Loading chat...

US HB3841

Bill

Status

Introduced

6/9/2025

Primary Sponsor

Jason Crow

Click for details

Origin

House of Representatives

119th Congress

AI Summary

  • CISA must coordinate with HHS to improve healthcare cybersecurity and appoint a liaison to HHS with cybersecurity expertise to facilitate threat information sharing and incident coordination

  • CISA must provide cybersecurity training to healthcare facility owners and operators on sector-specific risks and mitigation strategies

  • HHS Secretary must update the Healthcare and Public Health Sector-specific Risk Management Plan within 1 year, analyzing cybersecurity impacts on rural and small/medium facilities, medical device vulnerabilities, and workforce shortages

  • HHS may establish criteria for designating "high-risk covered assets" and maintain a biannually-updated list to prioritize resource allocation for cyber resilience

  • Multiple reports required: CISA report on healthcare support activities within 120 days, HHS/CISA coordination report within 18 months, and GAO report on federal critical infrastructure resources within 18 months; no additional funds authorized

Legislative Description

Healthcare Cybersecurity Act of 2025

Health

Last Action

Referred to the Committee on Homeland Security, and in addition to the Committee on Energy and Commerce, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.

6/9/2025

Committee Referrals

Homeland Security6/9/2025

Full Bill Text

No bill text available