New Jersey § 58:31-4
Full text of New Jersey New Jersey Statutes § 58:31-4, with citation guidance and answers to common questions.
§ 58:31-4.
a. Within 120 days after the effective date of P.L.2017, c. 133 ( C.58:31-1 et seq. ) , 1 each water purveyor shall develop a cybersecurity program, in accordance with requirements
established by the New Jersey Cybersecurity and Communications Integration Cell, as rules and regulations
adopted pursuant to the “Administrative Procedure Act,” P.L.1968, c. 410 ( C.52:14B-1 et seq. ) , that defines and implements organization accountabilities and responsibilities for
cyber risk management activities, and establishes policies, plans, processes, and
procedures for identifying and mitigating cyber risk to its public community water system. As part of the cybersecurity program, a water purveyor shall : identify the individual chiefly responsible for ensuring that the policies, plans
processes, and procedures established pursuant to this section are executed in a timely
manner; conduct risk assessments and implement appropriate controls to mitigate identified
risks to the public community water system ; maintain situational awareness of cyber threats and vulnerabilities to the public community water system ; and create and exercise incident response and recovery plans. No later than 180 days after the effective date of P.L.2021, c. 262 ( C.58:31-4.1 et al.), a water purveyor shall update its cybersecurity program to conform to the
requirements of section 3 of P.L.2021, c. 262 ( C.58:31-4.1 ). A water purveyor shall submit a copy of the cybersecurity program developed pursuant to this subsection to the New Jersey Cybersecurity and Communications Integration Cell , in a form and manner as determined by the New Jersey Cybersecurity and Communications
Integration Cell . A cybersecurity program submitted pursuant to this subsection shall not be considered
a government record under P.L.1963, c. 73 ( C.47:1A-1 et seq. ), and shall not be made available for public inspection. b. Within 60 days after developing the cybersecurity program required pursuant to subsection a. of this section, each water purveyor shall
join the New Jersey Cybersecurity and Communications Integration Cell and create a cybersecurity incident reporting process. c. (Deleted by amendment, P.L.2021, c. 262 ). d. No later than 180 days after the effective date of P.L.2021, c. 262 ( C.58:31-4.1 et al.), 2 each water purveyor shall obtain a cybersecurity insurance policy that meets any
applicable standards adopted by the board. 1
L.2017, c. 133, eff. Oct. 19, 2017. 2
L.2021, c. 262, eff. Nov. 8, 2021.
Frequently Asked Questions About New Jersey § 58:31-4
What does New Jersey Statutes § 58:31-4 cover?
Section 58:31-4 is part of the New Jersey Statutes, the codified statutory law of New Jersey. It sets out the legal rule or procedure described in the text above. Statutes are amended regularly, so always verify against the official source.
How do I cite New Jersey § 58:31-4?
A common citation format is "New Jersey Statutes § 58:31-4" (New Jersey). Legal writing may require the code abbreviation, section number, and year or edition. Match the style required by your court, professor, or publisher.
Is this the official text of New Jersey law?
No. This page is for research and education and may not include the most recent amendments. For official current law, check the New Jersey official source linked on this page or consult a licensed New Jersey attorney.
How does New Jersey § 58:31-4 apply to my situation?
Statutes are interpreted in context, and application depends on your specific facts. Only a licensed attorney in New Jersey can advise on how this section applies to you. Contact your state or local bar association for a referral.
Sources & Verification
Not legal advice. Verify against the official source and consult a licensed attorney in New Jersey.