Quality, Expert-Derived Cybersecurity Documentation To Keep Organizations Secure, Compliant & Resilient - No AI Slop!
Secure Controls Framework

US State Data Security Laws & Regulations

State-level data protection laws are becoming more common in the United States. These states have laws that govern minimum cybersecurity requirements:  

PCI DSS
CA SB1386
US Federal Laws
MA 201 CMR 17.00
US State Laws
Plastic Card Security Act
EU GDPR
NV SB227
International Laws
OR ORS 646.200
International Laws
WA HB 1149

Why should you take these state-level Information Security laws seriously? The reason is simple: A single negligent breach can close your business forever, because liability insurance will not cover professional negligence. Without the ability to prove steps were taken to ensure due care and due diligence were applied to your business operations, you may be considered negligent in a lawsuit. Additionally, Information Security policies are a tool that you can use to enforce proper conduct by your employees.