AN ACT to create and enact chapter 13-01.2 of the North Dakota Century Code, relating to the financial institution data security program; and to amend and reenact sections 6-01-04.1 and 6-01-04.2, subsection 7 of section 6-03-02, sections 13-04.1-01.1, 13-04.1-11.1, 13-05-07.1, 13-08-10, 13-08-11.1, and 13-09.1-14, subsection 3 of section 13-09.1-17, sections 13-09.1-38 and 13-10-05, subsection 1 of section 13-11-10, section 13-12-19, subsections 6, 21, and 22 of section 13-13-01, and sections 13-13-04 and 13-13-18 of the North Dakota Century Code, relating to the department of financial institutions, financial institutions, response to department requests, renewal of licenses, orders to cease and desist, issuance of licenses, revocation of licenses, and exemptions from licenses.
House Bill No. 1127 establishes a comprehensive data security program for financial institutions in North Dakota. It creates Chapter 13-01.2 of the North Dakota Century Code, detailing the requirements for safeguarding customer information, including the development of an information security program, risk assessment, and incident response plans. The bill also amends existing statutes related to the regulation of financial institutions, enhancing the authority of the Department of Financial Institutions to issue cease and desist orders and manage the licensing process for financial entities.
The legislation mandates that financial corporations implement administrative, technical, and physical safeguards appropriate to their size and complexity, ensuring the confidentiality and integrity of customer information. It also requires financial institutions to notify the commissioner of any security breaches affecting customer data and outlines penalties for non-compliance. The bill aims to protect consumers from data breaches and enhance the overall security framework within the financial sector in North Dakota.
If enacted, HB1127 will significantly strengthen the regulatory framework governing data security for financial institutions in North Dakota. It will require institutions to adopt robust security measures and risk management practices, potentially leading to increased operational costs. The bill also empowers the Department of Financial Institutions to enforce compliance more effectively, potentially resulting in stricter oversight of financial entities and improved consumer protection against data breaches.
The sentiment surrounding HB1127 appears to be largely positive, with support from the Department of Financial Institutions and industry stakeholders who recognize the need for enhanced data security measures. However, there may be concerns regarding the implementation costs and the regulatory burden placed on smaller financial institutions. The bill passed with a significant majority in the House and Senate, indicating strong legislative support.
Notable points of contention include concerns from smaller financial institutions regarding the potential financial burden of implementing the required security measures and the administrative complexities associated with compliance. Some legislators and industry representatives have expressed the need for a balanced approach that ensures consumer protection without imposing excessive costs on smaller entities.