California strengthens its data breach notification requirements

Orrick, Herrington & Sutcliffe LLP
Contact

Orrick, Herrington & Sutcliffe LLP

On October 3, the governor of California signed into law SB 446, which amends current state code to add new data breach notification requirements. Generally, the law requires individuals or companies conducting business in California to disclose data breaches within 30 calendar days, though disclosure may be delayed to assist law enforcement needs or to determine the breach’s scope and restore data system integrity. Additionally, if a security breach notification must be issued to more than 500 California residents, a sample copy of the notification must be electronically submitted to the attorney general within 15 calendar days of notifying affected consumers.

[View source.]

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations. Attorney Advertising.

© Orrick, Herrington & Sutcliffe LLP

Written by:

Orrick, Herrington & Sutcliffe LLP
Contact
more
less

What do you want from legal thought leadership?

Please take our short survey – your perspective helps to shape how firms create relevant, useful content that addresses your needs:

Orrick, Herrington & Sutcliffe LLP on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide