Answer First
Primary Text
Requirements Relating to Access by Agency Personnel to Sensitive Personal Information. (a) On-site and Online Access Except as may be allowed through guidelines to be issued by the Commission, no employee of the government shall have access to sensitive personal information on government property or through online facilities unless the employee has received a security clearance from the head of the source agency.
(b) Off-site Access Unless otherwise provided in guidelines to be issued by the Commission, sensitive personal information maintained by an agency may not be transported or accessed from a location off government property unless a request for such transportation or access is submitted and approved by the head of the agency in accordance with the following guidelines:
(1) Deadline for Approval or Disapproval In the case of any request submitted to the head of an agency, such head of the agency shall approve or disapprove the request within two (2) business days after the date of submission of the request. In case there is no action by the head of the agency, then such request is considered disapproved;
(2) Limitation to One thousand (1,000) Records If a request is approved, the head of the agency shall limit the access to not more than one thousand (1,000) records at a time; and
(3) Encryption Any technology used to store, transport or access sensitive personal information for purposes of off-site access approved under this subsection shall be secured by the use of the most secure encryption standard recognized by the Commission.
The requirements of this subsection shall be implemented not later than six (6) months after the date of the enactment of this Act.
Use With Care
Definitions and exceptions often appear before or after this text.
Court decisions may interpret, limit, or apply this provision.
Confirm amendment, repeal, effectivity, and official publication.
Plain Language