An Act establishing a Cybersecurity Control and Review Commission

Our world looks a lot different than it did last century – our lives are now built around software and computers rather than the analog methods of communication and control of days gone by. While this technological revolution has improved our quality of life and created entire new industries around the world, it has also created vulnerabilities that pose structural risks to the basic way of life in our communities. From the computers that keep clean water flowing to our homes to the software that makes sure paychecks reliably deposit in our bank accounts, our societal systems are not prepared for the disruption and chaos that a major cyberattack could cause.

This legislation would take steps toward making sure we are better prepared for the uncertainties of the future by creating a statewide standing commission of cybersecurity experts to do four primary things:

  • Develop a comprehensive recommended cybersecurity standard for governments and businesses operating in the Bay State

  • Create a process of accreditation for private businesses that meet the commission’s standards

  • Require any private businesses who contract with state or local governments to comply with the commission’s standards

  • Require the commission to write an annual report to be shared with the state legislature and the public on the status of the Commonwealth’s critical infrastructure and recommendations on how to maintain the resiliency of our protections