To amend the Homeland Security Act of 2002 to establish the duties of the Director of the Cybersecurity and Infrastructure Security Agency regarding open source software security, and for other purposes.
Securing Open Source Software Act of 2023
This bill sets forth the duties of the Cybersecurity and Infrastructure Security Agency (CISA) regarding open source software security.
Open source software means software for which the human-readable source code is made available to the public for use, study, reuse, modification, enhancement, and redistribution.
Specifically, CISA must
CISA must (1) publish a framework, incorporating government, private sector, and open source software community frameworks and best practices, for assessing the risk of open source software components; (2) update the framework at least annually; and (3) ensure, to the greatest extent practicable, that the framework is usable by the open source software community.
The bill requires CISA to assess open source software components deployed on high value assets at federal agencies based on the framework and provides for a pilot assessment of critical infrastructure.
CISA's Cybersecurity Advisory Committee may establish a software security subcommittee.
Introduced in House
Introduced in House
Referred to the Committee on Homeland Security, and in addition to the Committee on Oversight and Accountability, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
Referred to the Committee on Homeland Security, and in addition to the Committee on Oversight and Accountability, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
Committee Consideration and Mark-up Session Held.
Ordered to be Reported (Amended) by Voice Vote.
Reported (Amended) by the Committee on Homeland Security. H. Rept. 118-160, Part I.
Reported (Amended) by the Committee on Homeland Security. H. Rept. 118-160, Part I.
Committee on Oversight and Accountability discharged.
Committee on Oversight and Accountability discharged.
Placed on the Union Calendar, Calendar No. 127.
checking server…
Ask anything about this bill. The AI reads the full text to answer.
Enter to send · Shift+Enter for new line