§681. Definitions
In this part:
(1) Center
The term "Center" means the center established under section 659 of this title.
(2) Council
The term "Council" means the Cyber Incident Reporting Council described in section 681f of this title.
(3) Covered cyber incident
The term "covered cyber incident" means a substantial cyber incident experienced by a covered entity that satisfies the definition and criteria established by the Director in the final rule issued pursuant to section 681b(b) of this title.
(4) Covered entity
The term "covered entity" means an entity in a critical infrastructure sector, as defined in Presidential Policy Directive 21, that satisfies the definition established by the Director in the final rule issued pursuant to section 681b(b) of this title.
(5) Cyber incident
The term "cyber incident"-
(A) has the meaning given the term "incident" in section 659 1 of this title; and
(B) does not include an occurrence that imminently, but not actually, jeopardizes-
(i) information on information systems; or
(ii) information systems.
(6) Cyber threat
The term "cyber threat" has the meaning given the term "cybersecurity threat" in section 650 of this title.
(7) Federal entity
The term "Federal entity" has the meaning given the term in section 1501 of this title.
(8) Ransom payment
The term "ransom payment" means the transmission of any money or other property or asset, including virtual currency, or any portion thereof, which has at any time been delivered as ransom in connection with a ransomware attack.
(9) Significant cyber incident
The term "significant cyber incident" means a cyber incident, or a group of related cyber incidents, that the Secretary determines is likely to result in demonstrable harm to the national security interests, foreign relations, or economy of the United States or to the public confidence, civil liberties, or public health and safety of the people of the United States.
(10) Virtual currency
The term "virtual currency" means the digital representation of value that functions as a medium of exchange, a unit of account, or a store of value.
(11) Virtual currency address
The term "virtual currency address" means a unique public cryptographic key identifying the location to which a virtual currency payment can be made.
(
Editorial Notes
References in Text
Section 659 of this title, referred to in par. (5)(A), was subsequently amended, and section 659(a) no longer defines the term "incident". Reference to term, "incident", as defined in this chapter deemed to be a reference to that term as defined in section 650(12) of this title, see section 7143(f)(2) of
Amendments
2022-Par. (2).
Pars. (3) to (5).
Par. (6).
Par. (7).
Par. (8).
Par. (9).
Par. (10).
Par. (11).
"(A) has the meaning given the term in section 3502 of title 44; and
"(B) includes industrial control systems, such as supervisory control and data acquisition systems, distributed control systems, and programmable logic controllers."
Par. (12).
Par. (13).
Par. (14).
"(A) means an incident that includes the use or threat of use of unauthorized or malicious code on an information system, or the use or threat of use of another digital mechanism such as a denial of service attack, to interrupt or disrupt the operations of an information system or compromise the confidentiality, availability, or integrity of electronic data stored on, processed by, or transiting an information system to extort a demand for a ransom payment; and
"(B) does not include any such event where the demand for payment is-
"(i) not genuine; or
"(ii) made in good faith by an entity in response to a specific request by the owner or operator of the information system."
Par. (15).
Par. (16).
Par. (17).
Pars. (18), (19).