Loading chat...

CA AB2720

Bill

Status

Failed

11/30/2016

Primary Sponsor

Edwin Chau

Click for details

Origin

State Assembly

2015-2016 Session

AI Summary

  • Authorizes the Office of Information Security to establish a Cybersecurity Vulnerability Reporting Reward Program to identify and report previously unknown vulnerabilities in state computer networks, subject to legislative appropriation.

  • Sets minimum award of $100 and maximum award of $5,000 for eligible vulnerability reports, with award amounts determined by the chief based on sensitivity, specificity, and other relevant factors.

  • Requires the office to develop policies and procedures specifying which state agencies are covered, qualifying vulnerabilities, and priorities focused on protecting user data integrity, privacy, and preventing unauthorized access.

  • Prohibits awards to individuals who have attempted unauthorized data access, engaged in unlawful activity during investigation, are state employees or contractors, are on federal sanctions lists, or submit false information.

  • Specifies that unclaimed rewards after 12 months must be deposited into the General Fund, and clarifies the program does not authorize violation of law or authorization to damage systems or data.

Legislative Description

State government: Office of Information Security: cybersecurity vulnerability reporting.

Last Action

From committee without further action.

11/30/2016

Committee Referrals

Appropriations4/6/2016
Privacy and Consumer Protection3/10/2016

Full Bill Text

No bill text available