Nevada Revised Statutes
Chapter 242 - Information Services
NRS 242.105 - Confidentiality of certain documents relating to homeland security: List; biennial review; annual report.


1. Except as otherwise provided in subsection 3, records and portions of records that are assembled, maintained, overseen or prepared by the Division to mitigate, prevent or respond to acts of terrorism, the public disclosure of which would, in the determination of the Administrator, create a substantial likelihood of threatening the safety of the general public are confidential and not subject to inspection by the general public to the extent that such records and portions of records consist of or include:
(a) Information regarding the infrastructure and security of information systems, including, without limitation:
(1) Access codes, passwords and programs used to ensure the security of an information system;
(2) Access codes used to ensure the security of software applications;
(3) Procedures and processes used to ensure the security of an information system; and
(4) Plans used to re-establish security and service with respect to an information system after security has been breached or service has been interrupted.
(b) Assessments and plans that relate specifically and uniquely to the vulnerability of an information system or to the measures which will be taken to respond to such vulnerability, including, without limitation, any compiled underlying data necessary to prepare such assessments and plans.
(c) The results of tests of the security of an information system, insofar as those results reveal specific vulnerabilities relative to the information system.
2. The Administrator shall maintain or cause to be maintained a list of each record or portion of a record that the Administrator has determined to be confidential pursuant to subsection 1. The list described in this subsection must be prepared and maintained so as to recognize the existence of each such record or portion of a record without revealing the contents thereof.
3. At least once each biennium, the Administrator shall review the list described in subsection 2 and shall, with respect to each record or portion of a record that the Administrator has determined to be confidential pursuant to subsection 1:
(a) Determine that the record or portion of a record remains confidential in accordance with the criteria set forth in subsection 1;
(b) Determine that the record or portion of a record is no longer confidential in accordance with the criteria set forth in subsection 1; or
(c) If the Administrator determines that the record or portion of a record is obsolete, cause the record or portion of a record to be disposed of in the manner described in NRS 239.073 to 239.125, inclusive.
4. On or before February 15 of each year, the Administrator shall:
(a) Prepare a report setting forth a detailed description of each record or portion of a record determined to be confidential pursuant to this section, if any, accompanied by an explanation of why each such record or portion of a record was determined to be confidential; and
(b) Submit a copy of the report to the Director of the Legislative Counsel Bureau for transmittal to:
(1) If the Legislature is in session, the standing committees of the Legislature which have jurisdiction of the subject matter; or
(2) If the Legislature is not in session, the Legislative Commission.
5. As used in this section, "act of terrorism" has the meaning ascribed to it in NRS 239C.030.
(Added to NRS by 2003, 2461; A 2005, 268; 2011, 2950)

Structure Nevada Revised Statutes

Nevada Revised Statutes

Chapter 242 - Information Services

NRS 242.011 - Definitions.

NRS 242.013 - "Administrator" defined.

NRS 242.015 - "Board" defined.

NRS 242.031 - "Department" defined.

NRS 242.045 - "Division" defined.

NRS 242.051 - "Equipment" defined.

NRS 242.055 - "Information service" defined.

NRS 242.057 - "Information system" defined.

NRS 242.059 - "Information technology" defined.

NRS 242.061 - "Local governmental agency" defined.

NRS 242.063 - "Security validation" defined.

NRS 242.068 - "Using agency" defined.

NRS 242.071 - Legislative declaration; purposes of Division of Enterprise Information Technology Services.

NRS 242.080 - Creation; composition.

NRS 242.090 - Administrator: Appointment; classification; other employment prohibited.

NRS 242.101 - Administrator: General powers and duties.

NRS 242.105 - Confidentiality of certain documents relating to homeland security: List; biennial review; annual report.

NRS 242.111 - Regulations.

NRS 242.115 - Development of policies, standards, guidelines and biennial state plan for information systems of Executive Branch of Government.

NRS 242.122 - Information Technology Advisory Board: Creation; members; Chair.

NRS 242.123 - Information Technology Advisory Board: Meetings; compensation.

NRS 242.124 - Information Technology Advisory Board: Duties; powers.

NRS 242.125 - Consultation and coordination with state agencies not required to use services or equipment of Division.

NRS 242.131 - Services provided for agencies and elected officers of State: Negotiation; withdrawal; contracts to provide services.

NRS 242.135 - Employment of one or more persons to provide information services for agency or elected officer of State.

NRS 242.141 - Services provided for agencies not under Governor’s control and local governmental agencies.

NRS 242.151 - Administrator to advise agencies.

NRS 242.161 - Managerial control of equipment owned or leased by State.

NRS 242.171 - Responsibilities of Division; review of proposed applications of information systems.

NRS 242.181 - Adherence by using agencies and elected officers of State to regulations; reporting of certain incidents; uniformity of services.

NRS 242.183 - Investigation, resolution and notification of certain breaches or applications of information systems or certain unauthorized acquisitions of computerized data.

NRS 242.191 - Amount receivable for use of services of Division: Determination; itemized statement.

NRS 242.211 - Fund for Information Services: Creation; source and use.

NRS 242.221 - Approval and payment of claims; temporary advances.

NRS 242.231 - Payment by state agency or officer for services.

NRS 242.241 - Repayment of costs of construction of computer facility.

NRS 242.300 - Policy of state agency for appropriate use of computers by employees of agency.