{"data":{"id":"us-ia/iowa-code-533.331","jurisdiction":"us-ia","citation":"Iowa Code § 533.331","heading":"Data breach — duty to notify.","body":"1. In accordance with 12 C.F.R. pt. 748, Appendix B, a state credit union shall maintain an information security response program that includes procedures for notifying the credit union division as soon as possible after the credit union becomes aware of an incident involving unauthorized access to or use of sensitive member information that would permit access to the member’s account, as further detailed in 12 C.F.R. pt. 748.\n2. State credit unions that experience an information security breach may be subject to chapter 715C.","path":["Title XIII - COMMERCE (Ch. 505 - 554I)","Chapter 533 - CREDIT UNIONS","Subchapter III - CREDIT UNION OPERATIONS"],"source_url":"https://www.legis.iowa.gov/docs/code/2026/533.331.pdf","current_through":"Iowa Code 2026 edition","vintage":"","retrieved_at":"2026-09-14T19:40:14Z","sha256":"b5948e840b0a368f085fac30a936ebf74559e9a790258056915da8a401e27401","source_id":"us-ia","stale":false,"prev":"us-ia/iowa-code-533.330","next":"us-ia/iowa-code-533.332"},"notice":"GroundRules: Original legal text. Not legal advice."}
