ARTICLE
29 March 2017

New Mexico, One Of The Last Holdouts, Sends Data Breach Notification Law To Governor

FH
Foley Hoag LLP

Contributor

Foley Hoag provides innovative, strategic legal services to public, private and government clients. We have premier capabilities in the life sciences, healthcare, technology, energy, professional services and private funds fields, and in cross-border disputes. The diverse experiences of our lawyers contribute to the exceptional senior-level service we deliver to clients.
New Mexico is one of the few remaining states to not have a law requiring companies to notify consumers when their information is part of a data breach. This, however, might change very soon.
United States Privacy
To print this article, all you need is to be registered or login on Mondaq.com.

New Mexico is one of the few remaining states to not have a law requiring companies to notify consumers when their information is part of a data breach. This, however, might change very soon. Last Wednesday, the New Mexico Legislature passed House Bill 15, called the "Data Breach Notification Act," sending the bill to Governor Susana Martinez for her signature.

Among other things, the act requires companies with personally identifiable information of New Mexico residents to use reasonable security procedures and practices to protect that information. The act also requires companies to notify New Mexico residents within 45 days of discovering that their information was subject to a security breach. The act's requirements generally comport those of other states, including Massachusetts. As the bill's sponsor, N.M. Rep. Bill Rehm, said, "This bill will remedy a gap in our existing consumer protections and put us on par with other states." There are some notable differences with the Massachusetts law, however. For instance, the Massachusetts regulations list specific security measures and procedures companies must put in place. Massachusetts also does not provide a specific deadline for consumer notification, just stating that companies must provide notice "as soon as practicable and without unreasonable delay."

To view Foley Hoag's Security, Privacy and The Law Blog please click here

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

We operate a free-to-view policy, asking only that you register in order to read all of our content. Please login or register to view the rest of this article.

ARTICLE
29 March 2017

New Mexico, One Of The Last Holdouts, Sends Data Breach Notification Law To Governor

United States Privacy

Contributor

Foley Hoag provides innovative, strategic legal services to public, private and government clients. We have premier capabilities in the life sciences, healthcare, technology, energy, professional services and private funds fields, and in cross-border disputes. The diverse experiences of our lawyers contribute to the exceptional senior-level service we deliver to clients.
See More Popular Content From

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More