Us Code § 2412 - Cybersecurity Risk Inventory, Assessment, and Mitigation Working Group

Full text of Us Code United States Code § 2412 — Cybersecurity Risk Inventory, Assessment, and Mitigation Working Group, with citation guidance and answers to common questions.

§ 2412. Cybersecurity Risk Inventory, Assessment, and Mitigation Working Group

(a) Establishment

There is in the Administration a working group, to be known as the "Cybersecurity Risk Inventory, Assessment, and Mitigation Working Group" (referred to in this section as the "working group").

(b) Membership

Members of the working group shall include—

(1) the Deputy Administrator for Defense Programs;

(2) the Associate Administrator for Information Management and Chief Information Officer; and

(3) such other personnel of the Administration as are determined appropriate for inclusion in the working group by the Chairperson.

(c) Chairperson

The Deputy Administrator for Defense Programs shall serve as the Chairperson of the working group, except that the Administrator may designate another member of the working group to serve as Chairperson in lieu of the Deputy Administrator if the Administrator determines it is appropriate to do so.

(d) Comprehensive strategy

The working group shall prepare a comprehensive strategy for inventorying the range of systems of the Administration that are potentially at risk in the operational technology and nuclear weapons information technology environments, assessing the systems at risk based on mission impact, and implementing risk mitigation actions. Such strategy shall incorporate key elements of effective cybersecurity risk management strategies, as identified by the Government Accountability Office, including the specification of—

(1) goals, objectives, activities, and performance measures;

(2) organizational roles, responsibilities, and coordination;

(3) resources needed to implement the strategy through 2034; and

(4) detailed milestones and schedules for completion of tasks.

(e) Submission to Congress

(1) Interim briefing

Not later than 120 days after December 22, 2023, the working group shall provide to the congressional defense committees a briefing on the plan of the working group to develop the strategy required under subsection (d).

(2) Completed strategy

Not later than April 1, 2025, the working group shall submit the congressional defense committees a copy of the completed strategy.

(f) Termination

The working group shall terminate on a date determined by the Administrator that is not earlier than the date that is five years after December 22, 2023.

(Pub. L. 106–65, div. C, title XXXII, §3222, as added Pub. L. 118–31, div. C, title XXXI, §3113, Dec. 22, 2023, 137 Stat. 789.)

SUBCHAPTER II—MATTERS RELATING TO SECURITY

About This Section

50 U.S.C. § 2412 is part of Title 50 of the United States Code. The United States Code is the official codification of federal statutes maintained by the Office of the Law Revision Counsel of the U.S. House of Representatives. Congress amends the Code through new public laws, which are eventually incorporated into the relevant title.

This section may be cited in legal writing as 50 U.S.C. § 2412. For the most current official text, including any recent amendments, use the official source links below. Do not rely on this page as the sole authority for legal citation or litigation.

How to Read This Statute

Statutes are organized by title, chapter, section, and subsection. Pay attention to words like "shall," "may," "and," and "or," because they determine whether a requirement is mandatory or permissive and whether multiple conditions must all be met. Historical notes and amendments often appear at the end of a section.

Using This Page

This page is intended for research and educational use. Lawyers, students, journalists, and compliance professionals can use it as a starting point, but should always verify the current text through an official government source before relying on it for legal advice, filings, or compliance decisions.

Sources

Frequently Asked Questions About Us Code § 2412

What does United States Code § 2412 cover?

Section 2412 ("Cybersecurity Risk Inventory, Assessment, and Mitigation Working Group") is part of the United States Code, the codified statutory law of Us Code. It sets out the legal rule or procedure described in the text above. Statutes are amended regularly, so always verify against the official source.

How do I cite Us Code § 2412?

A common citation format is "United States Code § 2412" (Us Code). Legal writing may require the code abbreviation, section number, and year or edition. Match the style required by your court, professor, or publisher.

Is this the official text of Us Code law?

No. This page is for research and education and may not include the most recent amendments. For official current law, check the Us Code official source linked on this page or consult a licensed Us Code attorney.

How does Us Code § 2412 apply to my situation?

Statutes are interpreted in context, and application depends on your specific facts. Only a licensed attorney in Us Code can advise on how this section applies to you. Contact your state or local bar association for a referral.

Sources & Verification

Not legal advice. Verify against the official source and consult a licensed attorney in Us Code.