Skip to content
LexBuild

6 CFR § 5.31 - Security of systems of records.

---
identifier: "/us/cfr/t6/s5.31"
source: "ecfr"
legal_status: "authoritative_unofficial"
title: "6 CFR § 5.31 - Security of systems of records."
title_number: 6
title_name: "Domestic Security"
section_number: "5.31"
section_name: "Security of systems of records."
chapter_name: "DEPARTMENT OF HOMELAND SECURITY, OFFICE OF THE SECRETARY"
part_number: "5"
part_name: "DISCLOSURE OF RECORDS AND INFORMATION"
positive_law: false
currency: "2026-04-05"
last_updated: "2026-04-05"
format_version: "1.1.0"
generator: "[email protected]"
authority: "6 U.S.C. 101  Pub. L. 107-296, 116 Stat. 2135; 5 U.S.C. 301; 6 U.S.C. 142; DHS Del. No. 13001, Rev. 01 (June 2, 2020)."
regulatory_source: "68 FR 4056, Jan. 27, 2003, unless otherwise noted."
cfr_part: "5"
---

# 5.31 Security of systems of records.

(a) *In general.* Each component will establish administrative and physical controls to prevent unauthorized access to its systems of records, to prevent unauthorized disclosure of records, and to prevent physical damage to or destruction of records. The stringency of these controls will correspond to the sensitivity of the records that the controls protect. At a minimum, each component's administrative and physical controls will ensure that:

(1) Records are protected from public view;

(2) The area in which records are kept is supervised during business hours to prevent unauthorized persons from having access to them;

(3) Records are inaccessible to unauthorized persons outside of business hours; and

(4) Records are not disclosed to unauthorized persons or under unauthorized circumstances in either oral or written form.

(b) *Procedures required.* Each component will have procedures that restrict access to records to only those individuals within the Department who must have access to those records to perform their duties and that prevent inadvertent disclosure of records.