dkrause on DSKHT7XVN1PROD with PUBLAWS
PUBLIC LAW 113–274—DEC. 18, 2014
128 STAT. 2977
(b) CYBERSECURITY PRACTICES RESEARCH.—The Director of the
National Science Foundation shall support research that—
(1) develops, evaluates, disseminates, and integrates new
cybersecurity practices and concepts into the core curriculum
of computer science programs and of other programs where
graduates of such programs have a substantial probability of
developing software after graduation, including new practices
and concepts relating to secure coding education and improvement programs; and
(2) develops new models for professional development of
faculty in cybersecurity education, including secure coding
development.
(c) CYBERSECURITY MODELING AND TEST BEDS.—
(1) REVIEW.—Not later than 1 year after the date of enactment of this Act, the Director of the National Science Foundation, in coordination with the Director of the Office of Science
and Technology Policy, shall conduct a review of cybersecurity
test beds in existence on the date of enactment of this Act
to inform the grants under paragraph (2). The review shall
include an assessment of whether a sufficient number of cybersecurity test beds are available to meet the research needs
under the Federal cybersecurity research and development strategic plan. Upon completion, the Director shall submit the
review to the Committee on Commerce, Science, and Transportation of the Senate and the Committee on Science, Space,
and Technology of the House of Representatives.
(2) ADDITIONAL CYBERSECURITY MODELING AND TEST
BEDS.—
(A) IN GENERAL.—If the Director of the National
Science Foundation, after the review under paragraph (1),
determines that the research needs under the Federal
cybersecurity research and development strategic plan
require the establishment of additional cybersecurity test
beds, the Director of the National Science Foundation, in
coordination with the Secretary of Commerce and the Secretary of Homeland Security, may award grants to institutions of higher education or research and development nonprofit institutions to establish cybersecurity test beds.
(B) REQUIREMENT.—The cybersecurity test beds under
subparagraph (A) shall be sufficiently robust in order to
model the scale and complexity of real-time cyber attacks
and defenses on real world networks and environments.
(C) ASSESSMENT REQUIRED.—The Director of the
National Science Foundation, in coordination with the Secretary of Commerce and the Secretary of Homeland Security, shall evaluate the effectiveness of any grants awarded
under this subsection in meeting the objectives of the Federal cybersecurity research and development strategic plan
not later than 2 years after the review under paragraph
(1) of this subsection, and periodically thereafter.
(d) COORDINATION WITH OTHER RESEARCH INITIATIVES.—In
accordance with the responsibilities under section 101 of the HighPerformance Computing Act of 1991 (15 U.S.C. 5511), the Director
of the Office of Science and Technology Policy shall coordinate,
to the extent practicable, Federal research and development activities under this section with other ongoing research and development
security-related initiatives, including research being conducted by—
VerDate Mar 15 2010
07:01 Mar 03, 2015
Jkt 049139
PO 00274
Frm 00007
Fmt 6580
Sfmt 6581
E:\PUBLAW\PUBL274.113
Deadline.
Assessment.
Grants.
Determination.
Coordination.
Coordination.
Evaluation.
Deadlines.
PUBL274