Securiti Ranked #1 DSPM Vendor by GigaOm

View

North Dakota: An Overview of Data Protection & Data Privacy Law

Published juillet 29, 2024

Contributors

Anas Baig

Product Marketing Manager at Securiti

Usman Tariq

Data Privacy Analyst at Securiti

CIPP/US

Data is growing rapidly. Due to this global growth, data protection has become a serious concern. To regulate the responsible collection, processing, and sharing of users’ data, regulatory authorities around the world have introduced strict data protection laws. However, not every country or even every state in the US has a comprehensive data protection regulation yet.

North Dakota, like some other US states, has yet to pass comprehensive laws such as the California Privacy Rights Act (CPRA) or the Virginia Consumer Data Protection Act (VCDPA) in Virginia. The state of North Dakota recognizes the need and significance of a data protection regulation and it also attempted to introduce one such regulation. However, the bill fell short in its initial stages, and thus, it never passed. This blog aims to provide readers with a quick overview of the North Dakota data privacy bill HB 1330 and what businesses must do in the absence of a comprehensive privacy law.

North Dakota HB 1330

The bill defined a covered entity as an entity operating in a limited liability company, corporate, partnership, or any legal context, collecting, processing, and selling users’ protected data. Protected data, on the other hand, was defined as any data that included users’ location, interests, screen name, website address, professional history, browsing history, purchase history, and residence details, amongst others.

The bill prohibited covered entities against the sale of protected data unless the covered entity obtains a user’s consent. The bill was proposed to implement an opt-in model where the covered entity was required to let users opt-in for the sale of each type of their protected data.

Covered entities that violate any of the law's provisions could be fined no less than $10,000 and must pay reasonable attorney’s fees. In the event of a wilful violation, the violator could be fined no less than $100,000.

Current State of Data Protection Laws in North Dakota

North Dakota does not yet have a comprehensive privacy law, but it recognizes the need for regulation. Businesses, on the other hand, have not been without regulation since multiple federal laws apply in the state of North Dakota that demand compliance for user privacy rights and data protection.

For instance, the HIPAA regulation governs the country's healthcare sectors, providing detailed data protection provisions for protected health information (PHI). Hence, entities that collect, process, share, and sell PHI must demonstrate compliance to avoid legal consequences. Moreover, compliance with industry standards and regional regulatory requirements also demonstrates a business’s credibility, which ultimately builds trust.

Partager

Rejoignez notre newsletter

Recevez toutes les dernières informations, les mises à jour de la loi et plus encore dans votre boîte de réception

Videos

Spotlight Talks

Latest

The ROI of Safe Enterprise AI View More

The ROI of Safe Enterprise AI: A Business Leader’s Guide

The fundamental truth of today’s competitive landscape is that businesses harnessing data through AI will outperform those that don’t. Especially with 90% of enterprise...

View More

Accelerating Safe Enterprise AI: Securiti’s Gencore AI with Databricks and Anthropic Claude

Securiti AI collaborates with the largest firms in the world who are racing to adopt and deploy safe generative AI systems, leveraging their own...

View More

What are Data Security Controls & Its Types

Learn what are data security controls, the types of data security controls, best practices for implementing them, and how Securiti can help.

View More

What is cloud Security? – Definition

Discover the ins and outs of cloud security, what it is, how it works, risks and challenges, benefits, tips to secure the cloud, and...

View More

2025 Privacy Law Updates: Key Developments You Need to Know

Download the whitepaper to discover privacy law updates in 2025 and the key developments you need to know. Learn how Securiti helps ensure swift...

View More

Verifiable Parental Consent Requirements Under Global Privacy Laws

Download the whitepaper to learn about verifiable parental consent requirements under global privacy laws and simplify your compliance journey.

Navigating Kenya’s Data Protection Act View More

Navigating Kenya’s Data Protection Act: What Organizations Need To Know

Download the infographic to discover key details about navigating Kenya’s Data Protection Act and simplify your compliance journey.

India’s Telecom Security & Privacy Regulations View More

India’s Telecom Security & Privacy Regulations: A High-Level Overview

Download the infographic to gain a high-level overview of India’s telecom security and privacy regulations. Learn how Securiti helps ensure swift compliance.

Gencore AI and Amazon Bedrock View More

Building Enterprise-Grade AI with Gencore AI and Amazon Bedrock

Learn how to build secure enterprise AI copilots with Amazon Bedrock models, protect AI interactions with LLM Firewalls, and apply OWASP Top 10 LLM...

DSPM Vendor Due Diligence View More

DSPM Vendor Due Diligence

DSPM’s Buyer Guide ebook is designed to help CISOs and their teams ask the right questions and consider the right capabilities when looking for...

What's
New