California AB869 mandates state agencies to implement Zero Trust architecture for enhanced cybersecurity.
California AB869 requires state agencies to adopt Zero Trust architecture to improve cybersecurity. This involves continuous monitoring, risk-based access controls, and secure identity management. The Office of Information Security will develop policies and procedures for agencies to achieve "Advanced" and "Optimal" maturity levels by 2026 and 2030, respectively. Agencies must prioritize multifactor authentication, endpoint detection, and robust logging. The bill also mandates annual reporting on progress towards Zero Trust architecture.
Included in complete analysis
- Overview
- Core Provisions
- Implementation
- Impact
- Legal Framework
- Critical Issues
See what it does, who it affects, and the critical issues in plain language. Free, 30 seconds.