The 1,492 page final bill, passed by the House of Representatives on Oct. 8, requires Secretary of Defense Robert Gates to develop and implement "a new acquisition process for IT systems" within 270 days of the bill's passage.
Any new policy must include "early and continual involvement" of the technology user, improved ability to quickly and incrementally upgrade IT resources, use of prototypes, and a "modular, open-systems approach," according to the bill.
Defense was already required to send Congress implementation schedules and progress reports on major IT projects; the new bill is clearer on what information must be supplied and adds additional requirements.
Before buying new business systems, the military will now have to determine whether those systems are in compliance with Defense's enterprise architecture standards and be required to assess and re-engineer business processes to ensure they are as "efficient as practicable."
A conference report accompanying the bill said that some members of Congress are "troubled" by difficulties with Defense's health information management and technology systems. The bill makes some changes to healthcare IT at Defense, including increased Congressional oversight of health IT spending.
A number of other IT efforts made it into the bill, including a requirement that Defense develop a strategy for research into "leap-ahead" cybersecurity capabilities, authorization for the Navy to continue investing in the Navy-Marine Corps Intranet, commission of a study on cybersecurity workforce issues, and authorization to develop technology to counter efforts to block electronic media in Iran.
Read InformationWeek's first-ever analysis of top CIOs in federal, state, and local government, and how they're embracing new expectations. Download the report here (registration required).
ProveIT Case Study for U.S. Air Force Software Assurance Center of Excellence
This case study discusses the approach taken by the Air Force in creating the Application Software Assurance Center of Excellence (ASACoE), and its approach to implementing software security. Read more...
NOTE: Offer valid for U.S., U.S. possessions, & Canada only.