Get Full Government Meeting Transcripts, Videos, & Alerts Forever!
Get email alerts on the Cybersecurity topic
No spam. Unsubscribe anytime.
Clark County adopts cybersecurity policy; incident-related records exempted from public disclosure
Summary
The Board of Clark County Commissioners adopted a Cybersecurity Policy to comply with Ohio Revised Code Section 9.64, and the resolution states records related to the policy and cybersecurity incidents are not public records under the public records law.
Get email alerts on the Cybersecurity topic
No spam. Unsubscribe anytime.
The Board of Clark County Commissioners on Dec. 30 adopted a Cybersecurity Policy prepared by the county Information Systems Department to comply with Ohio Revised Code Section 9.64, enacted through House Bill 96.
The resolution states the purpose of the policy is to safeguard county data and IT resources and directs that records, documents or reports related to the cybersecurity policy and reports of cybersecurity or ransomware incidents are not public records under ORC 149.43, consistent with ORC 9.64. It also defines certain procurement-related records about cybersecurity products and vendors as "security records" not subject to disclosure. The resolution authorizes the Board President and the County Administrator to execute the policy acceptance and related documents.
Commissioner Patterson moved to adopt the policy; Commissioner Wilt seconded the motion and the roll call vote was recorded as unanimous in favor.
The policy itself was described in the meeting record as not a public document under ORC 9.64 and had been sent to commissioners in advance for review.
