Issue · Technology

Technology (Cybersecurity)

Every technology bill, vote, and legislator stance in Pennsylvania, automatically classified by Maddy, our AI policy reader.

Total bills
9
2025-2026 Regular Session
Top supporter
Anthony Bellmon
100% support rate
Top opponent
Jeff Olsommer
0% support rate
Ranked legislators
10
5 support · 5 oppose
Key legislators

Who's moving cybersecurity in Pennsylvania

Legislators moving cybersecurity in Pennsylvania
Legislator Party Stance Support rate Votes
Anthony Bellmon
Anthony Bellmon House · District 203
D
Strong +
100% 4
Ben Sanchez
Ben Sanchez House · District 153
D
Strong +
100% 4
Abigail Salisbury
Abigail Salisbury House · District 34
D
Strong +
100% 3
Aerion Abney
Aerion Abney House · District 19
D
Strong +
100% 3
Amen Brown
Amen Brown House · District 10
D
Strong +
100% 3
Jeff Olsommer
Jeff Olsommer House · District 139
R
Strong −
0% 4
Marla Brown
Marla Brown House · District 9
R
Strong −
0% 4
Ann Flood
Ann Flood House · District 138
R
Strong −
0% 3
Barb Gleim
Barb Gleim House · District 199
R
Strong −
0% 3
Charity Krupa
Charity Krupa House · District 51
R
Strong −
0% 3
Showing 9 of 9 bills

All technology bills

in committee · Pennsylvania · House Jun 26, 2026

HB 2672: An Act amending the act of April 9, 1929 (P.L.177, No.175), known as The Administrative Code of 1929, in organization of departmental administrative boards and commissions and of advisory boards and commissions, providing for Cybersecurity Coordination Board.

This bill creates a new Cybersecurity Coordination Board within the Pennsylvania Office of Administration to improve state cybersecurity efforts. The board will collect and share security information, advise the Governor on best practices, and coordinate with federal agencies, local governments, and private sector partners. Its membership includes representatives from key state offices, elected officials, local government leaders, and three appointed cybersecurity experts. The board will also invite federal agency representatives to serve in advisory roles and will elect its own leadership while appointing an executive director to manage its daily operations.
Sub-Topics Cybersecurity
in committee · Pennsylvania · House Jun 30, 2026

HR 583: A Resolution urging the Congress of the United States to pass H.R. 7658 and S. 3949, the Enhanced Cybersecurity for SNAP Act of 2026, or create and enact other legislation to require the implementation of stronger security measures to protect Supplemental Nutrition Assistance Program benefits.

This Pennsylvania House resolution urges the U.S. Congress to pass the Enhanced Cybersecurity for SNAP Act of 2026 to protect Supplemental Nutrition Assistance Program benefits from theft and fraud. The bill proposes requiring all states to upgrade to more secure chip-enabled EBT cards and mandates that federal security regulations be updated at least every five years. It directly affects the millions of low-income individuals and families in Pennsylvania and across the country who rely on SNAP for food assistance. The measure aims to address rising instances of benefit theft through methods like card skimming and cloning, which have left many residents without food.
Sub-Topics Cybersecurity
in committee · Pennsylvania · House Dec 17, 2025

HB 2104: An Act amending Title 71 (State Government) of the Pennsylvania Consolidated Statutes, in boards and offices, providing for information technology; establishing the Office of Information Technology and the Information Technology Fund; providing for administrative and procurement procedures and for the Joint Cybersecurity Oversight Committee; imposing duties on the Office of Information Technology; providing for administration of Pennsylvania Statewide Radio Network; and imposing penalties.

HB 2104 establishes Pennsylvania's Office of Information Technology and an Information Technology Fund to centralize and streamline state IT management. It requires all state agencies to submit detailed business cases for major IT projects and sets five-year budget limits to control costs, reduce redundancy, and improve cybersecurity. The bill also creates a Joint Cybersecurity Oversight Committee, mandates improved data protection for personal information, and assigns oversight for the Pennsylvania Statewide Radio Network. These changes directly affect all state agencies by requiring standardized IT procurement, budgeting, and security protocols.
passed · Pennsylvania · House Oct 3, 2025

HB 997: An Act amending the act of December 22, 2005 (P.L.474, No.94), known as the Breach of Personal Information Notification Act, further providing for definitions, for notification of the breach of the security of the system, for exceptions and for notice exemption; repealing provisions relating to civil relief; providing for protection of personal information, for civil relief, for information security and for applicability; and repealing provisions relating to applicability.

HB 997 updates Pennsylvania's data breach notification law, requiring businesses to notify affected individuals more clearly and promptly after a security breach involving personal information. It directly affects businesses that collect or store personal data, such as healthcare providers, retailers, and financial institutions. Key changes include modernizing definitions of personal information, clarifying when notification is required, adding new security protections, and repealing outdated civil relief provisions. The bill also removes certain exemptions that previously allowed businesses to delay or avoid notifying individuals about breaches.
in committee · Pennsylvania · House Apr 15, 2025

HB 1219: An Act amending Title 71 (State Government) of the Pennsylvania Consolidated Statutes, in boards and offices, providing for information technology; establishing the Office of Information Technology and the Information Technology Fund; providing for administrative and procurement procedures and for the Joint Cybersecurity Oversight Committee; imposing duties on the Office of Information Technology; providing for administration of Pennsylvania Statewide Radio Network; and imposing penalties.

HB 1219 establishes a new Office of Information Technology and an Information Technology Fund to consolidate Pennsylvania state government IT operations. The bill requires all state agencies to follow new procurement rules, including business case reviews and five-year budget limits for significant IT projects, to reduce costs and improve efficiency. It also creates a Joint Cybersecurity Oversight Committee to strengthen data protection and mandates better cybersecurity practices for all state IT systems. The bill directly affects all Pennsylvania state agencies responsible for managing information technology and cybersecurity.
in committee · Pennsylvania · Senate Mar 10, 2025

SB 415: An Act amending Title 18 (Crimes and Offenses) of the Pennsylvania Consolidated Statutes, in computer offenses, providing for the offense of ransomware; and imposing duties on the Office of Administration.

SB 415 creates new criminal penalties for ransomware attacks targeting Pennsylvania state government systems. It prohibits possessing, using, or threatening to use ransomware (defined as software blocking access or encrypting data for payment demands) with penalties ranging from misdemeanors to felonies based on the ransom amount ($10,000+ triggers felony charges). The law requires managed IT service providers to notify state agencies within one hour of detecting ransomware, and agencies to report attacks to police within two hours. These provisions aim to prevent, detect, and respond to cyberattacks on Commonwealth agencies while mandating public notification after incidents.
Sub-Topics Policing Cybersecurity
in committee · Pennsylvania · Senate Mar 6, 2025

SB 373: An Act amending Title 71 (State Government) of the Pennsylvania Consolidated Statutes, in boards and offices, providing for information technology and security.

SB 373 establishes new statewide cybersecurity standards for Pennsylvania state agencies' information technology systems. It requires agencies to obtain "authorization to operate" for all IT systems using public funds, conduct annual security reviews, and perform risk assessments - including penetration testing - to identify vulnerabilities. The bill mandates biannual compliance checks of vendors and creates a Joint Cybersecurity Oversight Committee to monitor implementation. These requirements directly affect all state agencies and their IT vendors, focusing on proactive security management rather than reactive measures.
Sub-Topics Cybersecurity
in committee · Pennsylvania · Senate Feb 26, 2025

SB 374: An Act amending the act of April 9, 1929 (P.L.177, No.175), known as The Administrative Code of 1929, establishing the Office of Information Technology and Chief Information Officer.

SB 374 creates a new Office of Information Technology within Pennsylvania's state government, led by a Chief Information Officer (CIO) appointed by the Governor with Senate confirmation. The CIO, who becomes part of the Governor's Cabinet, will manage all state agency IT systems and establish security protocols for data handled by those agencies. This bill directly affects all Pennsylvania state agencies operating under the Governor's authority, centralizing oversight of their technology infrastructure. The key change is replacing fragmented IT management with a single, accountable office responsible for both operations and cybersecurity across state agencies.
Sub-Topics Cybersecurity
in committee · Pennsylvania · House Feb 20, 2025

HB 655: An Act amending the act of March 10, 1949 (P.L.30, No.14), known as the Public School Code of 1949, in preliminary provisions, providing for student data security.

HB 655 requires Pennsylvania's Department of Education to create and annually update a model data security plan for all public and private schools (including charter and cyber charter schools) to protect student information. The plan must include guidelines for data access, privacy standards, breach response procedures, and data retention policies. School entities must follow this model, and the department will designate a chief data security officer to assist schools with implementation. The bill also mandates a working group to develop initial security measures and report on implementation costs by December 2026. (Based on Section 135 of the Public School Code amendment in HB 655.)