Skip to main content

Politicians make promises on their stump — we watch and hold them accountable.

Help keep the record honest →Create an account
Bills/119th Congress · House

H.R. 8711

Introduced

Data Infrastructure Risk Reduction Act

Sponsor
DSuhas Subramanyam· Virginia
Introduced
May 7, 2026
Policy area
Government Operations and Politics
Latest action
Referred to the Subcommittee on Cybersecurity and Infrastructure Protection.May 8, 2026
[Congressional Bills 119th Congress]
[From the U.S. Government Publishing Office]
[H.R. 8711 Introduced in House (IH)]

<DOC>

119th CONGRESS
2d Session
H. R. 8711

To require a strategy for the defense of data centers from external 
breaches from malefactors and the protection of the communities 
surrounding data centers, and for other purposes.

_______________________________________________________________________

IN THE HOUSE OF REPRESENTATIVES

May 7, 2026

Mr. Subramanyam introduced the following bill; which was referred to 
the Committee on Homeland Security, and in addition to the Committee on 
Energy and Commerce, for a period to be subsequently determined by the 
Speaker, in each case for consideration of such provisions as fall 
within the jurisdiction of the committee concerned

_______________________________________________________________________

A BILL

To require a strategy for the defense of data centers from external 
breaches from malefactors and the protection of the communities 
surrounding data centers, and for other purposes.

Be it enacted by the Senate and House of Representatives of the 
United States of America in Congress assembled,

SECTION 1. SHORT TITLE.

This Act may be cited as the ``Data Infrastructure Risk Reduction 
Act''.

SEC. 2. PROTECTION OF DATA CENTERS.

(a) In General.--Not later than 180 days after the date of the 
enactment of this Act, the Secretary of Homeland Security, acting 
through the Director of the Cybersecurity and Infrastructure Security 
Agency of the Department of Homeland Security, in collaboration, as 
appropriate, with the Secretary of Defense, shall--
(1) identify data centers that should be treated as 
critical infrastructure;
(2) consider--
(A) the security of the power and water supply 
infrastructure (with a particular focus on above-ground 
electric power transmission lines and electrical 
substations) connected to such data centers; and
(B) any potential implications of data centers that 
are sited in proximity to communities or other 
residential areas; and
(3) submit to Congress a strategy, including 
recommendations, to--
(A) defend data centers described in this 
subsection from external breaches from malefactors; and
(B) protect communities and other residential areas 
described in paragraph (2)(B).
(b) Definitions.--In this section:
(1) Critical infrastructure.--The term ``critical 
infrastructure'' has the meaning given such term in section 
1016(e) of Public Law 107-56 (42 U.S.C. 5195c(e)).
(2) Data center.--The term ``data center'' has the meaning 
given such term in section 453(a) of the Energy Independence 
and Security Act of 2007 (42 U.S.C. 17112(a)).
<all>

Plain-language analysis

Not yet analyzed.

A plain-language breakdown — including any hidden or off-intent provisions and whether the bill was fast-tracked — is generated separately and reviewed before publishing. It will appear here once ready. Until then, the verbatim text above and the official source are the record.

StumpWatch is live, and the record is still growing. Many promises and positions aren’t tracked yet, and some features are still in beta. Add a sourced promise and help keep the record honest.

Help keep the record honest →