Alabama Statutes
§ 27-62-5 — Investigation of Cybersecurity Event
(a)If the licensee learns that a cybersecurity event has or may have occurred, the licensee, or an outside vendor or service provider designated to act on behalf of the licensee, shall conduct a prompt investigation.
(b)During the investigation, the licensee, or an outside vendor or service provider designated to act on behalf of the licensee, at a minimum, shall determine as much of the following information as possible:
(1)If a cybersecurity event has occurred.
(2)The nature and scope of the cybersecurity event.
(3)Any nonpublic information that may have been involved in the cybersecurity event.
(c)The licensee shall perform or oversee reasonable measures to restore the security of the information systems compromised in the cybersecurity event in order to prevent further unauthoriz
Free access — add to your briefcase to read the full text and ask questions with AI
Alabama § 27-62-5 (Investigation of Cybersecurity Event) — published by Counsel Stack Legal Research, free access to 12M+ legal documents.
Legislative History
(Act 2019-98, §5.)