Tennessee Statutes

§ 4-1-423 — Cybersecurity - State payment of ransom prohibited - Incident reporting protocol

Tennessee·Title 4
(a)A state entity shall not submit payment with an entity that has engaged in a cybersecurity incident on an information technology system by encrypting data and then subsequently offering to decrypt that data in exchange for a ransom payment.
(b)A state entity experiencing a ransom request in connection with a cybersecurity incident shall immediately notify and consult with the technology and innovation division of the Tennessee bureau of investigation.
(c)As used in this section, "state entity":
(1)Means an agency, department, institution, board, commission, committee, division, bureau, officer, official, or other entity of the executive, judicial, or legislative branches of state government, including a public institution of higher education and all other entities for which this sta

Free access — add to your briefcase to read the full text and ask questions with AI

Tennessee § 4-1-423 (Cybersecurity - State payment of ransom prohibited - Incident reporting protocol) — published by Counsel Stack Legal Research, free access to 12M+ legal documents.

Legislative History

Added by 2024 Tenn. Acts, ch. 534,s 1, eff. 3/7/2024.

Nearby Sections

15
View on official source ↗