CBO Scores Cybersecurity Enhancement Act

The Cybersecurity Enhancement Act of 2013 (HR 756) would reauthorize several National Science Foundation (NSF) programs that aim to enhance cybersecurity (the protection of computers and computer networks from unauthorized access). The bill also would require the National Institute of Standards and Technology (NIST) to continue a cybersecurity awareness program and to develop standards for managing personal identifying information stored on computer systems. Finally, the bill would establish a task force to recommend actions to the Congress for improving research and development activities related to cybersecurity.

Based on information from NSF and NIST and assuming appropriation of the necessary amounts, CBO estimates that implementing H.R. 756 would cost $504 million over the 2014-2018 period and $52 million after 2018. Enacting the legislation would not affect direct spending or revenues; therefore, pay-as-you-go procedures do not apply. HR 756 would authorize appropriations for several NSF grant programs aimed at enhancing cybersecurity. The bill would authorize appropriations totaling $357 million over the 2014-2016 period to improve research on cybersecurity.

In addition, H.R. 756 would authorize the appropriation of:

  • $15 million for grants to establish centers of cybersecurity research;
  • $75 million for grants to universities to improve cybersecurity programs and increase the number of students in fields related to cybersecurity. This includes a program to offer scholarships to students who pursue higher education related to cybersecurity and commit to public service after graduating;
  • $12 million for grants to institutions that grant associate degrees to develop cybersecurity programs and establish centers of excellence; and
  • $96 million for grants to higher education institutions to establish cybersecurity traineeship programs for graduate students.

CBO Scores Cybersecurity Enhancement Act