Indiana Statutes

§ 24-4.9-3-3.5 — Duties of a data base owner; exceptions; health records; enforcement powers

Indiana § 24-4.9-3-3.5
JurisdictionIndiana
Art. 4.9DISCLOSURE OF SECURITY BREACH
Ch. 3Disclosure and Notification Requirements

This text of Indiana § 24-4.9-3-3.5 (Duties of a data base owner; exceptions; health records; enforcement powers) is published on Counsel Stack Legal Research, covering Indiana primary law. Counsel Stack provides free access to over 12 million legal documents including statutes, case law, regulations, and constitutions.

Bluebook
Ind. Code § 24-4.9-3-3.5 (2026).

Text

5.

(a)Except as provided in subsection (b), this section does not apply to a data base owner that maintains its own data security procedures as part of an information privacy, security policy, or compliance plan under:
(1)the federal USA PATRIOT Act (P.L. 107-56);
(2)Executive Order 13224;
(3)the federal Driver's Privacy Protection Act (18 U.S.C. 2721 et seq.);
(4)the federal Fair Credit Reporting Act (15 U.S.C. 1681 et seq.);
(5)the federal Financial Modernization Act of 1999 (15 U.S.C. 6801 et seq.); or
(6)the federal Health Insurance Portability and Accountability Act (HIPAA) (P.L. 104-191); if the data base owner's information privacy, security policy, or compliance plan requires the data base owner to maintain reasonable procedures to protect and safeguard from unlawful use or

Free access — add to your briefcase to read the full text and ask questions with AI

Related

§ 2721
18 U.S.C. § 2721
§ 1681
15 U.S.C. § 1681
§ 6801
15 U.S.C. § 6801

Legislative History

As added by P.L.137-2009, SEC.5. Amended by P.L.76-2017, SEC.4.

Nearby Sections

15
View on official source ↗

Cite This Page — Counsel Stack

Bluebook (online)
Indiana § 24-4.9-3-3.5, Counsel Stack Legal Research, https://law.counselstack.com/statute/in/24-4.9-3-3.5.