Anatomy of an "Aggressive" Cybersecurity Measure by the Razorbacks

Where: Arkansas

The legislation: Senate Bill 632 (2019 | AR)

What does SB632 do?

  • Creates the Cyber Initiative
  • Housed within the Economic Development Commission
  • mitigate the cyber-risks to Arkansas
  • increase education relative to threats and defense
  • provide the public and private sectors with threat assessments and other intelligence
  • foster growth and development around tech, IT and defense
  • create a “cyber alliance” made up of partnerships with a variety of insitutitions like…

Regulatory TREND. What do I need to know about Active Cyber Defense?

Active Cyber Defense uses private sector cyber bounty hunters and hackers  to protect critical infrastructure.

Who is behind this concept?

  • An Atlantic Council report,
  • by, Frank Kramer, Assistant Secretary for International Security Affairs for the Clinton administration
  • and by, Bob Butler, Deputy Assistant Secretary for Space and Cyber in the Obama administration

How would this private sector system work?  the private sector hackser would be deputized  “certified active defenders” to assist…

3 Legislative Issues. Self Driving Car Data.

  • Privacy. Who owns the data. Who gave consent to collect the data.
  • Security. What data should be protected from transfer.
  • Public Safety. How can the data be used to protect the public and transportation systems in smart cities.

How can governments use data from self driving cars?

  • managing traffic
  • urban planning
  • allocating public funds 

phys.org | self-driving cars and geospatial data: Who holds the keys?

3 Ways States Benefit from a State Data Officer.

 

  • data helps create more efficient permitting processes
    • CT allows local governments to get occupational licensing data directly form the state
  • overdose data helps first responders and hospitals prepare for epidemics
  • Prevent fraud 
    • IN adopted its Indiana’s Management and Performance Hub to “integrate” data from several agencies to build custom analytics solutions.” Its addressing issues from car crashes and infant mortality to Medicaid optimization.
    • TX shared data across agencies…

Lege TREND. State Cyber Law Enforcement and Protections. Anatomy of a Bill + Benefits to Cities.

HB 747 (2018 | OH) will estalish the Ohio Cyber Reserve to protect Ohioans from cyber terrorists.

Authors tout that the Reserve will also help cities with cyber inititatives.

How many aspects of cybersecurity will the reserve have its fingers in?

  • election security
  • local governments
  • critical infrastructure
  • businesses

Like the national guard, the reserve will act by Governor action.

Fox 8 | Ohio House passes bill to establish cybersecurity team

Government Technology | Ohio House Passes…

New Report. New Cybersecurity Risk. Ports. 4 Key Points.

The report is by: maritime law firm Jones Walker LLP

What did the report find?

  • Hacks are happening at ports. 80% of large maritime industry companies (400+ employees) report cyber attack in the last year
  • Unprepared. 64% say their own companies are unprepared to handle the far-reaching business, financial, regulatory and public relations consequences of a data breach
    • 6% of small companies are prepared for a cyberattack (1-49 employees)
    • 19% of midsize companies are prepared (49-400…

Legal TREND. State Attorney General Recovers $6 M for state from Data Breach. WHO. WHAT. WHERE.

WHO has to pay $5.79 Million? Uber

WHAT is the $5.79 million settlement for?

  • a breach exposed personal information, including drivers licenses for 13,000 uber drivers
  • the company waited roughly 372 days to provide notice
  • failed to notify the state attorney general within the then required 45 days
  • $170 will be awarded to each driver

WHERE: Washington State

Washington State Attorney General Office | AG DATA BREACH REPORT FINDS 3.4 MILLION WASHINGTONIANS’ PRIVACY COMPROMISED BY DATA BREACHES

5 Points. Apple Desired Information Privacy Law.

 

  • tech companies should de-identify customer data or not collect customer data
  • comprehensive federal law is necessary
    • why? tech companies that collect a lot of data are basically spies
  • people should have a right in their data, and a right to have that data minimized
  • consumers must be told what data is being collected & why
  • the data belongs to the users and users (consumers) should always have access to it

The gold standard law: GDPR in the EU

Ars Technica | Tim Cook Calls for Strong US…