Congress orders audit of Coast Guard's cyber readiness for U.S. ports
H.R. 7625 — MTS CYBER Act of 2026 · Filed by Addison McDowell (R-NC) · 2 cosponsors · Introduced Feb 20, 2026 · Referred to committee
Your members of Congress
Enter a ZIP to see where your representative and both senators stood on this bill.
Looked up on this device — your ZIP is never stored on our servers.
What it does
This bill directs the Government Accountability Office (GAO) to audit the Coast Guard's budget, staffing, and capabilities to determine whether it has adequate resources to manage cybersecurity risks in the marine transportation system—a responsibility it was given under recent executive orders and federal rules. The audit will assess funding for cybersecurity personnel, training, and enforcement, and will evaluate whether the Coast Guard can effectively oversee maritime industry compliance with new cyber regulations.
Why we flagged it
The bill's sole operative mechanism is a directive to the GAO to conduct a review and report findings to Congress. It is a transparency and oversight measure, not a substantive policy change or appropriation.
What the text implies
- The audit may reveal significant underfunding of Coast Guard cybersecurity operations, potentially triggering pressure for emergency supplemental appropriations or budget reallocation.
- The 270-day timeline creates a near-term deadline (approximately 9 months post-enactment) that may accelerate congressional action on maritime cybersecurity funding before the next fiscal year.
The full analysis lists 4 implications of this text.
Who it affects
The bill creates accountability for a critical national security function by requiring an independent audit of whether the Coast Guard is adequately resourced to protect maritime infrastructure from cyber threats. Citizens depend on secure ports and shipping for economic stability and national security; an audit that surfaces resource gaps enables Congress to make informed appropriations decisions and hold the executive branch accountable for fulfilling its cybersecurity duties.