Maine Statutes

§ 24-A §2264 — Information security program

Maine § 24-A §2264
JurisdictionMaine
Title 24-AMAINE INSURANCE CODE
Ch. 24-BMAINE INSURANCE DATA SECURITY ACT

This text of Maine § 24-A §2264 (Information security program) is published on Counsel Stack Legal Research, covering Maine primary law. Counsel Stack provides free access to over 12 million legal documents including statutes, case law, regulations, and constitutions.

Bluebook
Me. Rev. Stat. tit. 24-A, § 24-A §2264 (2026).

Text

1.Implementation of information security program. Commensurate with the size and complexity of the licensee, the nature and scope of the licensee's activities, including its use of 3rd-party service providers, and the sensitivity of the nonpublic information used by the licensee or in the licensee's possession, custody or control, a licensee shall develop, implement and maintain a comprehensive, written information security program based on the licensee's risk assessment and containing administrative, technical and physical safeguards for the protection of nonpublic information and the licensee's information systems.
2.Objectives of information security program. A licensee's information security program must be designed to:
3.Risk assessment. A licensee shall:
4.Risk management. Based

Free access — add to your briefcase to read the full text and ask questions with AI

Legislative History

PL 2021, c. 24, §1 (NEW). PL 2025, c. 348, §30 (AMD).

Nearby Sections

15
View on official source ↗

Cite This Page — Counsel Stack

Bluebook (online)
Maine § 24-A §2264, Counsel Stack Legal Research, https://law.counselstack.com/statute/me/24-A%20%C2%A72264.