(a)
Establishment— The Director shall enhance existing information exchange efforts implemented through partnerships with 1 or more Information Sharing and Analysis Organizations to focus specific attention on the needs of covered entities with regard to cybersecurity, including a new publicly accessible website (to be known as the “School Cybersecurity Information Exchange”) to disseminate information, cybersecurity best practices, training, and lessons learned tailored to the specific needs of, technical expertise of, and resources available to covered entities, in accordance with subsection (b).
(b)
Duties— In establishing the Information Exchange, the Director shall—
(1)
engage appropriate Federal, State, local, and nongovernmental organizations to identify, promote, and disseminate information and best practices for State educational agencies, local educational agencies, and educational service agencies with respect to cybersecurity, data protection, remote learning security, and student online privacy;
(2)
maintain a database through which an elementary school, secondary school, local educational agency, State educational agency, or educational service agency may identify cybersecurity tools and services funded by the Federal Government and tools and services recommended for purchase with State and local government funding; and
(3)
provide a searchable database through which covered entities may find and apply for funding opportunities to improve cybersecurity.
(c)
Consultation— In carrying out the duties under subsection (b), the Director shall consult with the following:
(1)
The Secretary of Education.
(2)
The Director of the National Institute of Standards and Technology.
(3)
The Federal Communications Commission.
(4)
The Director of the National Science Foundation.
(5)
The Federal Bureau of Investigation.
(6)
State and local leaders, including, when appropriate, Governors, employees of State departments and agencies, members of State legislatures and State boards of education, local educational agencies, State educational agencies, representatives of Indian Tribes, teachers, principals, other school leaders, charter school leaders, specialized instructional support personnel, paraprofessionals, school administrators, other school staff, and parents.
(7)
When determined appropriate by the Director, subject matter experts and expert organizations, including nongovernmental organizations, vendors of school information technology products and services, cybersecurity insurance companies, and cybersecurity threat companies.