Search

Congressman Introduces Vulnerability Disclosure Bill For Contractors

Congressman Introduces Vulnerability Disclosure Bill For Contractors
Rep. Ted Lieu (D-Calif.)

Seeking to strengthen the cybersecurity posture of companies that do business with the federal government, Rep. Ted Lieu (D-Calif.) this week introduced a bill requiring government contractors to create programs that allow friendly hackers to probe for vulnerabilities on their networks so that security gaps can be mended.

“I have long been a supporter of vulnerability disclosure policies and programs (VDPs) in both the federal government and private sector,” Lieu said in a statement on Tuesday. “They allow security researchers to find software vulnerabilities and notify owners before they can be exploited by bad actors.”

Lieu said the Improving Contractor Cybersecurity Act is based on a Department of Homeland Security directive to federal civilian agencies in 2020 requiring agencies to develop and publish VDPs. He also highlighted that his bill stems from President Joe Biden’s recent cybersecurity executive order that would strengthen the software supply chain security of the government by, among other provisions, consider directing contractors to have VDPs.

“There is no reason government contractors shouldn’t also be asked to maintain vulnerability disclosure policies, given the complex web of third-party vendors on which the United States relies,” he said. “I am pleased the Biden administration also recognizes this need, and mentioned VDPs in its recent executive order as one way to shore up federal cybersecurity.”



Contract Updates

BAE Systems Space & Mission Systems Inc. (Boulder, Colorado) – $48,000,000

BAE Systems Space & Mission Systems Inc., Boulder, Colorado, was awarded a $48,000,000 firm-fixed-price contract for the study, design, development, enhancement, testing, and procurement of advanced communication-electronics technologies. Bids were solicited via the internet with one received. Work locations and…


Portus Stevedoring LLC (Jacksonville, Florida) – $8,292,583

Portus Stevedoring LLC, Jacksonville, Florida, is awarded a not-to-exceed $8,292,583 firm-fixed-price, indefinite-delivery/indefinite-quantity contract with a five-year ordering period for stevedoring and related terminal services. This contract provides for full range of stevedoring and related terminal services to include the receipt,…


Foster Miller doing business as QinetiQ North America (Waltham, Massachusetts) – $11,310,230

Foster Miller, doing business as QinetiQ North America, Waltham, Massachusetts, is awarded an $11,310,230 firm-fixed-price modification to a previously awarded indefinite-delivery/indefinite-quantity contract (N00174-21-D-0019) to exercise Option Year Four for production, engineering support, and post-production support of the MK 2 Man…


EnergySolutions Services Inc. (Oak Ridge, Tennessee) – $13,336,650

EnergySolutions Services Inc., Oak Ridge, Tennessee, is being awarded a $13,336,650 firm-fixed-price, indefinite-delivery/indefinite-quantity contract action (N42158-25-D-E001) for nuclear services for the processing, recycling and disposal of radiologic materials through disassembly, decontamination, metal melting, compaction, incineration, resin sluicing/dewater, bulk waste assay…