(a) In generalEntities may voluntarily report cyber incidents or ransom payments to the Agency that are not required under paragraph (1), (2), or (3) of section 681b(a) of this title, but may enhance the situational awareness of cyber threats.
(b) Voluntary provision of additional information in required reportsCovered entities may voluntarily include in reports required under paragraph (1), (2), or (3) of section 681b(a) of this title information that is not required to be included, but may enhance the situational awareness of cyber threats.
(c) Application of section 681e of this titleSection 681e of this title shall apply in the same manner and to the same extent to reports and information submitted under subsections (a) and (b) as it applies to reports and information submitted under section 681b of this title.
Structure US Code
CHAPTER 1— HOMELAND SECURITY ORGANIZATION
SUBCHAPTER XVIII— CYBERSECURITY AND INFRASTRUCTURE SECURITY AGENCY
Part D— Cyber Incident Reporting
§ 681b. Required reporting of certain cyber incidents
§ 681c. Voluntary reporting of other cyber incidents
§ 681d. Noncompliance with required reporting
§ 681e. Information shared with or provided to the Federal Government