Texas 2013 - 83rd Regular

Texas Senate Bill SB1597 Compare Versions

The same version is selected twice. Please select two different versions to compare.
OldNewDifferences
11 By: Zaffirini S.B. No. 1597
22 (Smithee)
33
44
55 A BILL TO BE ENTITLED
66 AN ACT
77 relating to the development of state agency information security
88 plans.
99 BE IT ENACTED BY THE LEGISLATURE OF THE STATE OF TEXAS:
1010 SECTION 1. Subchapter F, Chapter 2054, Government Code, is
1111 amended by adding Section 2054.133 to read as follows:
1212 Sec. 2054.133. INFORMATION SECURITY PLAN. (a) Each state
1313 agency shall develop, and periodically update, an information
1414 security plan for protecting the security of the agency's
1515 information.
1616 (b) In developing the plan, the state agency shall:
1717 (1) consider any vulnerability report prepared under
1818 Section 2054.077 for the agency;
1919 (2) incorporate the network security services
2020 provided by the department to the agency under Chapter 2059;
2121 (3) identify and define the responsibilities of agency
2222 staff who produce, access, use, or serve as custodians of the
2323 agency's information;
2424 (4) identify risk management and other measures taken
2525 to protect the agency's information from unauthorized access,
2626 disclosure, modification, or destruction;
2727 (5) include:
2828 (A) the best practices for information security
2929 developed by the department; or
3030 (B) a written explanation of why the best
3131 practices are not sufficient for the agency's security; and
3232 (6) omit from any written copies of the plan
3333 information that could expose vulnerabilities in the agency's
3434 network or online systems.
3535 (c) Not later than October 15 of each even-numbered year,
3636 each state agency shall submit a copy of the agency's information
3737 security plan to the department.
3838 (d) Each state agency's information security plan is
3939 confidential and exempt from disclosure under Chapter 552.
4040 SECTION 2. Not later than October 15, 2014, each state
4141 agency shall develop and submit the information security plan
4242 required by Section 2054.133, Government Code, as added by this
4343 Act.
4444 SECTION 3. This Act takes effect September 1, 2013.