Feinstein proposes tougher breach notification law

Share this article:

Sen. Dianne Feinstein (D-Calif.) on Monday toughened her proposal to require organizations to notify people of breaches that compromise their personal data.

In January, Feinstein introduced a bill based on California's security breach notification law. But after a string of recent data breaches and in working with privacy-rights advocates, Feinstein said in a statement that she decided "more needed to be done to protect Americans."

The new version of the bill is stronger than the California law in several ways, according to Feinstein. While California's law covers unencrypted electronic data, her bill covers both electronic and non-electronic data and encrypted and unencrypted data.

It also allows individuals to put a seven-year fraud alert on their credit report, and addresses what Feinstein calls a major loophole in California's law by laying out specific requirements for what must be included in notices.

Her bill also carries stiffer civil penalties - $1,000 per individual an organization failed to notify or not more than $50,000 per day while an organization fails to notify anyone. The legislation allows exceptions for law enforcement or national security purposes.

"The fact of the matter is that your buying habits, your bank accounts, your Social Security number, your drivers license - all of your personal data - today is being collected, collated, distributed, bought, sold - without your knowledge or consent," Feinstein said.

"We desperately need a strong national standard that says whenever a data system is breached, everyone who is at risk of identity theft must be notified."

A Senate Judiciary Committee is scheduled to hold a hearing on Feinstein's bill Wednesday.

http://feinstein.senate.gov

Share this article:
You must be a registered member of SC Magazine to post a comment.
close

Next Article in News

Sign up to our newsletters

TOP COMMENTS

More in News

Information sharing requires breaking down barriers, White House cyber guru says

Information sharing requires breaking down barriers, White House ...

The White House has advanced an agenda to promote and facilitate information sharing on security threats and vulnerabilities.

Worm variant of Android ransomware, Koler, spreads via SMS

Worm variant of Android ransomware, Koler, spreads via ...

Upon infection, the Koler variant will send an SMS message to all contacts in the device's address book.

Patch for Windows flaw can be bypassed, prompts temporary fix from Microsoft

Patch for Windows flaw can be bypassed, prompts ...

The Windows zero-day received a patch last week, but the fix can still be bypassed by crafty attackers.