S-5211-119
Read twice and referred to the Committee on Foreign Relations.
Sponsored by Mike Rounds (R-SD)
What it does
This bill would require the Under Secretary of Defense for Policy and the Chairman of the Joint Chiefs of Staff to develop, submit to Congress, and begin implementing a strategy for cyber cooperation with U.S. allies and partners in the Indo-Pacific region within 180 days of enactment. The strategy would cover defensive and offensive cyber operations, information sharing, training, critical infrastructure protection, and interoperability standards through 2040. The bill would also require a funding plan identifying resource gaps and a progress report to Congress by March 15, 2028.
Who benefits
U.S. military and defense planners who would gain a structured framework for coordinating cyber operations with regional allies. Indo-Pacific allies and partners (such as Japan, South Korea, Australia, and the Philippines) whose cybersecurity capacity could be strengthened through U.S. cooperation. Defense contractors and technology firms that may receive contracts to support capacity-building initiatives. Critical infrastructure operators in partner nations. National Guard units participating in the State Partnership Program. Congressional oversight committees that would receive detailed briefings and reports on DoD cyber activities in the region.
Who is hurt
DoD personnel and commands (Indo-Pacific Command, Cyber Command) who would bear the administrative burden of developing and reporting on the strategy within a tight 180-day window. Taxpayers who may ultimately fund any resource gaps identified in the strategy, though no specific appropriation is made in this bill. Adversarial state actors in the region whose cyber operations may face greater collective resistance. Allies or partners whose cybersecurity shortfalls are formally documented, potentially exposing sensitive capability gaps in classified or unclassified annexes.
Supporters argue
Supporters argue that the Indo-Pacific region faces an intensifying cyber threat environment, with adversaries conducting persistent intrusions against U.S. allies' defense networks and critical infrastructure, and that the U.S. currently lacks a unified, institutionalized framework for coordinating cyber cooperation across the region. They contend that requiring a comprehensive strategy — covering everything from offensive cyber integration to workforce development and interoperability standards — would close documented capability gaps, strengthen collective deterrence, and give Congress the oversight visibility it needs to resource the effort appropriately through 2040.
Opponents argue
Opponents argue that mandating a formal, partially unclassified strategy document risks telegraphing U.S. cyber cooperation priorities and capability gaps to adversaries, potentially undermining the operational security of the very partnerships it seeks to strengthen. They contend that DoD already conducts extensive bilateral and multilateral cyber cooperation through existing mechanisms — such as theater security cooperation plans and AUKUS Pillar II — and that adding a new statutory reporting requirement creates bureaucratic overhead without guaranteeing meaningful operational improvement or additional resources.