Obligations under the Data Security Regulations and Breach Notification Law

The Data Security Regulations tell you what you must do to prevent a data breach and the Breach Notification Law tells you what you must do when a breach happens.

If you know or have reason to know that your organization has experienced a data breach covered by the Breach Notification Law, you must send written notices as soon as practicable and without unreasonable delay, to:

This is general information about your potential reporting obligations under the Breach Notification Law. This is informational only and you should not view this information as legal advice. You should review the law with your attorney to see what applies to your situation.

Data Security Regulations

Breach Notification Law (in effect as of April 10, 2019)

Help Us Improve Mass.gov with your feedback