[Congressional Bills 115th Congress]
[From the U.S. Government Publishing Office]
[S. 2844 Reported in Senate (RS)]

<DOC>





                                                       Calendar No. 556
115th CONGRESS
  2d Session
                                S. 2844

                          [Report No. 115-322]

   To require the Surface Transportation Board to implement certain 
     recommendations of the Inspector General of the Department of 
                            Transportation.


_______________________________________________________________________


                   IN THE SENATE OF THE UNITED STATES

                              May 15, 2018

   Mr. Thune introduced the following bill; which was read twice and 
   referred to the Committee on Commerce, Science, and Transportation

                            August 16, 2018

                Reported by Mr. Thune, without amendment

_______________________________________________________________________

                                 A BILL


 
   To require the Surface Transportation Board to implement certain 
     recommendations of the Inspector General of the Department of 
                            Transportation.

    Be it enacted by the Senate and House of Representatives of the 
United States of America in Congress assembled,

SECTION 1. SHORT TITLE.

    This Act may be cited as the ``STB Information Security Improvement 
Act''.

SEC. 2. REQUIREMENTS.

    (a) In General.--The Surface Transportation Board (in this section 
referred to as the ``STB'') shall develop a timeline and plan to 
implement the recommendations of the Inspector General of the 
Department of Transportation in Report No. FI2018002, including 
improvements--
            (1) to identify controls, including risk management, 
        weakness remediation, and security authorization;
            (2) to protect controls, including configuration 
        management, user identity and access management, and security 
        training;
            (3) to detect controls, including continuous monitoring;
            (4) to respond controls, including incident handling and 
        reporting;
            (5) to recover controls for contingency planning; and
            (6) to such other tools that would implement the 
        recommendations in the report.
    (b) Implementation.--
            (1) In general.--Not later than 180 days after the date of 
        enactment of this Act, the STB shall submit the plan and 
        timeline developed under subsection (a) to the Committee on 
        Commerce, Science, and Transportation of the Senate and the 
        Committee on Transportation and Infrastructure of the House of 
        Representatives.
            (2) Report.--The STB shall report annually to such 
        Committees on the progress on implementation of the 
        recommendations until the implementation is complete.
            (3) Plan implementation.--The STB shall designate an 
        individual to implement the plan developed under subsection 
        (a).

SEC. 3. NO ADDITIONAL FUNDS AUTHORIZED.

    No additional funds are authorized to carry out the requirements of 
this Act. Such requirements shall be carried out using amounts 
otherwise authorized.
                                                       Calendar No. 556

115th CONGRESS

  2d Session

                                S. 2844

                          [Report No. 115-322]

_______________________________________________________________________

                                 A BILL

   To require the Surface Transportation Board to implement certain 
     recommendations of the Inspector General of the Department of 
                            Transportation.

_______________________________________________________________________

                            August 16, 2018

                       Reported without amendment