Pennsylvania 2025-2026 Regular Session

Pennsylvania Senate Bill SB373

Introduced
3/6/25  

Caption

In boards and offices, providing for information technology and security.

Impact

This bill will fundamentally reshape how information technology security is managed within state agencies. It mandates that all IT goods and services acquired with taxpayer money meet prescribed security standards before operation, establishing a compliance framework that could lead to improvements in the integrity and confidentiality of state data. The Chief Information Officer will oversee adherence to these standards, which will likely require state agencies to adjust their current practices and allocate resources towards compliance efforts.

Summary

Senate Bill 373, introduced in Pennsylvania, aims to amend Title 71 of the Pennsylvania Consolidated Statutes by adding provisions for information technology and security. The bill establishes statewide security standards for managing the Commonwealth's information technology assets, emphasizing data classification, management, and encryption technologies. By implementing these standards, the state aims to enhance the functionality, security, and interoperability of its technology systems across various agencies.

Sentiment

The sentiment around SB 373 is expected to be largely supportive among those who prioritize cybersecurity and data protection, especially in an era where digital threats are increasingly sophisticated. Supporters view the bill as a proactive measure to safeguard sensitive state information and improve the overall cybersecurity posture of state agencies. However, the bill may face scrutiny from civil rights advocates concerned about privacy implications and the potential for costs associated with implementing these standards.

Contention

Notable points of contention may arise regarding the effectiveness of the proposed security measures and the potential administrative burden placed on state agencies. Critics may argue that while the intent of the bill is to enhance security, it could lead to increased expenses and the need for additional oversight, which some individuals or groups might view as unnecessary bureaucracy. The establishment of the Joint Cybersecurity Oversight Committee as outlined by the bill will also be a focal point of discussion, particularly concerning its membership, roles, and the complexities of its governance.

Companion Bills

No companion bills found.

Previously Filed As

PA HB883

In boards and offices, providing for information technology; establishing the Office of Information Technology and the Information Technology Fund; providing for administrative and procurement procedures and for the Joint Cybersecurity Oversight Committee; imposing duties on the Office of Information Technology; providing for administration of Pennsylvania Statewide Radio Network; and imposing penalties.

PA SB284

In boards and offices, providing for information technology; establishing the Office of Information Technology and the Information Technology Fund; providing for administrative and procurement procedures and for the Joint Cybersecurity Oversight Committee; imposing duties on the Office of Information Technology; providing for administration of Pennsylvania Statewide Radio Network; and imposing penalties.

PA HB746

In boards and offices, providing for Office of Information Technology.

PA HB1479

In boards and offices, providing for Office of Information Technology.

PA SB1214

Establishing the Office of Information Technology and Chief Information Officer.

PA HB964

Providing for transparency and disclosure of information collected by smart technology devices; establishing the Smart Technology Disclosure Fund; and providing for powers and duties of the Office of Attorney General.

PA HB739

In regulation of insurers and related persons generally, providing for insurance data security; in reserve liabilities, repealing provisions relating to small company exemption and providing for adoption of exemption standards of NAIC Valuation Manual; and imposing penalties.

PA HB2026

In school safety and security, providing for purchase of firearm detection technology.

PA HB759

Providing for breach of information, for reporting requirements and for civil relief.

PA HB234

In school security, providing for training requirements for school police officers and school security guards.

Similar Bills

CA AB2209

California Geographic Information Office.

HI SB2516

Relating To The Department Of Accounting And General Services.

AZ SB1598

Information technology; security; office

CT HB06855

An Act Establishing A Task Force To Study Minimum Standards For Timely Repair Of Complex Rehabilitation Technology.

CT SB00403

An Act Concerning Health Information Technology.

PA HB883

In boards and offices, providing for information technology; establishing the Office of Information Technology and the Information Technology Fund; providing for administrative and procurement procedures and for the Joint Cybersecurity Oversight Committee; imposing duties on the Office of Information Technology; providing for administration of Pennsylvania Statewide Radio Network; and imposing penalties.

CA AB809

Information security.

PA HB1219

In boards and offices, providing for information technology; establishing the Office of Information Technology and the Information Technology Fund; providing for administrative and procurement procedures and for the Joint Cybersecurity Oversight Committee; imposing duties on the Office of Information Technology; providing for administration of Pennsylvania Statewide Radio Network; and imposing penalties.