Iowa data breach notification law

Iowa S.F. 2308 of 2008 requires that any person who owns or licenses computerized data that includes a consumer’s personal information that is used in the course of the person’s business, vocation, occupation, or volunteer activities and that was subject to a breach of security shall give notice of the breach of security, following discovery of such breach of security, to any consumer whose personal information was included in the information that was breached. The policy detects combinations of Personally Identifiable Information (PII) like social security, credit card, and driver’s license numbers. The rules for this policy are:

  • Iowa Data Breach Notification Law: Name and SSN
  • Iowa Data Breach Notification Law: Name and DL
  • Iowa Data Breach Notification Law: Name and CCN
  • Iowa Data Breach Notification Law: Name and Password (Wide)
  • Iowa Data Breach Notification Law: Name and Password (Default)
  • Iowa Data Breach Notification Law: Name and Password (Narrow)
  • Iowa Data Breach Notification Law: Password Dissemination for HTTP Traffic (Wide)
  • Iowa Data Breach Notification Law: Password Dissemination for HTTP Traffic (Default)
  • Iowa Data Breach Notification Law: Password Dissemination for HTTP Traffic (Narrow)
  • Iowa Data Breach Notification Law: DNA profile