Protecting Investments in Our Ports Act
A BILL
To amend title 46, United States Code, to require applicants for grants that propose to use digital infrastructure or a software component to certify the applicant has an approved security plan that addresses the cybersecurity risks of such digital infrastructure or software, and for other purposes.
Sec. 2 Port infrastructure development program application process
“(i) In general—To be eligible”
“(ii) Ensuring cybersecurity—If an applicant for a grant under this subsection is applying to use the grant to acquire digital infrastructure or a software component, such applicant shall—
“(I) certify the applicant has an approved security plan pursuant to section 70103(c) that addresses the cybersecurity risks of such digital infrastructure or software; or
“(II) provide a brief description in the application of how the applicant will address the cybersecurity risks of such digital infrastructure or software if the applicant does not have such approved security plan.
“(iii) Update of facility security plan—An applicant for a grant under this subsection applying to use such grant to acquire digital infrastructure or a software component that does not have an approved security plan pursuant to section 70103(c) that addresses the cybersecurity risks of such digital infrastructure or software shall ensure that the security plan under section 70103(c) of such applicant is updated to address the cybersecurity risks described in clause (ii)(II) in the next update required under paragraph (3)(G) of such section.”