Congress demands CISA prove it can protect America's digital infrastructure
H.R. 10474 — CISA Force Structure Assessment Act · Filed by James Walkinshaw (D-VA) · 2 cosponsors · Introduced Sep 16, 2026 · Referred to committee
Your members of Congress
Enter a ZIP to see where your representative and both senators stood on this bill.
Looked up on this device — your ZIP is never stored on our servers.
What it does
This bill requires the Cybersecurity and Infrastructure Security Agency (CISA) to assess whether it has enough staff, funding, and training to do its job protecting federal, state, and local government computer systems and critical infrastructure. CISA must report back to Congress within one year with findings and recommendations for any gaps in personnel, resources, or certifications.
Why we flagged it
The bill is a straightforward mandate for an internal government agency to assess its own operational capacity and report findings to Congress. It is a transparency and accountability measure, not a substantive policy change or appropriation.
What the text implies
- Assessment may reveal significant unfunded mandates or resource shortfalls at CISA, potentially triggering pressure for emergency appropriations or reorganization.
- Consultation requirement with state, local, tribal, and territorial governments may surface coordination gaps in cybersecurity defense that have not been formally documented.
- Explicit inclusion of emerging technologies (AI, quantum computing) and operational technology signals congressional concern about CISA's readiness for evolving threat landscape.
- Report to Congress creates a public record that could inform oversight hearings, budget negotiations, and future cybersecurity legislation.
Section numbers refer to the bill text the analysis read — linked under Primary records below.
Who it affects
The bill creates a transparent, congressionally-mandated assessment of CISA's ability to protect critical infrastructure and government systems that citizens depend on. Identifying resource and personnel gaps is a prerequisite for Congress to fund adequate cybersecurity defenses, which directly serves public safety and national security.
Named in the bill
Cybersecurity and Infrastructure Security Agency (CISA), Department of Homeland Security, House Committee on Homeland Security, Senate Committee on Homeland Security and Governmental Affairs, Information Sharing and Analysis Organizations, Sector Coordinating Councils, Joint Cyber Defense Collaborative, Alliance of National Councils for Homeland Operational Resilience – Critical Infrastructure
Where it stands
2 cosponsors: 2 Democrats.
- Sep 16, 2026 — Introduced · Congress.gov: “Introduced in House”
- Sep 16, 2026 — Referred to House Committee on Energy and Commerce and House Committee on Oversight and Government Reform · Congress.gov: “Referred to the Committee on Homeland Security, and in addition to the Committees on Oversight and Government…”
Dates and quoted wording are Congress.gov's action record; the timeline shows status changes, not every procedural step.
How this was measured
Analysis — Quorum's AI read the bill text published by Congress.gov (4,046 characters) on Sep 24, 2026. Section numbers in the findings refer to that text, linked below; transparency and hidden-provision scores are compared against the median of 14,819 analysed bills.
Status and sponsors — Congress.gov's bill record — actions, committee referrals and cosponsors — loaded nightly. The timeline shows status changes, not every procedural action.
As of — page rendered 2026-09-25.
“Congress demands CISA prove it can protect America's digital infrastructure” QuorumCivic. https://share.quorumcivic.app/bill/119/hr10474 Report an error