Ohio Statutes
§ 1354.02 — Safe harbor requirements
Ohio § 1354.02
JurisdictionOhio
Title 13Commercial Transactions
Ch. 1354Businesses Maintaining Recognized Cybersecurity Programs
This text of Ohio § 1354.02 (Safe harbor requirements) is published on Counsel Stack Legal Research, covering Ohio primary law. Counsel Stack provides free access to over 12 million legal documents including statutes, case law, regulations, and constitutions.
Bluebook
Ohio Rev. Code Ann. § 1354.02 (2026).
Text
(A)A covered entity seeking an affirmative defense under sections1354.01to1354.05of the Revised Code shall do one of the following:
(1)Create, maintain, and comply with a written cybersecurity program that contains administrative, technical, and physical safeguards for the protection of personal information and that reasonably conforms to an industry recognized cybersecurity framework, as described in section1354.03of the Revised Code; or
(2)Create, maintain, and comply with a written cybersecurity program that contains administrative, technical, and physical safeguards for the protection of both personal information and restricted information and that reasonably conforms to an industry recognized cybersecurity framework, as described in section1354.03of the Revised Code.
(B)A co
Free access — add to your briefcase to read the full text and ask questions with AI
Related
Giddings v. CBIZ Benefits & Insurance Services, Inc.
(N.D. Ohio, 2025)
Gales v. Ohio Lottery Comm.
2025 Ohio 5189 (Ohio Court of Claims, 2025)
Legislative History
Effective: November 2, 2018 | Latest Legislation: Senate Bill 220 - 132nd General Assembly
Nearby Sections
5
§ 1354.01
Definitions§ 1354.02
Safe harbor requirements§ 1354.03
Reasonable conformance§ 1354.04
No private right of action§ 1354.05
SeverabilityCite This Page — Counsel Stack
Bluebook (online)
Ohio § 1354.02, Counsel Stack Legal Research, https://law.counselstack.com/statute/oh/1354.02.