Tap any paragraph to write a margin note. Your notes collect in the Desk below the text and file under cases with @. The side-by-side margin rail opens on a larger screen.

Code · Nevada · CHAPTER 242 - INFORMATION SERVICES

NRS 242.1289 Adoption of cybersecurity incident response plan; requirements for regulations; review of plans; confidentiality of plans.

327 words·~1 min read·/nv/chapter-242-information-services/242-1289

A research copy — for the controlling text, always check the official state or federal source. Not legal advice.

NRS 242.1289 Adoption of cybersecurity incident response plan; requirements for regulations; review of plans; confidentiality of plans.
1. Each political subdivision shall adopt and maintain a cybersecurity incident response plan. Each new or revised plan must be filed within 10 days after adoption or revision with the Office of Information Security and Cyber Defense.
2. The Chief shall, by regulation, prescribe the contents of a cybersecurity incident response plan, which must include, without limitation, a plan:
(a)To prepare for a cybersecurity threat;
(b)To detect and analyze a cybersecurity threat;
(c)To contain, eradicate and recover from a cybersecurity incident; and
(d)For postincident activity that includes a discussion regarding information learned and any analytics associated with the cybersecurity incident.
3. Each political subdivision shall review its cybersecurity incident response plan at least once each year and, as soon as practicable after the review is completed but not later than December 31 of each year, file with the Office of Information Security and Cyber Defense:
(a)Any revised cybersecurity incident response plan resulting from the review; or
(b)A written certification that the most recent cybersecurity incident response plan filed pursuant to subsection 1 is the current cybersecurity incident response plan for the political subdivision.
4. Except as otherwise provided in NRS 239.0115 , a cybersecurity incident response plan filed pursuant to the requirements of this section, including any revisions adopted thereto, is confidential and must be securely maintained by the Office of Information Security and Cyber Defense. An officer, employee or other person to whom the plan is entrusted by the Office shall not disclose the contents of such a plan except:
(a)Upon the lawful order of a court of competent jurisdiction;
(b)As is reasonably necessary in the case of an act of terrorism or related emergency; or
(c)Pursuant to the provisions of NRS 239.0115 .
5. As used in this section, “political subdivision” means a city or county of this State.
★   the supreme law of the land   ★
Don't Tread on Me
E Pluribus Unum — out of many, one

"If you don't know your rights, you don't have any."

Marginalia · a citizen's law index
A research desk, not legal advice. Always read the cited source before relying on a summary.
Questions or an issue? support@self-law.org
disclaimerMarginalia is a research index, not a law firm. Nothing on this site is legal, tax, or financial advice and no attorney–client relationship is formed by using it. Statutes, regulations, and case law change; summaries, search results, AI output, and member posts may be incomplete, out of date, or wrong. Any interpretation drawn from material on this site should be validated by a licensed attorney in your jurisdiction before you act on it.