Free regulatory intelligence — powered by Certivo
Public CommentProposedProposed Regulation

Washington State Senate Bill 6281 proposes tying cloud procurement assessments to SEC-01 (and subsequent amendments)

Washington State SEC-01 Cybersecurity Program PolicyWashington State LegislatureUS, Washington State
Announced

Jan 1, 2026

Description

Washington State Senate Bill 6281 (bill text located) proposes amending RCW 43.105.375 to require an assessment prior to purchasing third-party commercial cloud computing services. The assessment would include evaluating cybersecurity and regulatory compliance using the data categories referenced in the document titled “Washington state cybersecurity program policy” (SEC-01) as it exists on the effective date of the section and any subsequent amendments. If enacted, this would operationalize SEC-01 as an explicit statutory reference point for cloud procurement due diligence and could increase internal documentation and review expectations tied to SEC-01 compliance.

Sources

Get compliance alerts for Washington State SEC-01 Cybersecurity Program Policy

Certivo tracks regulatory changes and automates compliance workflows for your products.

Start Free Trial