Pub. L. 105-261, div. A, tit. III, subtit. D, sec. 335

CONTINUITY OF ESSENTIAL OPERATIONS AT RISK OF FAILURE BECAUSE OF INFORMATION TECHNOLOGY AND NATIONAL SECURITY SYSTEMS THAT ARE NOT YEAR 2000 COMPLIANT.

EnactedYear: 1998Length: 728 wordsOfficial source
SEC. 335. CONTINUITY OF ESSENTIAL OPERATIONS AT RISK OF FAILURE BECAUSE OF INFORMATION TECHNOLOGY AND NATIONAL SECURITY SYSTEMS THAT ARE NOT YEAR 2000 COMPLIANT. (a) Report Required.— Not later than March 31, 1999, the Secretary of Defense and the Director of Central Intelligence shall jointly submit to the Committee on Armed Services of the Senate and the Committee on National Security of the House of Representatives a report on the plans of the Department of Defense and the intelligence community for ensuring the continuity of performance of essential operations that are at risk of failure because of information technology and national security systems that are not year 2000 compliant. (b) Content.— The report shall contain, at a minimum, the following: (1) A prioritization of mission critical systems to ensure that the most critical systems have the highest priority for efforts to reprogram information technology and national security systems to be year 2000 compliant. (2) A discussion of the private and other public information and support systems relied on by the national security community, including the intelligence community, and the efforts under way to ensure that those systems are year 2000 compliant. (3) The efforts under way to repair the underlying operating systems and infrastructure. (4) The plans for comprehensive testing of Department of Defense systems, including simulated operational tests in mission areas. (5) A comprehensive contingency plan, for the entire national security community, which provides for resolving emergencies resulting from a system that is not year 2000 compliant and includes provision for the creation of crisis action teams for use in resolving such emergencies. (6) A discussion of the efforts undertaken to ensure the continued reliability of service on the systems used by the President and other leaders of the United States for communicating with the leaders of other nations. (7) A discussion of the vulnerability of allied armed forces to the failure of systems that are not, or have critical components that are not, year 2000 compliant, together with an assessment of the potential problems for interoperability among the Armed Forces of the United States and allied armed forces because of the potential for failure of such systems.112 STAT. 1973 (8) An estimate of the total cost of making information technology and national security systems of the Department of Defense and the intelligence community year 2000 compliant. (9) The countries that have critical computer-based systems any disruption of which, due to not being year 2000 compliant, would cause a significant potential national security risk to the United States. (10) A discussion of the cooperative arrangements between the United States and other nations to assist those nations in identifying and correcting (to the extent necessary to meet national security interests of the United States) any problems in their communications and strategic systems, or other systems identified by the Secretary of Defense, that make the systems not year 2000 compliant. (11) A discussion of the threat posed to the national security interests of the United States from any potential failure of strategic systems of foreign countries that are not year 2000 compliant. (c) International Cooperative Arrangements.— The Secretary of Defense, with the concurrence of the Secretary of State, may enter into a cooperative arrangement with a representative of any foreign government to provide for the United States to assist the foreign government in identifying and correcting (to the extent necessary to meet national security interests of the United States) any problems in communications, strategic, or other systems of that foreign government that render the systems not year 2000 compliant. (d) Definitions.— In this section: (1) The term “year 2000 compliant”, with respect to an information technology or national security system of the United States or a computer-based system of a foreign government, means that the system correctly recognizes dates in years after 1999 as being dates after 1999 for the purposes of system functions for which the correct date is relevant to the performance of the functions, consistent with certification level la, lb, or 2 (as prescribed in the April 1997 publication of the Department of Defense entitled “Year 2000 Management Plan”). (2) The term “information technology” has the meaning given that term by section 5002 of the Clinger-Cohen Act of 1996 (40 U.S.C. 1401). (3) The term “national security system” has the meaning given that term by section 5142 of the Clinger-Cohen Act of 1996 (40 U.S.C. 1452).