Insurance Data Security Law

NH Insurance Data Security Law
active

New Hampshire's adoption of the NAIC Insurance Data Security Model Law requires insurance licensees to run a risk-based written information security program, oversee vendors, keep an incident response plan, investigate cybersecurity events and report qualifying events to the Insurance Commissioner within 3 business days. Consumer notice follows the general breach law, RSA 359-C:20.

Jurisdiction

New Hampshire

Jurisdiction Type

state

Country

United States

Effective Date

1/1/2020

Enforcing Authority

New Hampshire Insurance Commissioner

Fines Under This Regulation

0

Total Fine Amount (USD)

--