48 CFR 1239.7102
1239.7102 Policy.
United States · 48 CFR — Federal Acquisition Regulations System · Status: effective
Cite this
- Citation
- 48 CFR 1239.7102, 1239.7102 Policy, United States, version 1 as recorded 2026-07-09, yourstate.us, https://yourstate.us/provision/249046
- Permanent ID
ys:prov:249046@1- SHA-256
f0a75b174942599e00a3a7ee3af6136a0d0baeb4caf0a91c20138537162f82da
The hash is SHA-256 of this version's text, with every run of whitespace collapsed to a single space and the ends trimmed. The ID always leads back here, and checking it says whether the text you cited is still the current version.
Full text
DOT must ensure that data protection is provided for information and information systems in accordance with current policies, procedures, and statutes, including:
(a) The Clinger-Cohen Act.
(b) The E-Government Act.
(c) Federal Information Systems Modernization Act.
(d) Federal Information Processing Standards.
(e) OMB Circular A-130, Managing Information as a Strategic Resource.
(f) 49 CFR part 10, Maintenance of and Access to Records Pertaining to Individuals.
(g) DOT Order 1351.18, Privacy Risk Management Policy.
(h) DOT Order 1351.19, PII Breach Notification Controls.
(i) DOT Order 1351.28, Records Management.
(j) DOT Order 1351.37, Departmental Cyber Security Policy.
Legislative history
This is a federal regulation, adopted through agency rulemaking under the Administrative Procedure Act — not enacted by a recorded vote of Congress.