首页> 外文期刊>Intellectual property & technology law journal >Data Security Breaches: The State of Notification Laws
【24h】

Data Security Breaches: The State of Notification Laws

机译:数据安全违规:通知法律状态

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

California's Security Breach Information Act (SBIA), which took effect July 1, 2003, was the first state law to impose a general obligation on businesses to notify the state's residents of data security breaches involving their personal information. Since then, at least 34 other states have enacted similar laws, many of them closely modeled on the SBIA. Most of the recent laws pair the notification obligation with a general duty to safeguard against security breaches. Some also include requirements related to the secure disposal of unwanted records. The most important variation on the SBIA has been the introduction of a risk-based exception, allowing affected entities to avoid notification based on their own assessment that the risk of harm is less than a statutorily defined standard. Each state's data security breach notification law typically applies broadly to any entity that does business in the state or maintains data files with the personal information of the state's residents, so the laws reach beyond state borders.rnIn this article, David L. Silverman of Stoel Rives examines the new laws, with attention to the variations among them and the policy objectives behind them. He then considers thernpotential for damages awards under the data security breach notification laws in light of recent decisions on negligence claims predicated on the loss of personal data to third parties. Mr. Silverman concludes his article by analyzing the prospects for new federal legislation in this area.
机译:加利福尼亚州的《安全漏洞信息法案》(SBIA)于2003年7月1日生效,是第一部对企业施加一般义务的州法律,旨在将涉及其个人信息的数据安全漏洞通知该州居民。此后,至少有34个其他州颁布了类似的法律,其中许多州都以SBIA为蓝本。最近的大多数法律都将通知义务与防止安全漏洞的一般义务结合在一起。有些还包括与安全处理不需要的记录有关的要求。 SBIA上最重要的变化是引入了基于风险的例外,使受影响的实体可以避免基于其自己的评估而知悉危害风险小于法定标准。每个州的数据安全违规通知法通常广泛适用于在该州开展业务或维护带有该州居民个人信息的数据文件的任何实体,因此该法律的适用范围超出了州边界。在本文中,Stoel的David L. Silverman里夫斯研究新法律,同时注意其中的差异以及其背后的政策目标。然后,他根据数据安全泄露通知法,根据对个人数据丢失给第三方的近期过失索赔决定,考虑了赔偿的可能性。西尔弗曼先生通过分析该领域新联邦立法的前景来结束他的文章。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号