S824-118

Reported

To require the Secretary of Homeland Security to establish a national risk management cycle, and for other purposes.

118th Congress Introduced Mar 15, 2023

Legislative Progress

Reported
Introduced Committee Passed
May 9, 2023

Reported by Mr. Peters, with amendments

May 9, 2023

Reported by Mr. Peters, with amendments

May 9, 2023

Reported by Mr. Peters, with amendments

May 9, 2023

Reported by Mr. Peters, with amendments

May 9, 2023

Reported by Mr. Peters, with amendments

May 9, 2023

Reported by Mr. Peters, with amendments

May 9, 2023

Reported by Mr. Peters, with amendments

Mar 15, 2023

Ms. Hassan (for herself and Mr. Romney) introduced the following …

Mar 15, 2023

Ms. Hassan (for herself and Mr. Romney) introduced the following …

Mar 15, 2023

Ms. Hassan (for herself and Mr. Romney) introduced the following …

Summary

What This Bill Does

Requires DHS Secretary through CISA Director to establish a recurring national risk management cycle to identify and assess risks to critical infrastructure, considering both cyber and physical threats.

Who Benefits and How

Critical infrastructure owners gain systematic risk assessment framework. Federal government improves coordinated threat awareness. Public safety benefits from better infrastructure protection.

Who Bears the Burden and How

CISA assumes leadership of national risk management cycle. Sector Risk Management Agencies must collect and share threat information. Critical infrastructure owners may need to submit information to DHS.

Key Provisions

  • Establishes recurring process to identify and assess critical infrastructure risks
  • Considers both cyber and physical threats, likelihoods, vulnerabilities, and consequences
  • Requires consultation with Sector Risk Management Agencies, owners/operators, and National Security Advisor
  • 180-day deadline for publishing procedures in Federal Register
Model: claude-opus-4
Generated: Jan 10, 2026 17:48

Evidence Chain:

This summary is derived from the structured analysis below. See "Detailed Analysis" for per-title beneficiaries/burden bearers with clause-level evidence links.

Primary Purpose

Establishes national risk management cycle for critical infrastructure through DHS and CISA

Policy Domains

Homeland Security Critical Infrastructure Cybersecurity Risk Management

Legislative Strategy

"Systematize critical infrastructure risk assessment across government and private sector"

Bill Structure & Actor Mappings

Who is "The Secretary" in each section?

Domains
Homeland Security Critical Infrastructure
Actor Mappings
"the_director"
→ Director of CISA
"the_secretary"
→ Secretary of Homeland Security

Key Definitions

Terms defined in this bill

1 term
"national critical functions" §2a

Functions of government and private sector so vital that their disruption would have debilitating effect on security, economic security, or public health or safety

We use a combination of our own taxonomy and classification in addition to large language models to assess meaning and potential beneficiaries. High confidence means strong textual evidence. Always verify with the original bill text.

Learn more about our methodology