There shall be in the Department of Defense a Communications Security Review and Advisory Board (in this section referred to as the “Board”) to review and assess the communications security, cryptographic modernization, and related key management activities of the Department and provide advice to the Secretary with respect to such activities.
(c)Responsibilities.—The Board shall—
(1) monitor the overall communications security, cryptographic modernization, and key management efforts of the Department, including activities under major defense acquisition programs (as defined in section 2430(a) of this title), by—
tracking compliance of each military department with respect to communications security modernization efforts;
validating lifecycle communications security modernization plans for major defense acquisition programs;
validate the need to replace cryptographic equipment based on the expiration dates of the equipment and evaluate the risks of continuing to use cryptographic equipment after such expiration dates;
convene in-depth program reviews for specific cryptographic modernization developments with respect to validating requirements and identifying programmatic risks;
develop a long-term roadmap for communications security to identify potential issues and ensure synchronization with major planning documents; and
advise the Secretary on the cryptographic posture of the Department, including budgetary recommendations.
(d)Exclusion of Certain Programs.—
The Board shall not include the consideration of programs funded under the National Intelligence Program (as defined in section 3(6) of the National Security Act of 1947 (50 U.S.C. 3003(6))) in carrying out this section.