PoliticalRepoPoliticalRepo

United States · Bill · S

S. 1993 (106th)

Government Information Security Act

openUnited States· United States Congress· EN

Introduced

19 November 1999

Last action

Status

Placed on Senate Legislative Calendar under General Orders. Calendar No. 489.

Sponsors

Subjects

Discovery layer

Source updated

7 April 2025

Summary

Government Information Security Act of 1999 - Requires the Director of the Office of Management and Budget to establish government-wide policies for the management of programs that support the cost-effective security of Federal information systems by promoting security as an integral part of each agency's business operations. Requires such policies to: (1) be founded on a continuous risk management cycle; (2) implement controls that adequately address the risk; (3) promote continuing awareness of information security risks; (4) continually monitor and evaluate information security policy; and (5) control effectiveness of information security practices. Outlines information security responsibilities of each agency, including the development and implementation of an agency-wide program to provide information security for the operations and assets of such agency. Makes each program subject to Director approval and annual review by agency program officials. Requires each agency to annually undergo an independent evaluation of its information security program and practices. Requires related reports. Requires the: (1) Department of Commerce to develop, issue, review, and update standards and guidance for the security of information in Federal computer systems; (2) Department of Justice to review and update guidance to agencies on legal remedies regarding security incidents and coordination with law enforcement agencies concerning such incidents; (3) General Services Administration to review and update guidance on addressing security considerations relating to the acquisition of information technology; and (4) Office of Personnel Management to review and update regulations concerning computer security training for Federal civilian employees.

This text is taken from the official record. PoliticalRepo does not editorialize.

Timeline

No timeline events have been ingested for this record yet.

Votes

No vote records are attached yet.

Versions

No version snapshots stored. Document URLs remain at the source.

Documents

6 official files

Reported to Senate (text)

View fileDownload file

Sponsors

No sponsors or actors listed by the source.

Related records

No cross-record relationships stored yet.

Sources

PoliticalRepo is an index and interpretation layer, not the authoritative legal source.