|Posted:||March 9, 2023 03:21 PM|
|From:||Representative Kevin J. Boyle and Rep. Tina Pickett|
|To:||All House members|
|Subject:||PA Insurance Data Security Act|
|Insurance companies are tempting targets for cyber criminals.
Insurer files are teeming with consumer information such as policyholder and beneficiary names, addresses, social security numbers, and claims data. One successful cyberattack on an insurance company can potentially get data on hundreds of thousands of people that can be sold on the black market. And a cyberattack can potentially freeze an insurer’s accounts and impact whether claims can be paid, which would have downstream effects on many industries.
Pennsylvanians deserve to know their data is protected. That’s why I will be introducing the Pennsylvania Insurance Data Security Act.
This legislation adopts a national model for insurer cybersecurity. Insurance entities would have to conduct a cybersecurity risk assessment, develop cybersecurity protocols, and report breaches to the Pennsylvania Insurance Department. It is my hope that this helps prevent and mitigate cybersecurity incidents.
This legislation will also fix a technical drafting and accreditation issue in existing law relating to exemptions to principal-based reserving for small fraternal benefit societies and life insurers.
Please join me in protecting Pennsylvanians’ data by supporting this legislation.
Introduced as HB739