Biden National Cyber Strategy Seeks to Hold Software Firms Liable for Insecurity

Markets have imposed ‘inadequate costs’ on companies that build vulnerable technology, it says

The cyber strategy signed by President Biden is the culmination of a monthslong bureaucratic process that involved more than 20 government agencies.Photo: Kevin Dietsch/Getty Images

WASHINGTON—The Biden administration said it would pursue laws to establish liability for software companies that sell technology that lacks cybersecurity protections, concluding that market forces alone aren’t sufficient to guard consumers and the nation.

Free markets and a reliance on voluntary security frameworks have imposed “inadequate costs” on companies that offer insecure products or services, according to a national cybersecurity strategy released Thursday. It says the administration would work with Congress and the private sector to create liability for software vendors, sketching out in broad terms what such legislation should entail.

What's News

Continue reading your article with
a WSJ subscription

Subscribe Now

Already a member? Sign In

Sponsored Offers