Skip to content

Menu

LexBlog, Inc. logo
NetworkSub-MenuBrowse by SubjectBrowse by PublisherJoin the NetworkGet StartedSubscribeSupportContact
Search
Close

Proposed Cybersecurity Export Rule

By Alexandra Baj on July 1, 2015
Email this postTweet this postLike this postShare this post on LinkedIn

On May 20, 2015, the US Department of Commerce’s Bureau of Industry and Security (BIS) published a proposed export control rule that seeks to impose strict controls on the export of certain intrusion and surveillance (“cybersecurity”) items.  The rule would add new licensing and reporting requirements for companies developing and exporting intrusion and surveillance cyber products.  This proposal is meant to implement the December 2013 cybersecurity additions to the Wassenaar Arrangement, an agreement among 41 states that coordinate export control proposals foor enactment into national law. The proposed rule tightens control over a potentially wide range of cybersecurity items, increases the regulatory burden on companies to a potentially prohibitive level, and could impede some exports altogether to certain countries and end-users.

The proposed rule could cover a wide range of cybersecurity companies and products and is likely to generate significant comments from industry.  Concerns primarily stem from the overbroad and vague language used in the proposed rule, which could include many defensive products, items related to vulnerability research, and even some products not directly connected with security.  As such, the proposed rule could damage US security companies’ ability to compete abroad and stunt US cybersecurity efforts.  We saw this same scenario play out for the US space industry as a result of excessive and burdensome ITAR export control regulation of technologies in that sector that had dual use capability. The US Government needs to take stock, not forget the lessons of the past, and be more innovative in establishing a control regime that comports with global realities.  Companies that develop, produce, test, market, or are major offshore users of cybersecurity items should carefully consider submitting comments regarding the potential impact of the rule on their business and whether the rules impose unmanageable burdens.  BIS is accepting comments on the proposed rule until July 20, 2015.

Photo of Alexandra Baj Alexandra Baj

Alex Baj’s practice primarily involves export controls and economic sanctions laws and regulations, anti-corruption investigations and compliance, international trade, and security clearance issues. Alex advises clients on export control and economic sanctions laws and regulations, including the Export Administration Regulations (EAR), International…

Alex Baj’s practice primarily involves export controls and economic sanctions laws and regulations, anti-corruption investigations and compliance, international trade, and security clearance issues. Alex advises clients on export control and economic sanctions laws and regulations, including the Export Administration Regulations (EAR), International Traffic in Arms Regulations (ITAR), US sanctions regulations administered by the Office of Foreign Assets Control (OFAC), and nuclear export controls under the jurisdiction of the Nuclear Regulatory Commission (NRC).  Alex specializes in the development and implementation of export and anti-corruption compliance policies and procedures and training, internal investigations and voluntary disclosures under the EAR, the ITAR, and OFAC rules, due diligence for mergers and acquisitions, and on encryption and cybersecurity export controls.  Her clients include companies involved in defense, aerospace, software, semiconductor, and uranium processing industries.

Read Alex’s full bio.

Read more about Alexandra BajEmail
Show more Show less
  • Posted in:
    Government and Public Policy
  • Blog:
    International Compliance Blog
  • Organization:
    Steptoe LLP

Call us at 1-800-913-0988 or email sales@lexblog.com.

Facebook LinkedIn Twitter RSS
The Library at LexBlog
  • About LexBlog
  • The Field We Built
  • Library at LexBlog
  • Our Beliefs
  • Our Team
  • Contact LexBlog
  • Disclaimer
  • Editorial Policy
  • Terms of Service
  • Get Started
  • Publishing Solutions
  • Compass
  • Submit a Request
  • Support Center
  • System Status
Copyright © 2026, LexBlog, Inc. All Rights Reserved.
Law blog design & platform by LexBlog LexBlog Logo