West Virginia Statutes

§ 5A-6B-4 — Responsibilities of agencies for cybersecurity

West Virginia·Ch. 5A DEPARTMENT OF ADMINISTRATION·Art. 6B CYBER SECURITY PROGRAM

State agencies and other entities subject to the provisions of this article shall:

(1)Undergo an appropriate cyber risk assessment as required by the cybersecurity framework or as directed by the Chief Information Security Officer;
(2)Adhere to the cybersecurity standard established by the Chief Information Security Officer in the use of information technology infrastructure;
(3)Adhere to enterprise cybersecurity policies and standards;
(4)Manage cybersecurity policies and procedures where more restricted security controls are deemed appropriate;
(5)Submit all cybersecurity policy and standard exception requests to the Chief Information Security Officer for approval;
(6)Complete and submit a cyber risk self-assessment report to the Chief Information Security Officer by December

Free access — add to your briefcase to read the full text and ask questions with AI

West Virginia § 5A-6B-4 (Responsibilities of agencies for cybersecurity) — published by Counsel Stack Legal Research, free access to 12M+ legal documents.

Legislative History

2023 Reg. Sess., SB734; 2019 Reg. Sess., HB2452; 2009 Reg. Sess., HB2807

Nearby Sections

15
View on official source ↗