Lexology May 5, 2022
Proskauer Rose LLP

The Department of Health and Human Services (“HHS”) has issued a formal request for information from the public about how regulated entities are implementing industry recognized security practices. The request for information represents a chance for the private sector to contribute to HHS regulation. Interested parties have until June 6, 2022 to submit comments.

HHS seeks this information to be better informed when making determinations regarding fines, audits, and remedies after a potential violation of the Health Insurance Portability and Accountability Act of 1996 (“HIPAA”) Security Rule. The request for information was issued by HHS’s Office for Civil Rights (“OCR”), which enforces the privacy and security rules for health providers and insurers that hold health data.

The Health Information Technology...

Today's Sponsors

Canton & Company
Curation Health

Today's Sponsors

Oliver Wyman

Today's Sponsor

Canton & Company

Topics: Cybersecurity, Govt Agencies, Health IT, Health System / Hospital, HHS, Provider, Technology
Worst health system data breaches of 2022, according to Wired
2022 cybersecurity forecasts predict growth, emphasizing resilience
The future of maintaining privacy and security in healthcare
Ransomware, Cyber-Savviness, and the Public-Private Security Connection
CFOs Put Cyber Risks High on 2022 Agenda