Establishes a commission to study the European Union's general protection data regulation and the current state of cyber security in the state.
Summary
Bill S03344 aims to establish a commission under the office of information technology services to study the European Union's General Data Protection Regulation (GDPR) and the current state of cybersecurity in New York. The commission will consist of eleven members with expertise in various fields related to cybersecurity and will investigate and make recommendations on how to enhance the protection of personal online information in the state. The commission will focus on critical infrastructure sectors, including financial systems, telecommunications, electrical grids, and transportation systems, among others.
Impact
The establishment of this commission is expected to lead to the development of new legislation aimed at improving cybersecurity measures in New York. By using the GDPR as a model, the bill seeks to enhance the protection of personal data and ensure that New York's cybersecurity policies are robust and effective. This could result in significant changes to state laws regarding data protection and cybersecurity practices across both public and private sectors.
Sentiment
The sentiment surrounding Bill S03344 appears to be generally supportive among legislators who recognize the importance of cybersecurity in the modern digital landscape. However, there may be concerns regarding the resources required to implement the commission's recommendations and the potential impact on businesses and government agencies.
Contention
Notable points of contention may arise regarding the balance between privacy protection and the operational needs of businesses and government entities. Some stakeholders may argue that stringent regulations could hinder innovation or impose excessive burdens on companies, while proponents of the bill emphasize the necessity of protecting personal data in an increasingly digital world.
Same As
Establishes a commission to study the European Union's general protection data regulation and the current state of cyber security in the state.
Requires all municipal corporations to report cybersecurity incidents and demands of ransom payments to the division of homeland security and emergency services; defines terms; requires cybersecurity incident reviews; requires cybersecurity awareness training, cybersecurity protection and data protection standards for state maintained information systems.
Requires all municipal corporations to report cybersecurity incidents and demands of ransom payments to the division of homeland security and emergency services; defines terms; requires cybersecurity incident reviews; requires cybersecurity awareness training, cybersecurity protection and data protection standards for state maintained information systems.
Establishes the "secure our data act"; relates to cybersecurity protection by state entities; requires the office of information technology services to develop standards for data protection of state entity-maintained information.