Skip to content
PILLARS
HomeRecent BillsActionsMore
ExploreElectionsPresidential ActionsPoliticiansTrending Bills
WatchlistSettingsProfile
HomeRecent BillsActionsMore
PILLARS

The bills, politicians, and elections that shape your life, in plain English.

Get the App
Our Receipts
Sources & MethodologyApp DetailsSend Feedback
Browse Bills
Bills That Became LawPassed the HousePassed the SenateBills by Topic
The Legal Stuff
Privacy PolicyTerms of ServiceContact Us
Find Us On
© 2026 Political Pillars Inc.Simplifying politics
Improves Cybersecurity for Federal Contractors
Recent Bills/Improves Cybersecurity for Federal Contractors

Improves Cybersecurity for Federal Contractors

IntroducedJanuary 31, 2025
Passed House1 year ago
Intro
House
Senate
Pres
Sitting in the Senate Homeland Security and Governmental Affairs Committee.
Most bills stop at this point and never get a vote.
Government Operations and PoliticsComputer security and identity theftGovernment information and archivesPublic contracts and procurement
More:Bills That Passed the HouseTechnologyHouse Bills
Why This Matters

This bill requires federal contractors to have a clear policy for reporting cybersecurity vulnerabilities. It aims to improve the security of systems used by these contractors.

If you work for a federal contractor, you will need to follow new cybersecurity reporting rules within 180 days of this bill's passage.
Who this affects
federal contractors · employees handling sensitive information
What changes is this bill making?
  1. 1Contractors must create a policy to report security weaknesses in their systems.
  2. 2The policy must follow guidelines set by the National Institute of Standards and Technology.
  3. 3Federal agencies will review and update their contract requirements within 180 days.
  4. 4Waivers for these requirements can be granted for national security reasons.
  5. 5The Department of Defense will also update its rules for contractor cybersecurity.
Read the detailed summary

Federal Contractor Cybersecurity Vulnerability Reduction Act of 2025This bill requires revisions to acquisition regulations related to information systems vulnerabilities for certain federal contractors. The revisions apply to contractors whose contract is at or above the simplified acquisition threshold ($250,000 in most cases) or that use, operate, manage, or maintain a federal information system on behalf of an agency. Under the bill, the Office of Management and Budget must review the Federal Acquisition Regulation (FAR) and recommend updated contract requirements and language for contractor vulnerability disclosure programs. (Such programs establish processes for identifying, reporting, and mitigating information system vulnerabilities discovered by security researchers, software developers, and others.) The recommendations must include requirements to ensure that such contractors implement vulnerability disclosure policies consistent with guidelines from the National Institute of Standards and Technology. The Federal Acquisition Regulation Council must review these recommendations and update the FAR as necessary to incorporate requirements for such contractors to receive information about potential security vulnerabilities in contractor information systems used in performance of contract. The Department of Defense (DOD) must conduct a similar review and update of regulations with respect to the DOD Supplement to the FAR.

Read full document
Bill Progress3 of 4
Bills must pass the House, Senate, and be signed by the President to become law.
Intro
House
Senate
Pres
IntroducedJan 31, 2025
Sponsors
See all 2 sponsors
HouseMar 3, 2025
SenateCurrent

Sitting in the Senate Homeland Security and Governmental Affairs Committee.

Most bills stop at this point and never get a vote.

President

The President

Donald Trump
President
Awaiting Vote
Similar Bills
Senate Bill · S 426
1 of 4 · Introduced
Improves Oversight of Government Contracts
Ensuring Accountability and Dignity in Government Contracting Act of 2025
·Government
Senate Bill · S 318
3 of 4 · Passed Senate
Improves Cybersecurity for Research Ships
ANCHOR Act
·Technology
House Bill · HR 2659
3 of 4 · Passed House
Improves Cybersecurity for Critical Infrastructure
Strengthening Cyber Resilience Against State-Sponsored Threats Act
·Technology