Sec. 302. Requirement to audit information security practices of contractors and third-party business entities
98 words·~1 min read·
/bill/113/s/1995/is/section-302·A research copy — for the controlling text, always check the official state or federal source. Not legal advice.
Section 3544(b) of title 44, United States Code, is amended— in paragraph (7)(C)(iii), by striking and after the semicolon; in paragraph (8), by striking the period and inserting ; and ; and by adding at the end the following: procedures for evaluating and auditing the information security practices of contractors or third-party business entities supporting the information systems or operations of the agency involving sensitive personally identifiable information (as that term is defined in section 3 of the Personal Data Protection and Breach Accountability Act of 2014 ) and ensuring remedial action to address any significant deficiencies. .