Homeland Security Committee, Cybersecurity and Infrastructure Protection Subcommittee, Education and Workforce Committee
Introduced
In Committee
On Floor
Passed Chamber
Enacted
This bill directs the Director of the Cybersecurity and Infrastructure Security Agency (CISA) to establish a multi-faceted program aimed at bolstering the cybersecurity posture of K-12 educational organizations. The legislation mandates the creation of a dedicated School Cybersecurity Information Exchange, a voluntary Cybersecurity Incident Registry, and a K-12 Cybersecurity Technology Improvement Program. These initiatives are designed to provide essential resources, guidance, and support to protect schools from evolving cyber threats. The School Cybersecurity Information Exchange will be a publicly accessible website disseminating cybersecurity best practices, training, and lessons learned tailored for K-12 organizations, including databases for tools and funding opportunities. CISA will also establish a voluntary Cybersecurity Incident Registry for K-12 entities to report cyber incidents, enabling improved data collection, trend analysis, and the development of systematic prevention and response approaches. An annual, de-identified report on these incidents will be made available through the Information Exchange. Additionally, the K-12 Cybersecurity Technology Improvement Program will deploy cybersecurity capabilities to schools by developing tailored strategies and tools, making services available to combat threats like ransomware, and offering continuous training. The Director of CISA is required to report annually on the program's impact, including capabilities provided and incidents prevented. To fund these efforts, the bill authorizes an appropriation of $10,000,000 for each of fiscal years 2027 and 2028.
Referred to the Committee on Homeland Security, and in addition to the Committee on Education and Workforce, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
Referred to the Subcommittee on Cybersecurity and Infrastructure Protection.
Referred to the Committee on Homeland Security, and in addition to the Committee on Education and Workforce, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
Referred to the Subcommittee on Cybersecurity and Infrastructure Protection.
Education
Enhancing K–12 Cybersecurity Act
USA119th CongressHR-9918| House
| Updated: 7/24/2026
This bill directs the Director of the Cybersecurity and Infrastructure Security Agency (CISA) to establish a multi-faceted program aimed at bolstering the cybersecurity posture of K-12 educational organizations. The legislation mandates the creation of a dedicated School Cybersecurity Information Exchange, a voluntary Cybersecurity Incident Registry, and a K-12 Cybersecurity Technology Improvement Program. These initiatives are designed to provide essential resources, guidance, and support to protect schools from evolving cyber threats. The School Cybersecurity Information Exchange will be a publicly accessible website disseminating cybersecurity best practices, training, and lessons learned tailored for K-12 organizations, including databases for tools and funding opportunities. CISA will also establish a voluntary Cybersecurity Incident Registry for K-12 entities to report cyber incidents, enabling improved data collection, trend analysis, and the development of systematic prevention and response approaches. An annual, de-identified report on these incidents will be made available through the Information Exchange. Additionally, the K-12 Cybersecurity Technology Improvement Program will deploy cybersecurity capabilities to schools by developing tailored strategies and tools, making services available to combat threats like ransomware, and offering continuous training. The Director of CISA is required to report annually on the program's impact, including capabilities provided and incidents prevented. To fund these efforts, the bill authorizes an appropriation of $10,000,000 for each of fiscal years 2027 and 2028.
Referred to the Committee on Homeland Security, and in addition to the Committee on Education and Workforce, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
Referred to the Subcommittee on Cybersecurity and Infrastructure Protection.
Referred to the Committee on Homeland Security, and in addition to the Committee on Education and Workforce, for a period to be subsequently determined by the Speaker, in each case for consideration of such provisions as fall within the jurisdiction of the committee concerned.
Referred to the Subcommittee on Cybersecurity and Infrastructure Protection.