<?xml version="1.0"?>
<?xml-stylesheet type="text/xsl" href="billres.xsl"?>
<!DOCTYPE bill PUBLIC "-//US Congress//DTDs/bill.dtd//EN" "bill.dtd">
<bill bill-stage="Introduced-in-Senate" dms-id="A1" public-private="public" slc-id="S1-MCC26E56-5JJ-WH-GP9"><metadata xmlns:dc="http://purl.org/dc/elements/1.1/">
<dublinCore>
<dc:title>119 S5211 IS: To require the Under Secretary of Defense for Policy and the Chairman of the Joint Chiefs of Staff to submit a strategy for cyber cooperation in the Indo-Pacific region, and for other purposes.</dc:title>
<dc:publisher>U.S. Senate</dc:publisher>
<dc:date>2026-08-03</dc:date>
<dc:format>text/xml</dc:format>
<dc:language>EN</dc:language>
<dc:rights>Pursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain.</dc:rights>
</dublinCore>
</metadata>
<form>
<distribution-code display="yes">II</distribution-code><congress>119th CONGRESS</congress><session>2d Session</session><legis-num>S. 5211</legis-num><current-chamber>IN THE SENATE OF THE UNITED STATES</current-chamber><action><action-date date="20260803">August 3, 2026</action-date><action-desc><sponsor name-id="S381">Mr. Rounds</sponsor> (for himself and <cosponsor name-id="S386">Ms. Duckworth</cosponsor>) introduced the following bill; which was read twice and referred to the <committee-name committee-id="SSFR00">Committee on Foreign Relations</committee-name></action-desc></action><legis-type>A BILL</legis-type><official-title>To require the Under Secretary of Defense for Policy and the Chairman of the Joint Chiefs of Staff to submit a strategy for cyber cooperation in the Indo-Pacific region, and for other purposes.</official-title></form><legis-body><section id="id2c343d29e1f24020bd2834f82e73411f" section-type="section-one"><enum>1.</enum><header>Strategy for cyber cooperation in the Indo-Pacific region</header><subsection id="idd00b0b31a3ed4f57b3ba568442978758"><enum>(a)</enum><header>In general</header><text>Not later than 180 days after the date of the enactment of this Act, the Under Secretary of Defense for Policy and the Chairman of the Joint Chiefs of Staff, in coordination with the Commander of the United States Indo-Pacific Command and the Commander of the United States Cyber Command, shall develop, submit to the congressional defense committees (as defined in section 101 of title 10, United States Code), and commence implementation of a strategy to enhance and institutionalize cyber cooperation between the Department of Defense and allies and partners in the Indo-Pacific region.</text></subsection><subsection id="id4ddf851fe50f45e49d3a2f965facb096"><enum>(b)</enum><header>Elements</header><text>The strategy required by subsection (a) shall include the following:</text><paragraph id="id0c47ad332630493e8ce1b4f70f8cd78a"><enum>(1)</enum><text>An identification of the current and projected cyber cooperation requirements of the Department of Defense in the Indo-Pacific region through 2040, including requirements identified in theater security cooperation plans, relating to—</text><subparagraph id="id8e825f096abb49b3ae56abef5a94afe5"><enum>(A)</enum><text>defensive cyberspace operations;</text></subparagraph><subparagraph id="idf7f6133777ee44638f7bbf359b886a07"><enum>(B)</enum><text>offensive cyber operations;</text></subparagraph><subparagraph id="ida993bb67008e4dddbb0a9d9051c8b409"><enum>(C)</enum><text>secure information sharing;</text></subparagraph><subparagraph id="id150f064416754aca971b4fef57e2e2de"><enum>(D)</enum><text>cyber training, exercises, and workforce development;</text></subparagraph><subparagraph id="idf4295759468e42228c07d891ae640611"><enum>(E)</enum><text>protection of critical infrastructure, communications networks, and defense industrial base networks;</text></subparagraph><subparagraph id="idc48be09de32d4b9790ef36294c96ab10"><enum>(F)</enum><text>joint planning and operational integration; and</text></subparagraph><subparagraph id="idce174beb9a9045b4898b1cf5f21d42f5"><enum>(G)</enum><text>command and control structures for joint cyber integration.</text></subparagraph></paragraph><paragraph id="idb0875e178b8c4ef59efc4bb76f004377"><enum>(2)</enum><text>An identification of existing cyber cooperation activities, agreements, and capability gaps between the Department of Defense and allies and partners in the Indo-Pacific region.</text></paragraph><paragraph id="id1bc72627aeb840658104d9b38cb33a8e" commented="no"><enum>(3)</enum><text>A strategic review of the cybersecurity capacity and cyber resilience of allies and partners in the Indo-Pacific region that includes the following:</text><subparagraph commented="no" display-inline="no-display-inline" id="id7e53c2d0c0cb46abbfe2025ec0dc652d"><enum>(A)</enum><text display-inline="yes-display-inline">With respect to each such ally or partner—</text><clause id="id20439dc423ac4f1881bbf5547c2e8865"><enum>(i)</enum><text>an assessment of the extent to which the ally or partner has expressed interest or has participated in existing United States Government or Department of Defense programs to assist in the the expansion of cybersecurity capacity across policies, technical architecture, and practices of the ally or partner, the results of any such participation, and an identification of any barriers to effective participation;</text></clause><clause id="ide2d81e70129343bbbb4e29f13a2f9220"><enum>(ii)</enum><text>an assessment of the extent to which the responsibility for cybersecurity capabilities and any exposure resulting from gaps in such capabilities lie with the military, another government entity, or the commercial sector of the ally or partner, and an assessment of the manner in which the structure contributes to opportunities for, or risks to, collaboration with the United States Armed Forces;</text></clause><clause id="idb721b6529998475ea611eb14e455a6ba"><enum>(iii)</enum><text>an identification of the cybersecurity standards used by each ally or partner, and an assessment of the extent to which such standards overlap with United States cybersecurity standards; and</text></clause><clause id="id44b3149c18814b1594453c8d6c5198ee"><enum>(iv)</enum><text>in the case of an ally or partner that does not have shared cybersecurity standards with the United States, a review of the differences between standards, the manner in which such differences may create barriers to interoperability and collaboration with the Department of Defense, existing Department of Defense mitigation measures to ensure collaboration, and recommendations for more permanent solutions.</text></clause></subparagraph><subparagraph id="id3cf9fe0a29204f36b266b7a5cca897e7" commented="no"><enum>(B)</enum><text>An identification of additional resources or authorities required to help address gaps in the cybersecurity architecture or practices of such allies and partners, including with respect to the National Guard’s State Partnership Program and consultations provided by the Department of State and the Department of Homeland Security.</text></subparagraph><subparagraph commented="no" display-inline="no-display-inline" id="id562fec71c9ce430183a5a630bb22b439"><enum>(C)</enum><text display-inline="yes-display-inline">An identification of any capability gaps of such allies and partners with respect to cybersecurity capacity and cyber resilience that the Department of Defense may be able to address through security cooperation initiatives.</text></subparagraph></paragraph><paragraph id="ide677c4f5d7ab44d0b677f3ed95b99879"><enum>(4)</enum><text>An identification of—</text><subparagraph commented="no" display-inline="no-display-inline" id="id29782b6d9f8242d38d327377e0d2ad08"><enum>(A)</enum><text display-inline="yes-display-inline">actions necessary to strengthen cyber cooperation, interoperability, intelligence and information sharing, cyber defense and cybersecurity integration, and combined cyber planning with such allies and partners;</text></subparagraph><subparagraph commented="no" display-inline="no-display-inline" id="id7f6ea1571e0843caa163ab3d34bf08ce"><enum>(B)</enum><text>any authorities, force posture adjustments, organizational changes, or legislative actions required to improve cybersecurity in the Indo-Pacific region; and</text></subparagraph><subparagraph id="idbfbe7dabff00401296a63c78ba140533"><enum>(C)</enum><text>opportunities—</text><clause commented="no" display-inline="no-display-inline" id="ideb49ba55c1a54decb76a1aa2ca75492d"><enum>(i)</enum><text display-inline="yes-display-inline">to expand bilateral and multilateral cyber exercises, cyber workforce exchanges, cyber capacity-building initiatives, and operational collaboration with such allies and partners;</text></clause><clause id="id0384abb70e354ab2a336555a01b4aa7f"><enum>(ii)</enum><text>to leverage existing security cooperation mechanisms and multilateral partnerships to support the objectives of the strategy; and</text></clause><clause id="id54a0c483410d43e5992199d2ea2fa7d0"><enum>(iii)</enum><text>to enhance collaboration between the Joint Staff, the Office of the Secretary of Defense, the United States Cyber Command, and the United States Indo-Pacific Command on cybersecurity cooperation with allies and partners in the Indo-Pacific region.</text></clause></subparagraph></paragraph></subsection><subsection id="id27766a2a8ee948228957615ba668c6bb"><enum>(c)</enum><header>Funding plan</header><text>Not later than 180 days after the date of the enactment of this Act, the Under Secretary of Defense for Policy and the Chairman of the Joint Chiefs of Staff, in coordination with the Commander of the United States Indo-Pacific Command and the Commander of the United States Cyber Command, shall submit to the congressional defense committees a report that includes—</text><paragraph id="id9fed1a0f8bc7403899f7efdd4cb4e8e8"><enum>(1)</enum><text>a plan for funding and resourcing the implementation of the strategy developed under subsection (a) across the period covered by the most recent future-years defense program submitted to Congress under section 221 of title 10, United States Code, as of the date of the report; and</text></paragraph><paragraph id="id408125881905482c88d888a6176c1c44"><enum>(2)</enum><text>an identification of any resource gaps that would impede implementation of such strategy.</text></paragraph></subsection><subsection id="id94f43862209947489f66ed72355c914b"><enum>(d)</enum><header>Briefing</header><text>Not later than 180 days after the date of the enactment of this Act, the Under Secretary of Defense for Policy and the Chairman of the Joint Chiefs of Staff shall provide the congressional defense committees with a briefing on the strategy required by subsection (a).</text></subsection><subsection id="id7cb1aea350504acc86b080d102a6d590"><enum>(e)</enum><header>Implementation report</header><text>Not later than March 15, 2028, the Under Secretary of Defense for Policy and the Chairman of the Joint Chiefs of Staff shall submit to the congressional defense committees a report on the progress of the implementation of such strategy, including—</text><paragraph id="id51d8eee4ae5346fcb6af143d9fd39359"><enum>(1)</enum><text>a description of actions taken to implement the strategy;</text></paragraph><paragraph id="id59f7dbbfa53f41c0991a74f89bd86695"><enum>(2)</enum><text>an assessment of remaining operational and capability gaps;</text></paragraph><paragraph id="id2bedd4d70ef64a7c8d1e339a15614ac0"><enum>(3)</enum><text>an identification of any barriers to implementation; and</text></paragraph><paragraph id="id927fa4864e834ea79df01ad4e1abecef"><enum>(4)</enum><text>recommendations for any additional authorities or resources required to carry out the strategy.</text></paragraph></subsection><subsection id="id5826aee131ff4a448ea56cb9dbc98504"><enum>(f)</enum><header>Form</header><text display-inline="yes-display-inline">The strategy, briefing, and report required by this section shall be submitted in unclassified form but may include a classified annex.</text></subsection></section></legis-body></bill>

