Issue · Technology

Technology (Cybersecurity)

Every technology bill, vote, and legislator stance in New York, automatically classified by Maddy, our AI policy reader.

Total bills
27
2025 Regular Session
Top supporter
-
no data yet
Top opponent
-
no data yet
Ranked legislators
0
0 support · 0 oppose
Showing 21–27 of 27 bills

All technology bills

in committee · New York · Senate Jan 7, 2026

S 4427: Relates to a business tax credit for purchase of data breach insurance

S 4427 creates a 25% tax credit for small businesses (those with fewer than 101 employees) that purchase qualified data breach insurance. This insurance must cover expenses related to data theft, loss, or unauthorized access, and businesses must comply with cybersecurity standards like the NIST framework or state-approved equivalents. The bill requires insurance premiums to be separately itemized in contracts and limits the credit to premiums paid in ordinary business operations. It applies to taxable years beginning after the law takes effect and expires after five years.
died · New York · Senate Feb 25, 2026

S 1961: Establishes the "secure our data act"

Establishes the "secure our data act"; relates to cybersecurity protection by state entities; requires the office of information technology services to develop standards for data protection of state entity-maintained information.
in committee · New York · Senate Jan 7, 2026

S 193: Relates to creating a cyber security enhancement fund and restricting the use of taxpayer moneys in paying ransoms

Creates a cyber security enhancement fund to be used for the purpose of upgrading cyber security in local governments, including but not limited to, villages, towns and cities with a population of one million or less; restricts the use of taxpayer moneys in paying ransoms in response to ransomware attacks.
Sub-Topics Cybersecurity
died · New York · Senate May 29, 2026

S 1139: Relates to requiring governmental entities to implement multifactor authentication for local and remote network access

Requires governmental entities to, whenever possible and feasible, consider implementing multifactor authentication for local and remote network access; requires public websites to encrypt all exchanges and to comply with privacy standards.
Sub-Topics Cybersecurity
passed · New York · Senate Jan 14, 2025

J 73: Memorializing Governor Kathy Hochul to proclaim October 2025, as Cyber Security Awareness Month in the State of New York

Senate Resolution J 73 requests Governor Hochul to issue a proclamation designating October 2025 as Cyber Security Awareness Month in New York State, aligning with the national National Cyber Security Awareness Month (NCSAM). The resolution emphasizes the importance of public and organizational awareness to strengthen online safety practices, referencing NCSAM's long-standing role in promoting cyber security education since 2004. This procedural resolution does not create new laws but seeks to formally recognize the observance through a gubernatorial proclamation.
in committee · New York · Senate Jan 7, 2026

S 3258: Requires the department of education to provide annual notifications to school districts to combat cyber crime

This bill requires the state Department of Education to send annual email notifications to school district data security staff by July 1st each year. The notifications must include reminders about effective cybersecurity strategies and a copy of the National Institute of Standards and Technology's cybersecurity framework. It directly affects all public school districts in the state by mandating this yearly communication to help schools address cyber threats. The law takes effect immediately upon passage.
in committee · New York · Assembly Feb 10, 2026

A 6301: Enacts the Critical Infrastructure Standards and Procedures Act

This bill, the Critical Infrastructure Standards and Procedures Act (CRISP Act), requires public and private entities operating critical infrastructure to follow specific cybersecurity standards. It directly affects asset owners of facilities like public transportation, water treatment plants, utilities, public buildings, hospitals, and public authorities. Key provisions mandate that these entities follow the ISA/IEC 62443 cybersecurity standards for procurement and construction of automation systems starting July 1, 2029, and for operations/maintenance starting July 1, 2027 - including annual risk assessments and mitigation plans. The law aims to strengthen cybersecurity protections for systems controlling physical infrastructure, referencing established NIST standards.
Sub-Topics Cybersecurity
Showing 21 to 27 of 27 bills