This Act requires the Comptroller General to study current federal cybersecurity initiatives, programs, resources, tools, and services that are meant to help owners of small business concerns. The study must look at how small businesses identify cyber risks and vulnerabilities; how prepared they are; how they plan for, reduce, and recover from cyberattacks and social engineering, scams, and fraud; and how they find or get money to pay for these activities. The study must report on the most common cyberattacks affecting small businesses; list and describe the federal initiatives and tools reviewed; assess how aware small businesses are of those resources and how much they use them; check how well the federal efforts are coordinated and integrated; evaluate how effective they are; identify important cybersecurity concepts that may be missing from federal efforts; and give recommendations to improve effectiveness, awareness, and coordination. The Comptroller General must send a report with findings and recommendations to the House Committee on Small Business and the Senate Committee on Small Business and Entrepreneurship.
If you own or run a small business, this Act does not itself change programs or provide funding. It asks the federal auditor to study existing federal help for small business cybersecurity and report what is working, what is missing, and how federal efforts could be better coordinated. The report may lead Congress or others to consider changes in the future.
The Act states that no additional amounts are authorized to carry out this Act. No publicly available information on estimated costs is provided in the text.
No publicly available information.
No publicly available information.