US Federal 2025-2026 Regular Session

US Federal Senate Bill SB2041

Introduced
 
Introduced
6/11/25  

Caption

Information and Communications Technology and Services National Security Review Act

Summary

SB2041, the Information and Communications Technology and Services National Security Review Act, would create a new Office of Information and Communications Technology and Services within the Department of Commerce’s Bureau of Industry and Security. The office would be responsible for reviewing certain ICTS-related transactions that may pose national security risks, especially where they involve entities or jurisdictions of concern, and for mitigating or prohibiting transactions when risks cannot be adequately addressed. The bill defines covered transactions broadly to include ICTS supply-chain transactions and certain exports, reexports, and in-country transfers of items on the Commerce Control List. The bill gives the Secretary of Commerce substantial authority to investigate covered transactions, require information and testimony, impose mitigation measures, exclude components, and prohibit transactions. It also directs the Director of National Intelligence to provide periodic risk assessments, establishes an ICTS technical advisory committee, preserves existing ICTS-related executive order authorities, and creates enforcement, judicial review, and penalty provisions. Conforming amendments would update the Export Control Reform Act of 2018 to integrate the new part IV framework, add reporting requirements, and authorize an additional Assistant Secretary to help carry out the new responsibilities.

Impact

The bill would amend the Export Control Reform Act of 2018 by adding a new Part IV that formalizes and expands Commerce’s authority over ICTS national security reviews. It would create a permanent statutory structure for reviewing, mitigating, and prohibiting certain technology and supply-chain transactions, while also adding reporting, enforcement, and judicial review provisions. The measure would affect U.S. persons, companies in the ICTS and export-control sectors, and parties connected to China, Russia, Iran, North Korea, and other entities or jurisdictions designated as concerns.

Sentiment

Based on the bill text and available context, the measure appears to be framed as a national security and supply-chain protection bill, with an emphasis on preventing foreign adversaries from exploiting U.S. technology and infrastructure. There are no recorded committee transcripts or votes in the provided material, so no formal bipartisan or partisan sentiment can be directly measured from debate or roll call history. The structure and findings suggest a generally security-focused, enforcement-oriented approach that would likely appeal to lawmakers concerned about technology transfer, cyber risk, and critical infrastructure resilience.

Contention

The main points of contention are likely to be the breadth of Commerce’s new authority and the scope of transactions that can be reviewed or prohibited. The bill allows the Secretary to act on suspected undue risk, impose broad mitigation conditions, require extensive disclosures, and prohibit transactions when risks cannot be mitigated, which could raise concerns from industry about uncertainty, compliance burdens, and potential overreach. Additional friction may come from the bill’s focus on jurisdictions of concern, its use of classified or ex parte information in judicial review, and the significant criminal and civil penalties attached to violations.

Companion Bills

US SB2040

Related Connected Vehicle National Security Review Act

Previously Filed As

US HB2591

Information and communications technology and services; transactions with foreign adversaries.

US SB2040

Connected Vehicle National Security Review Act

US HB4920

BIS IT Modernization Act Bureau of Industry and Security Information Technology Modernization Act

US HB2061

Information and Communication Technology Strategy Act

US SB185

Enhance Security of Office of Information Technology

US HB958

Department of Information Technology Services; revise certain provisions relating to acquisition of technology services.

US HB2270

Authorizing the chief information security officer to receive audit reports and updating statutes related to services provided by the chief information technology officer.

US H0888

Amends existing law to revise provisions regarding the powers and duties of the Office of Information Technology Services.

US SB179

Information technology; directing state agencies to manage information technology services. Effective date. Emergency.

US SB179

Information technology; directing state agencies to manage information technology services. Effective date. Emergency.

Similar Bills

No similar bills found.