Senator Ron Wyden of Oregon

Senate Bill Would Impose Steep Fines, Potential Jail Time For Executives Who Violate Data Privacy Rules

Sen. Ron Wyden, a staunch advocate of increased cybersecurity regulations, introduced the legislation as part of an effort to track how companies collect and share customer data.

Sen. Ron Wyden (D-Oregon), an outspoken advocate of increased data privacy and cybersecurity regulations, has introduced legislation that would empower the Federal Trade Commission to impose “steep fines” on companies for data breaches and lax cybersecurity practices. 

Under Wyden’s proposal, called “The Mind Your Own Business Act,” corporations could be fined up to 4 percent of annual revenue on their first offense. Company executives could face 10 to 20-year criminal penalties if they knowingly lied to the FTC. These measures would make the commision an “effective cop on the beat,” Wyden said in an Oct. 17 announcement

“Mark Zuckerberg won’t take Americans’ privacy seriously unless he feels personal consequences,” Wyden said in a statement targeting the Facebook CEO. “A slap on the wrist from the FTC won’t do the job, so under my bill he’d face jail time for lying to the government.” 

Currently, the FTC has the ability to sue businesses after a data breach if their cybersecurity standards were inadequate, but the agency cannot outline what those standards are beforehand, The Washington Post reported. The FTC also cannot issue fines unless corporations violate earlier agreements with the government to fix their cybersecurity issues. 

Wyden’s bill would allow the commission to go after companies that have not signed those agreements, meaning that “first-time offenders” could face penalties. A draft of the legislation was circulated last November, giving Wyden time to integrate feedback, he said. 

In addition to the FTC provisions, the bill would create a national “Do Not Track” system that lets consumers opt out of companies tracking their activity on the web, selling or sharing their data, and targeting ads based on that information. Consumers would have a way to review what personal information has been collected about them and which companies have accessed it. 

“I spent the past year listening to experts and strengthening the protections in my bill,” Wyden said. “It is based on three basic ideas: Consumers must be able to control their own private information, companies must provide vastly more transparency about how they use and share our data, and corporate executives need to be held personally responsible when they lie about protecting our personal information.”

A more moderate version of the bill has gained momentum in the House of Representatives, where the Democrats hold the majority. While the Information Transparency and Personal Data Control Act would give consumers the ability to opt out of data collection, storage and sharing, it does not include provisions for executive jail time or the potential for states to pass their own laws. 

The bill, sponsored by Democratic Rep. Suzan DelBene of Washington, earned the support of a group of centrist Democrats earlier this week. Under the law, the FTC would have more authority to pursue data privacy violations. 

“I’m very pleased this critical legislation has received the support of my New Democrat colleagues,” DelBene said in a statement reported by The Hill. "Our coalition is about finding solutions to tough problems, and my legislation is an important step toward ensuring that consumers have more control over their most sensitive information.” 

About the Author

Haley Samsel is an Associate Content Editor for the Infrastructure Solutions Group at 1105 Media.

Featured

  • 2025 Security LeadHER Conference Program Announced

    ASIS International and the Security Industry Association (SIA) – the leading membership associations for the security industry – have announced details for the 2025 Security LeadHER conference, a special event dedicated to advancing, connecting and empowering women in the security profession. The third annual Security LeadHER conference will be held Monday, June 9 – Tuesday, June 10, 2025, at the Detroit Marriott Renaissance Center in Detroit, Michigan. This carefully crafted program represents a comprehensive professional development opportunity for women in security this year. To view the full lineup at this year’s event, please visit securityleadher.org. Read Now

    • Industry Events
  • Report: 82 Percent of Phishing Emails Used AI

    KnowBe4, the world-renowned cybersecurity platform that comprehensively addresses human risk management, today launched its Phishing Threat Trend Report, detailing key trends, new data, and threat intelligence insights surrounding phishing threats targeting organizations at the start of 2025. Read Now

  • NRF Supports Federal Bill to Thwart Retail Crime

    The National Retail Federation recently announced its support for the Combating Organized Retail Crime Act of 2025. The act was introduced by Chairman Chuck Grassley, R-Iowa, Senator Catherine Cortez Masto, D-Nev., and Representative Dave Joyce, R-Ohio. Read Now

  • ISC West 2025 Brings Almost 29,000 Industry Professionals to Las Vegas

    ISC West 2025, organized by RX and in collaboration with the Security Industry Association, concluded at the Venetian Expo in Las Vegas last week. The nation’s leading comprehensive and converged security event attracted nearly 29,000 industry professionals and left a lasting impression on the global security community. Over five action-packed days, ISC West welcomed more than 19,000 attendees and featured 750 exhibiting brands. Read Now

    • Industry Events
    • ISC West
  • Tradeshow Work Can Be Fun

    While at ISC West last week, I ran into numerous friends and associates all of which was a pleasant experience. The first question always seemed to be, “How many does this make for you?” Read Now

    • Industry Events
    • ISC West

New Products

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions.

  • ComNet CNGE6FX2TX4PoE

    The ComNet cost-efficient CNGE6FX2TX4PoE is a six-port switch that offers four Gbps TX ports that support the IEEE802.3at standard and provide up to 30 watts of PoE to PDs. It also has a dedicated FX/TX combination port as well as a single FX SFP to act as an additional port or an uplink port, giving the user additional options in managing network traffic. The CNGE6FX2TX4PoE is designed for use in unconditioned environments and typically used in perimeter surveillance.