East Chattanooga City Bylaw: Report Cyber Incident

Technology and Data Tennessee 3 Minutes Read · published February 21, 2026 Flag of Tennessee

This guide explains how to report a cybersecurity incident affecting municipal systems or city business in East Chattanooga, Tennessee. If you suspect unauthorized access, data loss, ransomware, or other cyber events involving City systems or records, notify the City IT team immediately, preserve relevant logs and devices, and follow official reporting routes below to meet municipal and legal obligations.

Report incidents to City IT as soon as they are discovered.

What to report and when

Report incidents that affect city email, financial systems, resident records, building controls, or any networked devices owned or managed by the City. Include the time discovered, systems affected, a short description, and contact details of the reporter.

  • Notify City IT immediately and include discovery time, affected systems, and a point of contact.[1]
  • Preserve logs, images, and devices; do not reboot or wipe systems unless instructed by IT.
  • If evidence of criminal activity exists, the IT team will coordinate with City Police or the City Attorney.

Penalties & Enforcement

The City of Chattanooga’s published municipal code and IT policies govern enforcement of rules for city systems; specific fine amounts or graduated penalties for cyber incidents are not specified on the cited municipal pages.[2]

Civil or criminal referrals may follow for unauthorized access or theft of city data.

Enforcement authority and process

  • Enforcer: City IT and the City Attorney’s Office coordinate response, with assistance from Chattanooga Police when criminal conduct is suspected.
  • Inspection and investigation: IT preserves and reviews technical logs; legal and law enforcement may seek warrants for further evidence.
  • Appeals and review: procedural or administrative decisions can be directed to the City Attorney; specific time limits for appeals are not specified on the cited page.

Escalation and sanctions

  • Monetary fines: not specified on the cited page; penalties depend on findings and applicable law.[2]
  • Non-monetary sanctions may include orders to cease unauthorized activity, suspension of access, restitution requirements, and referral for criminal prosecution.
  • Repeat or continuing offences: escalation to higher administrative penalties or criminal charges is possible; specific ranges are not listed on the cited municipal pages.

Common violations

  • Unauthorized access to city records — potential suspension of access and legal referral.
  • Installing unapproved software on city systems — administrative sanctions and access restriction.
  • Failure to report a breach involving personal data — may trigger further review and obligations under state law.

Applications & Forms

No specialized enforcement or appeal forms for cybersecurity incidents are published on the City IT pages; reporting is performed via the IT incident reporting/contact process linked below.[1]

How to report — immediate action steps

Follow these action steps to preserve evidence and speed response:

  1. Stop normal activity on impacted devices and do not power them down unless instructed.
  2. Contact City IT immediately with details and a contact name.[1]
  3. Document what was seen, times, and any screenshots or error messages.
  4. Follow IT instructions for handoff of devices, log export, or physical delivery.
Keep a written timeline of events to assist investigations.

FAQ

Who do I call first for a suspected cyber incident?
The City IT helpdesk or your departmental IT contact; if life-safety systems are affected, also notify emergency services.
Will I be disciplined for reporting an incident?
Good-faith reporting is encouraged; disciplinary policies depend on the investigation outcome and are handled by the department and City HR.
Are there forms to file a formal complaint?
No specific cyber incident complaint form is published; use the IT incident reporting process linked in Resources.

How-To

Step-by-step: report a cybersecurity incident to City IT.

  1. Identify the affected systems and record the time of discovery.
  2. Call or email City IT immediately and provide a short incident summary and contact info.[1]
  3. Preserve logs, do not change system state, and follow IT instructions for evidence handling.
  4. Cooperate with follow-up investigations and any requests from legal or law enforcement.

Key Takeaways

  • Report to City IT immediately and preserve evidence.
  • Municipal pages do not list fixed fines for cyber incidents; outcomes depend on investigation.[2]

Help and Support / Resources