Thursday, June 8, 2023

Review - HR 3286 Introduce – Open-Source Software Security

Last month, Rep Green (R,TN) introduced HR 3286, the Securing Open Source Software Act of 2023. The bill establishes several areas of responsibility for CISA regarding open-source software security. No funding is authorized in the bill. The bill is similar to S 917 that was introduced earlier this year.

The Senate bill has been favorably reported by the Senate Homeland Security and Governmental Affairs Committee with an amendment to the language of the bill. HR 3286 incorporates most of the changes adopted by the Committee in the Senate, but there are still differences between the two bills.

Moving Forward

Green and all three of his cosponsors are members of the House Homeland Security Committee to which this bill was assigned for consideration. This means that there may be sufficient influence to see the bill considered in Committee. I see nothing in this bill that would engender any organized opposition to the proposed legislation. I suspect that it would see sufficient bipartisan support in Committee to allow it to be considered by the full House under the suspension of the rules process.

 

For a more detailed discussion about this bill, including difference from S 917 and a discussion on secondary committee considerations, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/hr-3286-introduce - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */