Page:United States Statutes at Large Volume 109 Part 1.djvu/185

This page needs to be proofread.

PUBLIC LAW 104-13—MAY 22, 1995 109 STAT. 169 "(ii) representatives of other statistical agencies under rotating membership; and "(9) provide opportunities for training in statistical policy functions to employees of the Federal Government under which— "(A) each trainee shall be selected at the discretion of the Director based on agency requests and shall serve under the chief statistician for at least 6 months and not more than 1 year; and "(B) all costs of the training shall be paid by the agency requesting training, "(f) With respect to records management, the Director shall— "(1) provide advice and assistance to the Archivist of the United States and the Administrator of General Services to promote coordination in the administration of chapters 29, 31, and 33 of this title with the information resources management policies, principles, standards, and guidelines established under this chapter; "(2) review compliance by agencies with— "(A) the requirements of chapters 29, 31, and 33 of this title; and "(B) regulations promulgated by the Archivist of the United States and the Administrator of General Services; and "(3) oviersee the application of records management policies, principles, standards, and guidelines, including requirements for archiving information maintained in electronic format, in the planning and design of information systems. "(g) With respect to privacy and security, the Director shall— "(1) develop and oversee the implementation of policies, principles, standards, and guidelines on privacy, confidentiality, security, disclosure and sharing of information collected or maintained by or for agencies; "(2) oversee and coordinate compliance with sections 552 and 552a of title 5, the Computer Security Act of 1987 (40 U.S.C. 759 note), and related information management laws; and "(3) require Federal agencies, consistent with the Computer Security Act of 1987 (40 U.S.C. 759 note), to identify and afford security protections commensurate with the risk and magnitude of the harm resulting from the loss, misuse, or unauthorized access to or modification of information collected or maintained by or on behalf of an agency. "(h) With respect to Federal information technology, the Director shall— "(1) in consultation with the Director of the National Institute of Standards and Technology and the Administrator of General Services— "(A) develop and oversee the implementation of policies, principles, standards, and guidelines for information technology functions and activities of the Federal Government, including periodic evaluations of major information systems; and "(B) oversee the development and implementation of standards under section 111(d) of the Federal Property and Administrative Services Act of 1949 (40 U.S.C. 759(d)); Records. Regulations.