H.R. 4611 · 117th Congress · House

DHS Software Supply Chain Risk Management Act of 2021

In Congress· Received in the Senate and Read twice and referred to the Committee on Homeland Security and Governmental Affairs.
Introduced
Jul 21, 21
Passed House
Oct 20, 21
Passed Senate
Pending
Sent to President
Pending
Signed into Law
Pending

Executive Summary

DHS Software Supply Chain Risk Management Act of 2021

This bill requires the Management Directorate of the Department of Homeland Security (DHS) to issue guidance regarding new and existing contracts relating to the procurement of information and communications technology or services.

The bill requires contractors to submit to DHS a bill of materials, a certification that each item in the bill of materials is free from certain security vulnerabilities or defects affecting the security of the end product or service, a notification of any identified vulnerability or defect, and a plan to mitigate, repair, or resolve any identified vulnerability or defect.

The Government Accountability Office must report to specified congressional committees with (1) a review of this bill's implementation; (2) information regarding DHS engagement with industry; (3) an assessment of how guidance issued pursuant to this bill complies with Executive Order 14208, relating to improving the nation's cybersecurity; and (4) any recommendations related to improving the supply chain for covered contracts.

Previous Versions

07Sep 14, 2021

DHS Software Supply Chain Risk Management Act of 2021

This bill requires the Management Directorate of the Department of Homeland Security (DHS) to issue guidance regarding new and existing contracts relating to the procurement of information and communications technology or services.

The bill requires contractors to submit to DHS a bill of materials, a certification that each item in the bill of materials is free from certain security vulnerabilities or defects affecting the security of the end product or service, a notification of any identified vulnerability or defect, and a plan to mitigate, repair, or resolve any identified vulnerability or defect.

The Government Accountability Office must report to specified congressional committees with (1) a review of this bill's implementation; (2) information regarding DHS engagement with industry; (3) an assessment of how guidance issued pursuant to this bill complies with Executive Order 14208, relating to improving the nation's cybersecurity; and (4) any recommendations related to improving the supply chain for covered contracts.

00Jul 21, 2021

DHS Software Supply Chain Risk Management Act of 2021

This bill requires the Management Directorate of the Department of Homeland Security (DHS) to issue guidance regarding new and existing contracts relating to the procurement of information and communications technology or services.

The bill requires contractors to submit to DHS a bill of materials, a certification that each item in the bill of materials is free from certain security vulnerabilities, a notification of any identified vulnerability, and a plan to mitigate any identified vulnerability.

Action Timeline

19
  1. OCT 21, 2021IntroReferral

    Received in the Senate and Read twice and referred to the Committee on Homeland Security and Governmental Affairs.

  2. OCT 20, 2021Floor

    Considered as unfinished business

    (consideration: CR H5698-5699)

    5698Yea
    5699Nay
    0NV
  3. OCT 20, 2021Floor

    Passed/agreed to in House

    Roll Call #319

    On motion to suspend the rules and pass the bill, as amended Agreed to by the Yeas and Nays: (2/3 required): 412 - 2 (Roll no. 319).(text: CR 9/29/2021 H5535)

    412Yea
    2Nay
    0NV
  4. OCT 20, 2021Floor

    On motion to suspend the rules and pass the bill, as amended Agreed to by the Yeas and Nays: (2/3 required): 412 - 2 (Roll no. 319). (text: CR 9/29/2021 H5535)

    Roll Call #319
    412Yea
    2Nay
    0NV
  5. OCT 20, 2021Floor

    Motion to reconsider laid on the table Agreed to without objection.

  6. SEP 29, 2021Floor

    Mr

    Thompson (MS) moved to suspend the rules and pass the bill, as amended.

  7. SEP 29, 2021Floor

    Considered under suspension of the rules

    (consideration: CR H5535-5536)

    5535Yea
    5536Nay
    0NV
  8. SEP 29, 2021Floor

    DEBATE - The House proceeded with forty minutes of debate on H.R. 4611.

  9. SEP 29, 2021Floor

    At the conclusion of debate, the Yeas and Nays were demanded and ordered

    Pursuant to the provisions of clause 8, rule XX, the Chair announced that further proceedings on the motion would be postponed.

  10. SEP 14, 2021Committee

    Reported (Amended) by the Committee on Homeland Security. H. Rept. 117-120.

    117Yea
    120Nay
    0NV
  11. SEP 14, 2021Committee

    Reported (Amended) by the Committee on Homeland Security. H. Rept. 117-120.

    117Yea
    120Nay
    0NV
  12. SEP 14, 2021Calendars

    Placed on the Union Calendar, Calendar No. 85.

  13. JUL 28, 2021Committee

    Subcommittee on Oversight, Management, and Accountability Discharged.

  14. JUL 28, 2021Committee

    Committee Consideration and Mark-up Session Held.

  15. JUL 28, 2021Committee

    Ordered to be Reported (Amended) by Voice Vote.

  16. JUL 22, 2021Committee

    Referred to the Subcommittee on Oversight, Management, and Accountability.

  17. JUL 21, 2021IntroReferral

    Introduced in House

  18. JUL 21, 2021IntroReferral

    Introduced in House

  19. JUL 21, 2021IntroReferral

    Referred to the House Committee on Homeland Security.

Committees

6

Homeland Security and Governmental Affairs Committee

ssga00

Referred: Oct 21, 2021

Active

Homeland Security Committee

hshm00

Referred: Sep 14, 2021

Active

Homeland Security Committee

hshm00

Referred: Jul 29, 2021

Active

Oversight, Investigations, and Accountability Subcommittee

hshm09

Referred: Jul 29, 2021

Active

Oversight, Investigations, and Accountability Subcommittee

hshm09

Referred: Jul 23, 2021

Active

Homeland Security Committee

hshm00

Referred: Jul 21, 2021

Active