Dems push for program to secure internet-connected devices

Dems push for program to secure internet-connected devices
© Greg Nash

Democrats are introducing legislation directing the Department of Commerce to set up a voluntary program to certify internet-connected devices with strong cybersecurity.

The bill, backed by Sen. Ed MarkeyEdward (Ed) John MarkeyHillicon Valley: Mueller indicts Russians for DNC hack | US officially lifts ZTE ban | AT&T CEO downplays merger challenge | Microsoft asks for rules on facial recognition technology | Dems want probe into smart TVs Dems push FTC to investigate smart TVs over privacy concerns Hillicon Valley: Hacker tried to sell military docs on dark web | Facebook fined over Cambridge Analytica | US closer to lifting ZTE ban | Trump, Obama lose followers in Twitter purge | DOJ weighs appeal on AT&T merger MORE (D-Mass.) in the Senate and Rep. Ted Lieu (D-Calif.) in the House, would set up a voluntary program in which device manufacturers can choose to have their products evaluated and certified for meeting set benchmarks on cyber and data security. 

ADVERTISEMENT

The legislation, dubbed the “Cyber Shield Act of 2017,” represents an effort to secure the growing ecosystem of what is commonly known as the Internet of Things, or IoT.

“The IoT will also stand for the Internet of Threats unless we put in place appropriate cybersecurity safeguards,” Markey said in a statement on Friday. “With as many as 50 billion IoT devices projected to be in our pockets and homes by 2020, cybersecurity will continue to pose a direct threat to economic prosperity, privacy, and our nation’s security.” 

In particular, the legislation would direct the secretary of Commerce to convene an advisory committee made up of business leaders, cybersecurity experts, public interest advocates and federal employees with backgrounds in device certification or cybersecurity.

The committee would be required to produce recommendations on cybersecurity benchmarks, which would be finalized by the Commerce Department within two years of the bill’s enactment. 

Companies that choose to meet the benchmarks would have their products verified and labeled as approved through the program.

Lieu signaled that the legislation would incentivize industry leaders to “seek inventive solutions to cyber intrusions while empowering consumers to make smart purchases. ”

"As one of only four Computer Science majors in Congress, I recognize that we must continue to push for advancements in the tech industry," Lieu said. "At the same time, it is critical that we prioritize developing products with the security of consumers’ information in mind."