (3) by adding at the end the following new subsection:</DELETED> <DELETED> ``(e) Training.--The Secretary shall develop a training program for acquisitions staff on the utilization of the authority provided under subsection (a) to ensure accountability and effective management of projects consistent with the Program Management Improvement Accountability Act (Public Law 114-264) and the amendments made by such Act.''.</DELETED> <DELETED> (c) No Additional Funds Authorized.--No additional funds are authorized to carry out the requirements of this Act and the amendments made by this Act.
Such requirements shall be carried out using amounts otherwise authorized.</DELETED> SECTION 1.
This Act may be cited as the ``Support for Rapid Innovation Act of 2017''.2018''.
181 et seq.) is amended by adding at the end the followingfollowing: new section:
``(2) improve and create technologies for detecting and preventing attacks or intrusions, including real-time continuous diagnostics, real-time analytic technologies, and full lifecyclelife cycle information protection;
``(3) improve and create mitigation and recovery methodologies, including techniques and policies for real-time containment of attacks,attacks and development of resilient networks and information systems;
``(4) support,assist inthe coordinationdevelopment withand non-Federalsupport entities,of theinfrastructure reviewand oftools sourceto codesupport thatcybersecurity underpinsresearch criticaland infrastructuredevelopment informationefforts, systems;including modeling, testbeds, and data sets for assessment of new cybersecurity technologies;
``(5) assist the development and support infrastructureof andtechnologies tools to supportreduce cybersecurityvulnerabilities researchin andindustrial developmentcontrol efforts,systems; including modeling, testbeds, and data sets for assessment of new cybersecurity technologies;
``(6) assist the development and support of technologiescyber toforensics reduceand vulnerabilitiesattack inattribution industrialcapabilities; control systems;
``(7) assist the development and supportaccelerate cyberthe forensicsdeployment of full information life cycle security technologies to enhance protection, control, and attackprivacy attributionof capabilities;information and to detect and prevent cybersecurity risks and incidents;
``(8) assist the development and accelerate the deployment of full information lifecycle security technologiesmeasures, toin enhanceaddition protection, control, and privacy of information to detectperimeter- andbased preventprotections; cybersecurity risks and incidents;
``(9) assist the development and accelerate the deployment of informationtechnologies securityto measures,detect inimproper additioninformation toaccess perimeter-by basedauthorized protections;users;
``(10) assist the development and accelerate the deployment of cryptographic technologies to detectprotect improper information accessat byrest, authorizedin users;transit, and in use;
``(11) assist the development and accelerate the deployment of cryptographicmethods technologies to protectpromote informationgreater atsoftware rest,assurance; in transit, and in use;
``(12) assist the development and accelerate the deployment of methodstools to promotesecurely greaterand automatically update software assurance;and firmware in use, with limited or no necessary intervention by users and limited impact on concurrently operating systems and processes;
Show all 74 changed lines (34 more)
and ``(13) assist thein developmentidentifying and accelerateaddressing theunidentified deployment of tools to securely and automatically update software and firmware in use, with limited or nofuture necessarycybersecurity interventionthreats. by users and limited impact on concurrently operating systems and processes;
and ``(14) assist in identifying and addressing unidentified or future cybersecurity threats.
``(d) Transition to Practice.--The Under Secretary for Science and Technology shallshall-- ``(1) support projects carried out under this title through the full life cycle of such projects, including research, development, testing, evaluation, pilots, and transitions.transitions;
The``(2) Under Secretary shall identify mature technologies that address existing or imminent cybersecurity gaps in public or private information systems and networks of information systems, protect sensitive information within and outside networks of information systems, identify and support necessary improvements identified during pilot programs and testing and evaluation activities, and introduce new cybersecurity technologies throughout the homeland security enterprise through partnerships and commercialization.commercialization;
Theand Under``(3) Secretary shall target federally funded cybersecurity research that demonstrates a high probability of successful transition to the commercial market within two2 years and that is expected to have a notable impact on the public or private information systems and networks of information systems.
``(1) Cybersecurity risk.--The term `cybersecurity risk' has the meaning given suchthe term in section 227.
``(3) Incident.--The term `incident' has the meaning given suchthe term in section 227.
``(4) Information system.--The term `information system' has the meaning given suchthe term in section 3502(8)3502 of title 44, United States Code.
(2) Clerical amendment.--The table of contents in section 1(b) of the Homeland Security Act of 2002 is(Public amendedLaw by107-296; inserting after the item relating to the second section 319 the following new item:
Stat.
2135) is amended by inserting after the item relating to the second section 319 the following:
391) is amended-- (1) in subsection (a)-- (A) in the matter preceding paragraph (1), by striking ``2016''``2017'' and inserting ``2021'';``2022'';
and (B) in paragraph (1),(2), by striking ``under section of the lastNational sentence;Defense Authorization Act for Fiscal Year 1994 (Public Law 103-160).
In applying the authorities of that section 845, subsection (c) of that section shall apply with respect to prototype projects under this paragraph, and (C)the bySecretary addingshall atperform the endfunctions of the followingSecretary newof paragraph:Defense under subsection (d) thereof'' and inserting ``under section 2371b of title 10, United States Code, and the Secretary shall perform the functions of the Secretary of Defense as prescribed'';
``(3)(2) Priorin approval.--Insubsection any(c)-- case(A) in whichparagraph the(1), headin of a component or office of the Departmentmatter seekspreceding tosubparagraph utilize(A), the authority under this section, such head shall first receive prior approval from the Secretary by providingstriking to``2017'' the Secretary a proposal that includes the rationale for the utilization of such authority, the funds to be spent on the use of such authority, and theinserting expected``2022''; outcome for each project that is the subject of the use of such authority.
In such a case, the authority for evaluating the proposal may not be delegated by the Secretary to anyone other than the Under Secretary for Management.'';
(2) in subsection (c)-- (A) in paragraph (1), in the matter preceding subparagraph (A), by striking ``2016'' and inserting ``2021'';
``(2) Report.--The Secretary shall annually submit to the Committee on Homeland Security and the Committee on Science, Space, and Technology of the House of Representatives and the Committee on Homeland Security and Governmental Affairs of the Senate a report detailingdetailing-- ``(A) the projects for which the authority granted by subsection (a) was utilized,utilized; the rationale for such utilizations, the funds spent utilizing such authority, the extent of cost-sharing for such projects among Federal and non- Federal sources, the extent to which utilization of such authority has addressed a homeland security capability gap or threat to the homeland identified by the Department, the total amount of payments, if any, that were received by the Federal Government as a result of the utilization of such authority during the period covered by each such report, the outcome of each project for which such authority was utilized, and the results of any audits of such projects.'';
and``(B) (3) by adding at the endrationale thefor followingthose newutilizations; subsection:
``(C) the funds spent utilizing that authority;
``(D) the extent of cost-sharing for those projects among Federal and non-Federal sources;
``(E) the extent to which utilization of that authority has addressed a homeland security capability gap or threat to the homeland identified by the Department;
``(F) the total amount of payments, if any, that were received by the Federal Government as a result of the utilization of that authority during the period covered by the report;
``(G) the outcome of each project for which that authority was utilized;
and ``(H) the results of any audits of those projects.'';
(3) in subsection (d), by striking ``as defined in section 845(e) of the National Defense Authorization Act for Fiscal Year 1994 (Public Law 103-160;
10 U.S.C.
2371 note)'' and inserting ``as defined in section 2302 of title 10, United States Code'';
and (4) by adding at the end the following:
<all>Calendar No.
735 115th CONGRESS 2d Session S.
278 [Report No.
115-444] _______________________________________________________________________ A BILL To amend the Homeland Security Act of 2002 to provide for innovative research and development, and for other purposes.
_______________________________________________________________________ December 19, 2018 Reported with an amendment
Show all 74 changed rows (34 more)
View plain text versions (2)
- Reported Reported to Senate Current html December 19, 2018
- Introduced Introduced in Senate html February 02, 2017
Action History
-
Introduced in Senate
-
Read twice and referred to the Committee on Homeland Security and Governmental Affairs. (Sponsor introductory remarks on measure: CR S657-658; text of measure as introduced: CR S658)
-
Committee on Homeland Security and Governmental Affairs. Ordered to be reported with an amendment in the nature of a substitute favorably.
-
Committee on Homeland Security and Governmental Affairs. Reported by Senator Johnson with an amendment in the nature of a substitute. With written report No. 115-444.
-
Committee on Homeland Security and Governmental Affairs. Reported by Senator Johnson with an amendment in the nature of a substitute. With written report No. 115-444.
-
Placed on Senate Legislative Calendar under General Orders. Calendar No. 735.
Sponsors
- Steve Daines · Primary
Sponsorship breakdown
Export CSV (upgrade) →1 sponsors · 0 co-sponsors · 546 not signed on
Sponsors (1)
- Daines, Steve Republican
Co-sponsors (0)
None.
Not signed on (546)
546 members have not signed on to this bill.
Show all 546 →"Not signed on" means a member has not sponsored or co-sponsored this bill — it does not imply opposition. Members flagged Voted No have a recorded No vote on this bill.
Subjects
Frequently asked questions
- Who sponsors S 278?
- S 278 is sponsored by Daines, Steve (Republican).
- What is the current status of S 278?
- This bill died with 115th Congress. It reached “In Committee” and never advanced before the session ended, so it can no longer move — a new version would have to be reintroduced in the current session.
- Where can I track S 278?
- Track S 278 free on One Click Politics — get push/email alerts when it moves.
Make your voice heard on S 278
Find the representatives who decide this bill and tell them where you stand — for yourself, or mobilize your whole list in one click with One Click Politics advocacy software.
Stay ahead of S 278
Last checked for changes 3 months ago · updated continuously
One Click Politics tracks every bill in Congress and all 50 states.
Track this bill →