Iowa Statutes
§ 554G.2 — Affirmative defenses
Iowa § 554G.2
This text of Iowa § 554G.2 (Affirmative defenses) is published on Counsel Stack Legal Research, covering Iowa primary law. Counsel Stack provides free access to over 12 million legal documents including statutes, case law, regulations, and constitutions.
Bluebook
Iowa Code § 554G.2 (2026).
Text
1.A covered entity seeking an affirmative defense under this chapter shall create,
maintain, and comply with a written cybersecurity program that contains administrative,
technical, operational, and physical safeguards for the protection of both personal
information and restricted information.
2.A covered entity’s cybersecurity program shall be designed to do all of the following:
a.Continually evaluate and mitigate any reasonably anticipated internal or external
threats or hazards that could lead to a data breach.
b.Periodically evaluate no less than annually the maximum probable loss attainable from
a data breach.
c.Communicate to any affected parties the extent of any risk posed and any actions the
affected parties could take to reduce any damages if a data breach is known to have
Free access — add to your briefcase to read the full text and ask questions with AI
Nearby Sections
4
§ 554G.1
Definitions§ 554G.2
Affirmative defenses§ 554G.3
Cybersecurity program framework§ 554G.4
Causes of actionCite This Page — Counsel Stack
Bluebook (online)
Iowa § 554G.2, Counsel Stack Legal Research, https://law.counselstack.com/statute/ia/554G.2.