

This memorandum's purpose is to introduce you to what has been done to date, and to invite you to participate in the Cabinet Committee's work. After consultation with the Director of Central Intelligence, the Deputy Secretary of Defense, the Deputy Attorney General, the Deputy Assistant to the President for National Security Affairs, the Deputy National Security Advisor to the Vice President, and the Director of the Federal Bureau of Investigation, it was decided that, in light of the breadth of critical infrastructure and the diversity of sources and forms of attack, the Cabinet Committee should consider threats to infrastructure not only from terrorism, but also from other sources. The Committee needs to address infrastructure both traditional "physical" attacks (such as explosions) and electronic, "cyber" attacks (e.g., attacks on computer or communications systems). To facilitate the Cabinet Committee's work, a small working group reviewed options: (1) a full-time group that would consider how the government should address threats to critical infrastructure in the long term; and (2) an emergency response capability to address physical and/or cyber threats in the interim, while the full-time group was conducting its study. The report of the working group is attached, along with a summary of its recommendations. Having reviewed the options presented by the working group, we make the following proposals: Preliminary Recommendation 1: Follow-on Study Group We propose the creation of a full-time Task Force in the Executive Office of the President to study infrastructure assurance issues and recommend national policy (as outlined more fully in the CIWG). The Task Force would be headed by a presidential appointee from the private sector and comprise full- time representatives from the affected agencies. It would include an advisory committee from the private sector, and could also draw on existing advisory groups for assistance. The Task Force would report to the President through a Principals Committee of affected agencies. The work of the Task Force would be overseen by a Steering Committee consisting of the Deputy Attorney General, the Deputy Secretary of Defense, and a representative of one of the agencies reflecting civil concerns. The Task Force would have a nominal duration of 12 months. An important issue that remains to be addressed is how the Task Force would be funded. Preliminary Recommendation 2: Interim Operational Response We also propose establishing a single interagency coordinating group within the Department of Justice, chaired by the FBI, to handle the interim infrastructure assurance mission with regard to both physical and cyber threats and to coordinate the work of the government in this area. This group would facilitate rapid access to existing physical and cyber security efforts and expertise within the government. It would also act as a form of "yellow pages" to facilitate access to resources and expertise in the private sector, particularly with regard to cyber threats. Individuals agencies would continue to carry out their existing programs. In particular, DoD and JCS would continue to perform an emergency response function for their own assets and responsibilities. Nevertheless, their expertise might be called upon to assist in the event of a threat or attack to infrastructures outside of DoD. Conclusion I look forward to meeting with you (or, if you prefer, your Deputy) to discuss this subject and to decide on final recommendations to the President. Attachments FOR OFFICIAL USE ONLY

