A 3283 New Jersey General Assembly · 2026-2027 Regular Session

Requires businesses in financial, essential infrastructure, and health care industries to develop cybersecurity plans.

This bill requires businesses in New Jersey's financial, essential infrastructure, and healthcare sectors (called "sensitive businesses") to develop and implement cybersecurity programs. These programs must include risk assessments, incident response plans, and alignment with recognized industry frameworks like NIST. Businesses must submit their plans to New Jersey's Cybersecurity Cell, provide annual compliance certifications, and undergo audits if they fail to comply. The law aims to protect critical systems from cyber threats while keeping submitted plans confidential, not public records.
Bill status in committee 1 of 4 stages cleared
Introduction
Jan 2026
Committee Review
Floor Vote
Governor
Introduced Jan 13, 2026 Last action Jan 13, 2026
Floor votes

How they voted

No floor votes recorded yet.
Full legislative history

Actions timeline

Total actions
1
Key actions
0
Committee
0
Jan 13, 2026
Introduced
Introduced, Referred to Assembly Science, Innovation and Technology Committee
lower
0 primary · 0 co-sponsors

Sponsors

No sponsor information available.