H.R. 5733 — what changed
DHS Industrial Control Systems Capabilities Enhancement Act of 2018
From Introduced in House to Reported in House. 1 section amended between Introduced in House and Reported in House.
Sec. 2 Capabilities of National Cybersecurity and Communications Integration Center to identify threats to industrial control systems
“(I) activities of the Center address the security of both information technology and operational technology, including industrial control systems;”
“(f) Industrial control systems—The Center shall maintain capabilities to identify and address threats and vulnerabilities to products and technologies intended for use in the automated control of critical infrastructure processes. In carrying out this subsection, the Center shall—
“(1) lead, in coordination with relevant sector specific agencies, Federal Government efforts to identify and mitigate cybersecurity threats to industrial control systems, including supervisory control and data acquisition systems;
“(2) maintain cross-sector incident response capabilities to respond to industrial control system cybersecurity incidents;
changed
“(3) provide cybersecurity technical assistance to industry end-users, product manufacturers, and other industrial control system stakeholders to identify and mitigate vulnerabilities; andvulnerabilities;
changed
“(4) conduct such other efforts collect, coordinate, and assistance as provide vulnerability information to the Secretary determines appropriate.”industrial control systems community by, as appropriate, working closely with security researchers, industry end-users, product manufacturers, and other industrial control systems stakeholders; and
added “(5) conduct such other efforts and assistance as the Secretary determines appropriate.”