Federal · Title 6 — Domestic Security

6 U.S.C. § 146: Cybersecurity workforce assessment and strategy

Read the full statutory text
Not later than 180 days after December 18, 2014 , and annually thereafter for 3 years, the Secretary shall assess the cybersecurity workforce of the Department. an assessment of the readiness and capacity of the workforce of the Department to meet its cybersecurity mission; information on where cybersecurity workforce positions are located within the Department; permanent full-time equivalent employees of the Department, including, to the greatest extent practicable, demographic information about such employees; independent contractors; and individuals employed by other Federal agencies, including the National Security Agency; or vacant; and the percentage of individuals within each Cybersecurity Category and Specialty Area who received essential training to perform their jobs; and in cases in which such essential training was not received, what challenges, if any, were encountered with respect to the provision of such essential training. not later than 1 year after December 18, 2014 , develop a comprehensive workforce strategy to enhance the readiness, capacity, training, recruitment, and retention of the cybersecurity workforce of the Department; and maintain and, as necessary, update the comprehensive workforce strategy developed under subparagraph (A). a multi-phased recruitment plan, including with respect to experienced professionals, members of disadvantaged or underserved communities, the unemployed, and veterans; a 5-year implementation plan; a 10-year projection of the cybersecurity workforce needs of the Department; any obstacle impeding the hiring and development of a cybersecurity workforce in the Department; and any gap in the existing cybersecurity workforce of the Department and a plan to fill any such gap. the cybersecurity workforce assessment required under subsection (a); and the progress of the Secretary in carrying out the comprehensive workforce strategy required to be developed under subsection (b). This section may be cited as the ‘Homeland Security Cybersecurity Workforce Assessment Act’. the Committee on Homeland Security and Governmental Affairs of the Senate; the Committee on Homeland Security of the House of Representatives; and the Committee on House Administration of the House of Representatives. The terms ‘Cybersecurity Work Category’, ‘Data Element Code’, and ‘Specialty Area’ have the meanings given such terms in the Office of Personnel Management’s Guide to Data Standards. The term ‘Department’ means the Department of Homeland Security. The term ‘Director’ means the Director of the Office of Personnel Management. The term ‘Secretary’ means the Secretary of Homeland Security. identify all cybersecurity workforce positions within the Department; determine the primary Cybersecurity Work Category and Specialty Area of such positions; and assign the corresponding Data Element Code, as set forth in the Office of Personnel Management’s Guide to Data Standards which is aligned with the National Initiative for Cybersecurity Education’s National Cybersecurity Workforce Framework report, in accordance with paragraph (2). to identify open positions that include cybersecurity functions (as defined in the OPM Guide to Data Standards); and to assign the appropriate employment code to each such position, using agreed standards and definitions. each employee within the Department who carries out cybersecurity functions; and each open position within the Department that have been identified as having cybersecurity functions. Not later than 1 year after the date of the enactment of this Act, the Director shall submit a progress report on the implementation of this subsection to the appropriate congressional committees. identify Cybersecurity Work Categories and Specialty Areas of critical need in the Department’s cybersecurity workforce; and describes the Cybersecurity Work Categories and Specialty Areas identified under subparagraph (A); and substantiates the critical need designations. current Cybersecurity Work Categories and Specialty Areas with acute skill shortages; and Cybersecurity Work Categories and Specialty Areas with emerging skill shortages. identify Specialty Areas of critical need for cybersecurity workforce across the Department; and submit a progress report on the implementation of this subsection to the appropriate congressional committees. analyze and monitor the implementation of subsections (c) and (d); and not later than 3 years after the date of the enactment of this Act, submit a report to the appropriate congressional committees that describes the status of such implementation.” the term ‘Cybersecurity Category’ means a position’s or incumbent’s primary work function involving cybersecurity, which is further defined by Specialty Area; the term ‘Department’ means the Department of Homeland Security; the term ‘Secretary’ means the Secretary of Homeland Security; and the term ‘Specialty Area’ means any of the common types of cybersecurity work as recognized by the National Initiative for Cybersecurity Education’s National Cybersecurity Workforce Framework report.”

Verify at the official source: Federal legislative text

Facing this? Know exactly what happens next.

MOFRD turns this code section into your situation: the deadlines that apply to you, the forms your county uses, and the resolution paths people in your position actually take. Free for 3 days — no card required.

This page is legal information, not legal advice. Code text is sourced from official publications and may lag amendments — always confirm at the official source linked above. Plain-English summaries and relationship data are AI-derived and reviewed on an ongoing basis; verify with a licensed attorney before acting.