New York § 711-C - 711-CCybersecurity incident reviews
Full text of New York New York Consolidated Laws § 711-C — 711-CCybersecurity incident reviews, with citation guidance and answers to common questions.
§ 711-C. 711-CCybersecurity incident reviews
§ 711-c. Cybersecurity incident reviews. 1. Definitions. As used in this section, the terms cybersecurity incident, cyber threat, cyber threat indicator, defensive measure, information system, municipal corporation, public authority, ransom payment and ransomware attack shall have the same meaning as such terms are defined in article nineteen-C of the general municipal law. 2. The commissioner, or their designees, shall review each cybersecurity incident report and notice and explanation of ransom payment submitted pursuant to sections nine hundred ninety-five-b and nine hundred ninety-five-c of the general municipal law to assess potential impacts of cybersecurity incidents and ransom payments on the health, safety, welfare or security of the state, or its residents. 3. The commissioner, or their designees, may work with appropriate state agencies, federal law enforcement, and federal homeland security agencies to provide municipal corporations and public authorities with reports of cybersecurity incidents and trends, including but not limited to, to the maximum extent practicable, related contextual information, cyber threat indicators, and defensive measures. The commissioner may coordinate and share such reported information with municipal corporations, public authorities, state agencies, and federal law enforcement and homeland security agencies to respond to and mitigate cybersecurity threats. 4. Such reports, assessments, records, reviews, documents, recommendations, guidance and any information contained or used in its preparation shall be exempt from disclosure under article six of the public officers law. 5. No later than forty-eight hours after receiving a cybersecurity incident report containing a request for advice and/or technical assistance from the division pursuant to subdivision one of section nine hundred ninety-five-b of the general municipal law, the commissioner or the commissioner's designees shall acknowledge receipt of such request. As soon as possible after receiving such a request, the commissioner or the commissioner's designees, subject to the commissioner's discretion in prioritizing the division's response to the municipal corporation's or public authority's cybersecurity incident report, shall provide advice to the requesting municipal corporation or public authority and, to the extent practicable, provide technical assistance.
Source: official New York text · Last verified 2026-08-27
Frequently Asked Questions About New York § 711-C
What does New York Consolidated Laws § 711-C cover?
Section 711-C ("711-CCybersecurity incident reviews") is part of the New York Consolidated Laws, the codified statutory law of New York. It sets out the legal rule or procedure described in the text above. Statutes are amended regularly, so always verify against the official source.
How do I cite New York § 711-C?
A common citation format is "New York Consolidated Laws § 711-C" (New York). Legal writing may require the code abbreviation, section number, and year or edition. Match the style required by your court, professor, or publisher.
Is this the official text of New York law?
No. This page is for research and education and may not include the most recent amendments. For official current law, check the New York official source linked on this page or consult a licensed New York attorney.
How does New York § 711-C apply to my situation?
Statutes are interpreted in context, and application depends on your specific facts. Only a licensed attorney in New York can advise on how this section applies to you. Contact your state or local bar association for a referral.
Sources & Verification
Not legal advice. Verify against the official source and consult a licensed attorney in New York.