Consumer Information Notification Requirement Act
A BILL
To amend the Gramm-Leach-Bliley Act to provide a national standard for financial institution data security and breach notification on behalf of all consumers, and for other purposes.
Sec. 2 Breach notification standards
“(c) Standards with respect to breach notification—Subject to section 504(a)(2) and sections 505(b) and 505(c), within 6 months after the date of enactment of this subsection, each agency or authority required to establish standards described under subsection (b)(3) with respect to the provision of a breach notice shall ensure that such standards are in compliance with subsection (b).”
Sec. 3 Preemption with respect to financial institution safeguards
“507. Relation to State laws
“This subtitle preempts any law, rule, regulation, requirement, standard, or other provision having the force and effect of law of any State, or political subdivision of a State, with respect to a financial institution (other than a financial institution engaged in providing insurance) or affiliate thereof securing personal information from unauthorized access or acquisition, including notification of unauthorized access or acquisition of data.”