The bill aims to strengthen cybersecurity measures within the Kansas government by consolidating services and redefining the roles of chief information security officers (CISOs) across various branches. It establishes two new oversight councils—the legislative branch information technology oversight council and the judicial branch technology oversight council—to set standards and evaluate cybersecurity programs. The bill mandates periodic audits for compliance and requires the executive branch CISO to assess agency adherence to cybersecurity standards, reporting findings to the legislature. Additionally, it removes specific maturity requirements for cybersecurity programs, allowing for greater flexibility, and emphasizes the need for annual cybersecurity awareness training for all employees.
Significant amendments include increasing the voting members on the information technology executive council from 13 to 17 and removing compliance deadlines related to the national institute of standards and technology cybersecurity framework. The bill clarifies the responsibilities of CISOs, including the development of centralized cybersecurity protocols and collaboration with federal agencies. It also eliminates the expiration date of July 1, 2026, for certain provisions, ensuring the continuity of cybersecurity measures. Furthermore, it requires agencies to present their progress on cybersecurity plans to the legislative budget committee and allows legislative committees to consider compliance during sessions, potentially penalizing noncompliant agencies. Overall, the bill seeks to enhance the cybersecurity framework and accountability within Kansas state government.
Statutes affected: As introduced: 40-110, 45-229, 75-413, 75-623, 75-710, 75-711, 75-7202, 75-3223, 75-7203, 75-7245, 75-7206a, 75-7208a, 75-7237, 75-7201, 75-7238, 75-7239, 75-7240, 76-711, 75-7246
As Amended by House Committee: 40-110, 75-413, 45-229, 75-623, 75-710, 75-711, 75-7202, 75-7203, 75-7245, 75-7206a, 75-7208a, 75-7237, 75-7201, 75-7238, 75-7239, 75-7240, 76-711, 75-7246
Enrolled: 40-110, 45-229, 75-413, 75-623, 75-710, 75-711, 75-7202, 75-3223, 75-7203, 75-7245, 75-7206a, 75-7208a, 75-7237, 75-7201, 75-7238, 75-7239, 75-7240, 76-711, 75-7246