Cybersecurity, Privacy, & AI

Trending Now
Army Plans Fast Follow-Up to AI Cyber Wargame With Industry: Officials • Operational Blind Spots: The Strategic Need for NIST’s New OT Cybersecurity Initiative • A FedRAMP Strategy for Solving the Cyber Talent Shortage • Why Recovery Speed Matters When the Homeland Is the Cyber Battlefield • CISA, Federal Partners Release Zero Trust Guide for Operational Technology

DHS Would Get More Power to Bar Risky Contractors Under Dueling Proposals

Representatives Scott Perry (R-PA) and Peter King (R-NY) are working on legislation that would expand Homeland Security’s authority to deny contracts to companies that pose cybersecurity supply chain threats. Meanwhile, members of the administration are pushing an even more expansive proposal.

The House bill is based on authorities Congress has already given the Defense Department. Under those rules, Pentagon contracting officers can bar vendors that pose a security risk from competing for contracts before they’re awarded and halt contractors from hiring risky subcontractors after an award. Under current DHS rules, intelligence agencies are only allowed to tell contracting officers that a particular vendor poses a security concern and whether the concern can be mitigated, not what the concern is.

A separate legislative proposal floated by the White House Thursday would give the DHS broad authority to bar contractors that present cybersecurity risks from civilian government contracts based on the advice of a “critical information technology supply chain risk evaluation board.” It would give similar power to the Pentagon for defense contracts and to the Office of the Director of National Intelligence for intelligence contracts.

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.