New Jersey S3101 mandates businesses in financial, essential infrastructure, and health care sectors to report cybersecurity incidents.
New Jersey S3101 requires businesses in financial, essential infrastructure, and health care industries to report cybersecurity incidents to the New Jersey Cybersecurity and Communications Integration Cell (NJCCIC). The NJCCIC must audit the business's cybersecurity program within 30 days of receiving a report. The audit identifies cyber threats, vulnerabilities, and weaknesses, and recommends strategies to protect against future incidents. The audit is conducted by a qualified and independent cybersecurity company at the business's expense.
Included in complete analysis
- Overview
- Core Provisions
- Implementation
- Impact
- Legal Framework
- Critical Issues
See what it does, who it affects, and the critical issues in plain language. Free, 30 seconds.