Oklahoma security breach notification act

Oklahoma HB 2357 of 2006 requires that if you maintain, as part of a database, a consumer’s name and other personal identification numbers (i.e., SSN, driver’s license, credit card, or financial information with a personal security code) that such information must be encrypted or redacted so that in the event of a breach, such information cannot be obtained and used by a third party. The policy detects combinations of Personally Identifiable Information (PII) like social security, credit card, and driver’s license numbers. The rules for this policy are:

  • Oklahoma Security Breach Notification Act: Name and SSN
  • Oklahoma Security Breach Notification Act: Name and DL
  • Oklahoma Security Breach Notification Act: Name and CCN
  • Oklahoma Security Breach Notification Act: Name and Password (Wide)
  • Oklahoma Security Breach Notification Act: Name and Password (Default)
  • Oklahoma Security Breach Notification Act: Name and Password (Narrow)
  • Oklahoma Security Breach Notification Act: Password Dissemination for HTTP Traffic (Wide)
  • Oklahoma Security Breach Notification Act: Password Dissemination for HTTP Traffic (Default)
  • Oklahoma Security Breach Notification Act: Password Dissemination for HTTP Traffic (Narrow)
  • Oklahoma Security Breach Notification Act: Account and Password