Cruz, Warner Introduce Bipartisan Bill to Strengthen Telecommunications Cybersecurity

WASHINGTON, D.C. – Senate Commerce Committee Chairman Ted Cruz (R-Texas) and Senator Mark. R. Warner (D-Va.) today introduced the Telecommunications Cybersecurity and Resilience Act, bipartisan legislation that would create a framework, developed by experts from government and the private sector, to strengthen telecommunications cybersecurity. This bill addresses vulnerabilities in the U.S. and global telecommunications sector highlighted by the Salt Typhoon hacks and other sophisticated cyber threats.

Upon introduction, Chairman Cruz said: “Foreign adversaries are increasingly targeting America’s communications networks. Securing them requires an approach that keeps pace with evolving threats. This sensible bill brings government and industry together to develop voluntary, telecom-specific cybersecurity best practices rather than adopting rigid federal mandates that quickly become outdated. As Commerce Committee chairman, I will continue working to strengthen the networks Americans rely on while preserving the innovation needed to protect them.”

Senator Warner said: “The Salt Typhoon intrusion was the worst telecom hack in our nation’s history and showed us just how vulnerable our critical infrastructure is, but it does not have to be that way. If telecommunications companies adopt cybersecurity best practices, our networks can be more resilient. This bipartisan legislation is a good start in protecting our nation and strengthening the communications networks Americans rely on every day.”

Background

The Telecommunications Cybersecurity and Resilience Act would:

  • Create a telecommunications cybersecurity working group among providers, suppliers, cybersecurity experts, and relevant state, local, and federal agencies, to develop practical, risk-based cybersecurity best practices focusing specifically on the telecommunications sector.
  • Create a voluntary certification process, that puts real accountability behind the adoption of best practices through independent third-party assessment and certification.
  • Require the best practices to be reviewed and updated at least every two years and following major cyber incidents or significant changes in the threat landscape.

Read the bill here, one pager here, and a section by section here.

###

Print 
Email 
Share 
Share