Purpose:Chapter 442 of the Laws of 2005, entitled the "Information Security Breach and Notification Act". Amends the State Technology Law section 208. These provisions require all Local District Medicaid Offices to notify recipients, applicants and respective governmental offices (Attorney General, Consumer Protection Board and the Office of Cyber Security & Critical Infrastructure Coordination) of the unauthorized acquisition of private information which resulted from a breach of information security. Local District of Social Services (LDSS) enact policies to perform required action described below. Penalties are established for failure to notify recipients and applicants and respective government offices. The law was enacted on August 9, 2005 and has an effective date of December 7, 2005.
|