Ask AI
H.R. 3635

Safe and Secure Federal Websites Act of 2014

Safe and Secure Federal Websites Act of 2014 - (Sec. 2) Prohibits a federal agency from deploying or making available to the public a new federal personally identifiable information website (new Federal PII Website) until the chief information officer of the agency submits a certification to Congress that the website is fully functional and secure, as those terms are defined by this Act. Defines "new Federal PII website" as a website that: (1) is operated by (or under contract with) an agency; (2) elicits, collects, stores, or maintains personally identifiable information (i.e., information that can be used to identify an individual, such as a social security number, a date and place of birth, a mother's maiden name, biometric records, or other information linked to an individual); and (3) is first made accessible to the public and collects or stores personally identifiable information on or after October 1, 2012.

Exempts beta websites designed for testing and development if users execute an agreement acknowledging the risks involved.

(Sec. 3) Directs the Director of the Office of Management and Budget (OMB) to establish and oversee policies and procedures for federal agencies to follow in the event of a breach of information security involving the disclosure of personally identifiable information, including: (1) notice, not later than 72 hours after discovery of a breach or possible breach, to individuals whose personally identifiable information could be compromised as a result of such breach; (2) timely reporting to a federal cyber security center designated by this Act; and (3) any additional actions that the Director finds necessary and appropriate.

Requires: (1) agency heads to ensure that agency actions taken in response to a breach comply with OMB policies and procedures established by this Act; and (2) the OMB Director to report to Congress, not later than March 1 of each year, on agency compliance with such policies and procedures.

Received in the Senate and Read twice and referred to the Committee on Homeland Security and Governmental Affairs.

Rep. Bentivolio, Kerry L. [R-MI-11](R-MI)Sponsor
126 cosponsors1 D125 R
126cosponsors3committees15actions9subjects
  • Referred in SenateJul 29, 2014
  • Reported in HouseJul 28, 2014
  • Engrossed in HouseJul 28, 2014
  • Introduced in HouseDec 3, 2013
  1. IntroReferral

    Received in the Senate and Read twice and referred to the Committee on Homeland Security and Governmental Affairs.

  2. FloorH38310

    Motion to reconsider laid on the table Agreed to without objection.

  3. FloorH37300

    On motion to suspend the rules and pass the bill, as amended Agreed to by voice vote. (text: CR H6935-6936)

  4. Floor8000

    Passed/agreed to in House: On motion to suspend the rules and pass the bill, as amended Agreed to by voice vote.(text: CR H6935-6936)

  5. FloorH8D000

    DEBATE - The House proceeded with forty minutes of debate on H.R. 3635.

  6. FloorH30000

    Considered under suspension of the rules. (consideration: CR H6935-6936)

  7. FloorH30300

    Mr. Bentivolio moved to suspend the rules and pass the bill, as amended.

  8. CalendarsH12410

    Placed on the Union Calendar, Calendar No. 421.

  9. CommitteeH12200

    Reported (Amended) by the Committee on Oversight and Government Reform. H. Rept. 113-562.

  10. Committee5000

    Reported (Amended) by the Committee on Oversight and Government Reform. H. Rept. 113-562.

  11. Committee

    Ordered to be Reported in the Nature of a Substitute (Amended) by Voice Vote.

  12. Committee

    Committee Consideration and Mark-up Session Held.

  13. IntroReferralH11100

    Referred to the House Committee on Oversight and Government Reform.

  14. IntroReferralIntro-H

    Introduced in House

  15. IntroReferral1000

    Introduced in House

Jul 28, 201436

Safe and Secure Federal Websites Act of 2014 - (Sec. 2) Prohibits a federal agency from deploying or making available to the public a new federal personally identifiable information website (new Federal PII Website) until the chief information officer of the agency submits a certification to Congress that the website is fully functional and secure, as those terms are defined by this Act. Defines "new Federal PII website" as a website that: (1) is operated by (or under contract with) an agency; (2) elicits, collects, stores, or maintains personally identifiable information (i.e., information that can be used to identify an individual, such as a social security number, a date and place of birth, a mother's maiden name, biometric records, or other information linked to an individual); and (3) is first made accessible to the public and collects or stores personally identifiable information on or after October 1, 2012.

Exempts beta websites designed for testing and development if users execute an agreement acknowledging the risks involved.

(Sec. 3) Directs the Director of the Office of Management and Budget (OMB) to establish and oversee policies and procedures for federal agencies to follow in the event of a breach of information security involving the disclosure of personally identifiable information, including: (1) notice, not later than 72 hours after discovery of a breach or possible breach, to individuals whose personally identifiable information could be compromised as a result of such breach; (2) timely reporting to a federal cyber security center designated by this Act; and (3) any additional actions that the Director finds necessary and appropriate.

Requires: (1) agency heads to ensure that agency actions taken in response to a breach comply with OMB policies and procedures established by this Act; and (2) the OMB Director to report to Congress, not later than March 1 of each year, on agency compliance with such policies and procedures.

Dec 3, 2013

Safe and Secure Federal Websites Act of 2013 - Prohibits a federal agency from deploying or making available to the public a new Federal PII website until a certification is submitted to Congress that the website is fully functional and secure, as defined by this Act. Defines "new Federal PII website" as a website that: (1) is operated by (or under contract with) an agency; (2) elicits, collects, or stores personally identifiable information (i.e., information that can be associated with one individual through a social security account number, taxpayer identification number, state identification number, or other identifier) of individuals and is accessible to the public; and (3) is first made accessible or collects or stores personally identifiable information on or after July 1, 2013. Exempts beta websites designed for testing and development if users execute an agreement acknowledging the risks involved.

Directs the Comptroller General (GAO) to study and report on each current and future new Federal PII website.

Safe and Secure Federal Websites Act of 2014 — Informed