HR 1766 · 119th Congress

NTIA Policy and Cybersecurity Coordination Act

cybersecurity policyinternet policytelecommunicationsfederal agency organizationtechnology innovation
Share

Last action 2025-07-15

Sponsored by Rep. Obernolte, Jay [R-CA-23] (R) — CA

Click any stage to learn more about the legislative process.

Would formally establish the Office of Policy Development and Cybersecurity within the National Telecommunications and Information Administration (NTIA), designating a specific official to lead internet and communications policy analysis, cybersecurity coordination, and commercialization efforts.

The bill reorganizes an existing NTIA position and codifies a broad set of duties spanning cybersecurity guidance, market innovation, and interagency coordination — giving the office a statutory foundation it currently lacks.

What this bill would do

What it would do

The bill would create the Office of Policy Development and Cybersecurity within the National Telecommunications and Information Administration (NTIA), headed by a redesignated Associate Administrator for Policy Development and Cybersecurity who would report to the NTIA Assistant Secretary. The office would be responsible for analyzing and developing national communications and information policies for the internet and communications technologies.

The Associate Administrator would carry out 14 enumerated duties: developing market-based policies for communications, media, and technology markets; studying how Americans access the internet and digital services; coordinating multistakeholder cybersecurity and privacy guidance; promoting collaboration between security researchers and communications providers; advocating for secure supply chains; presenting digital economy cybersecurity policy to Congress and regulators; supporting innovation and commercialization of communications technologies; and soliciting input from small and rural providers. The bill also automatically redesignates the existing Associate Administrator for Policy Analysis and Development into the new role upon enactment.

Key provisions

  1. 1Would establish the Office of Policy Development and Cybersecurity within NTIA, headed by an Associate Administrator who reports to the Assistant Secretary.Sec. 2(a)
  2. 2Would require the Associate Administrator to develop market-based policies promoting innovation, competition, consumer access, digital inclusion, and economic growth in communications and technology markets.Sec. 2(a)
  3. 3Would direct the Associate Administrator to coordinate multistakeholder processes for cybersecurity and privacy policy guidance for the internet and communications networks.Sec. 2(a)
  4. 4Would require advocacy for policies promoting security and resilience of communications networks, including secure supply chains, while fostering innovation.Sec. 2(a)
  5. 5Would direct the Associate Administrator to develop policies accelerating innovation and commercialization of communications technologies and to identify and address barriers to trust and security.Sec. 2(a)
  6. 6Would redesignate the existing Associate Administrator for Policy Analysis and Development as Associate Administrator for Policy Development and Cybersecurity, effective on the date of enactment.Sec. 2(b)

Who would be affected

The NTIA and its existing Associate Administrator for Policy Analysis and Development — who would be redesignated automatically — are directly affected. Communications service providers (especially small and rural operators), security researchers, software developers, and businesses in the communications technology sector would interact with the new office's policy, coordination, and commercialization work.

Why it matters

By giving the office a statutory foundation, the bill would lock in specific cybersecurity and internet policy duties for NTIA that currently rest on administrative discretion. Small and rural communications providers are explicitly named as stakeholders the office must consult, and the coordination mandate across Commerce, state agencies, and other federal bodies could affect how cybersecurity policy is developed across the federal government.

What would change

Changes to existing law

Amends National Telecommunications and Information Administration Organization Act (47 U.S.C. 901 et seq.) (Sec. 2(a))

Adds a new Section 106 establishing the Office of Policy Development and Cybersecurity within NTIA and enumerating the Associate Administrator's duties.

Agencies directed to act

National Telecommunications and Information AdministrationDepartment of CommerceFederal Communications Commission

Effective dates

  • Redesignation of existing Associate Administrator to new title and roleSec. 2(b)Upon enactment

Funding and costs

Congressional Budget Office estimate

CBO estimates that implementing H.R. 1766 would cost less than $500,000 over the 2025–2030 period, subject to the availability of appropriated funds.

H.R. 1766 would codify the existing duties of the Office of Policy Analysis and Development within the National Telecommunications and Information Administration (NTIA) and rename it the Office of Policy Development and Cybersecurity. CBO estimates the bill would cost less than $500,000 over the 2025–2030 period; any costs incurred would depend on funds appropriated by Congress (discretionary spending) rather than being automatically triggered. CBO did not identify any intergovernmental or private-sector mandates in the bill.

View the full CBO cost estimate

How implementation would work

The bill is largely self-executing: upon enactment, the existing Associate Administrator is redesignated and the office is formally created with no rulemaking required. Going forward, the Associate Administrator would carry out duties as directed by the NTIA Assistant Secretary, coordinate multistakeholder processes for cybersecurity guidance, conduct studies delegated by the Assistant Secretary or required by Congress, and collaborate with other Commerce Department offices, state agencies, the Federal Communications Commission, and other federal agencies. The office would also provide public access to relevant data and research on communications technology innovation, consistent with classified-information protections.

Legislative status & sources

Latest action

Received in the Senate and Read twice and referred to the Committee on Commerce, Science, and Transportation.

2025-07-15

Official CRS summary

Show the CRS summary

This bill establishes an Office of Policy Development and Cybersecurity within the National Telecommunications and Information Administration (NTIA) to analyze and develop policies related to internet and communications technologies.

Specific activities of the office include, for example, developing policies that promote (1) innovation, competition, and other elements of the communications, media, and technology markets; (2) security and resilience to cybersecurity incidents while fostering innovation; and (3) commercialization of communications technologies.

The existing Associate Administrator for Policy Analysis and Development within NTIA must be redesignated as Associate Administrator for Policy Development and Cybersecurity, and must serve as head of the office.

From the Congressional Research Service.

Legislative subjects

Advanced technology and technological innovations; Computer security and identity theft; Computers and information technology; Department of Commerce; Executive agency funding and structure; Government information and archives; Government studies and investigations; Internet, web applications, social media; Science, Technology, Communications; Technology transfer and commercialization; Telephone and wireless communication

Committee report

H. Rept. 119-175

Congressional Bill

Ask GovernmentReporter about this bill

Ask anything about this bill. The AI can look up referenced laws and statutes to provide context.

HR 1766: NTIA Policy and Cybersecurity Coordination Act | Legislation Reporter