<?xml version="1.0" encoding="UTF-8"?><BillSummaries>
    <item congress="117" measure-type="hr" measure-number="4611" measure-id="id117hr4611" originChamber="HOUSE" orig-publish-date="2021-07-21" update-date="2021-11-26">
        <title>DHS Software Supply Chain Risk Management Act of 2021</title>
        <summary summary-id="id117hr4611v53" currentChamber="HOUSE" update-date="2021-11-26">
            <action-date>2021-10-20</action-date>
            <action-desc>Passed House</action-desc>
            <summary-text><![CDATA[ <p><strong>DHS Software Supply Chain Risk Management Act of 2021</strong> </p> <p>This bill requires the Management Directorate of the Department of Homeland Security (DHS) to issue guidance regarding new and existing contracts relating to the procurement of information and communications technology or services.</p> <p>The bill requires contractors to submit to DHS a bill of materials, a certification that each item in the bill of materials is free from certain security vulnerabilities or defects affecting the security of the end product or service, a notification of any identified vulnerability or defect, and a plan to mitigate, repair, or resolve any identified vulnerability or defect.</p> <p>The Government Accountability Office must report to specified congressional committees with (1) a review of this bill's implementation; (2) information regarding DHS engagement with industry; (3) an assessment of how guidance issued pursuant to this bill complies with Executive Order 14208, relating to improving the nation's cybersecurity; and (4) any recommendations related to improving the supply chain for covered contracts. </p>]]></summary-text>
        </summary>
        <summary summary-id="id117hr4611v07" currentChamber="HOUSE" update-date="2021-10-22">
            <action-date>2021-09-14</action-date>
            <action-desc>Reported to House</action-desc>
            <summary-text><![CDATA[ <p><strong>DHS Software Supply Chain Risk Management Act of 2021</strong> </p> <p>This bill requires the Management Directorate of the Department of Homeland Security (DHS) to issue guidance regarding new and existing contracts relating to the procurement of information and communications technology or services.</p> <p>The bill requires contractors to submit to DHS a bill of materials, a certification that each item in the bill of materials is free from certain security vulnerabilities or defects affecting the security of the end product or service, a notification of any identified vulnerability or defect, and a plan to mitigate, repair, or resolve any identified vulnerability or defect.</p> <p>The Government Accountability Office must report to specified congressional committees with (1) a review of this bill's implementation; (2) information regarding DHS engagement with industry; (3) an assessment of how guidance issued pursuant to this bill complies with Executive Order 14208, relating to improving the nation's cybersecurity; and (4) any recommendations related to improving the supply chain for covered contracts.</p>]]></summary-text>
        </summary>
        <summary summary-id="id117hr4611v00" currentChamber="HOUSE" update-date="2021-09-27">
            <action-date>2021-07-21</action-date>
            <action-desc>Introduced in House</action-desc>
            <summary-text><![CDATA[ <p><strong>DHS Software Supply Chain Risk Management Act of 2021</strong> </p> <p>This bill requires the Management Directorate of the Department of Homeland Security (DHS) to issue guidance regarding new and existing contracts relating to the procurement of information and communications technology or services.</p> <p>The bill requires contractors to submit to DHS a bill of materials, a certification that each item in the bill of materials is free from certain security vulnerabilities, a notification of any identified vulnerability, and a plan to mitigate any identified vulnerability.</p> ]]></summary-text>
        </summary>
    </item>
    <dublinCore xmlns:dc="http://purl.org/dc/elements/1.1/">
        <dc:format>text/xml</dc:format>
        <dc:language>EN</dc:language>
        <dc:rights>Pursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain.</dc:rights>
        <dc:contributor>Congressional Research Service, Library of Congress</dc:contributor>
        <dc:description>This file contains bill summaries for federal legislation. A bill summary describes the most significant provisions of a piece of legislation and details the effects the legislative text may have on current law and federal programs. Bill summaries are authored by the Congressional Research Service (CRS) of the Library of Congress. As stated in Public Law 91-510 (2 USC 166 (d)(6)), one of the duties of CRS is "to prepare summaries and digests of bills and resolutions of a public general nature introduced in the Senate or House of Representatives". For more information, refer to the User Guide that accompanies this file.</dc:description>
    </dublinCore>
</BillSummaries>
