Latest Publications

Share:

Coronavirus: Significant HIPAA Relief in Telehealth Context Due to COVID-19 Response

There is no question that COVID-19 has brought unprecedented change to our world. The temporary relaxation of HIPAA's requirements is one of many examples of the government's efforts to address the public's health care needs...more

Coronavirus: HHS Announces Limited Waivers of HIPAA Penalties and Sanctions

On March 16 and 17, the United States Department of Health and Human Services (HHS) Office for Civil Rights (OCR) announced limited waivers of penalties and sanctions with respect to certain HIPAA requirements due to the...more

CMS and ONC Publish Final Interoperability and Information Blocking Rules

On March 9, 2020, the U.S. Department of Health and Human Services (HHS) finalized two sets of regulations that are intended to increase patients' access to health data. As explained by HHS Secretary Alex M. Azar, "These...more

Don't Forget About Cyber Hygiene During Coronavirus (COVID-19) Outbreak

As organizations prepare for certain contingency work arrangements in response to the coronavirus (COVID-19) outbreak, companies must also focus attention on ensuring appropriate cyber hygiene. ...more

SEC Dispatches on Cybersecurity

2020 OCIE Priorities - On January 7, 2020, the Securities Exchange Commission's (SEC) Office of Compliance Inspections and Examination (OCIE) released its "2020 Examination Priorities," which included a focus on...more

DoD Issues Cybersecurity Maturity Model Certification v1.0 (CMMC)

Cybersecurity attacks represent a real threat to our national security and the defense industrial base. To combat these threats, the Department of Defense (DoD) recently released Cybersecurity Maturity Model Certification...more

Data Privacy Day 2020 – What Actions Businesses Can Take

Happy Data Privacy Day! Today, January 28, is a day to raise awareness, foster dialogue, and empower companies to act to ensure proper privacy (and security) of all types of data and information....more

Physicians, Think Before You Yelp??

Health care providers should take heed of the $10,000 settlement announced on October 2, 2019 between the U.S. Department of Health and Human Service (HHS) Office for Civil Rights (OCR) and a small dental practice based on...more

Updated Version of HHS Security Risk Assessment Tool Released

October was National Cyber Security Awareness Month and, as its parting gift, the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) and the Office of the National Coordinator for Health...more

Privacy & Cybersecurity Due Diligence – No Longer Optional: Company Fined $124 Million for Pre-Merger Compromise

In early July, a global hospitality company announced in a U.S. Securities and Exchange Commission (SEC) filing that it had been fined more than $124 million (more than £99 million) by the United Kingdom's Information...more

Department of Homeland Security Issues Report on Microsoft Office 365

Organizations and their legal departments continue to deal with the repercussions of email compromises. Regardless of whether your organization is considering migration of email services to Microsoft Office 365 (O365) or...more

FERC Imposes Cybersecurity Standards on Third-Party Utility Vendors

Effective December 2018, the Federal Energy Regulatory Commission (FERC) approved supply chain risk management Reliability Standards (Order No. 850) that require all utilities to develop and implement a security controls plan...more

More Help for Health Care Organizations: HHS Releases Voluntary Cybersecurity Practices Developed with Industry Input

On Friday, December 28, 2018, the Department of Health and Human Services (HHS) released several documents, including the "Health Industry Cybersecurity Practices (HICP): Managing Threats and Protecting Patients," an...more

Required Reading for All Health Executives – Key Draft Report Released Regarding Health Information Technology

On the day before the U.S. Department of Health and Human Services, Office of the National Coordinator for Health Information Technology (ONC) Annual Meeting in Washington, D.C., the ONC released its draft Strategy on...more

New Data Law Comes into Effect on January 1, 2019 – Does Your Business Have to Comply?

Does your company qualify as a "data broker"? You may be surprised by the answer and as of January 1, 2019 your company may be subject to a new Vermont law governing such entities....more

Changes to the Security Risk Assessment (SRA) Tool Require Attention

The HHS Office of the National Coordinator for Health Information Technology (ONC) and the HHS Office for Civil Rights (OCR) released an updated Security Risk Assessment (SRA) Tool this week. All covered entities and business...more

CMS Clarifies Text Messaging Prohibition

After a confusing month of contradicting guidance, the Centers for Medicare & Medicaid Services (CMS) issued a memorandum clarifying its position regarding the use of text messaging with patient information between providers....more

Unsealed Qui Tam Alleges Nearly $325 Million in Improper Payments

A recently unsealed qui tam action further demonstrates the growing focus on the propriety of incentive payments made under Medicare and Medicaid's Electronic Health Records (EHR) Incentive Programs. Health care providers...more

Peer Review Not Protected: U.S. Supreme Court Will Not Disturb Florida Decision Limiting the Patient Safety and Quality...

A multi-year discovery dispute regarding the adverse medical incident reports of a Jacksonville, Florida hospital concluded on October 2, 2017 when the United States Supreme Court denied a petition for a writ of certiorari in...more

Maryland and Delaware to Roll Out Changes to Data Breach Laws in 2018

States continue to amend their Data Protection and Breach Notification Requirements. Maryland and Delaware are the most recent states to pass legislation designed to bring additional precision to an organization's...more

What You Need to Do Now: Responding to the Major Cybersecurity Attack Against Organizations

Regardless of whether you have experienced any disruptions to date, you cannot ignore the major global cybersecurity attack that continues to plague organizations. A particularly destructive piece of malicious software, the...more

New York AG Puts Mobile Health App Developers on Notice

New York Attorney General Eric T. Schneiderman announced on Friday that the AG's office reached settlements with three mobile application developers who marketed their apps without possessing sufficient information to back up...more

OCR Examines Hybrid Entity Designation in Latest HIPAA Settlement

On November 22, 2016, the University of Massachusetts Amherst (UMass) agreed to pay $650,000 and enter into a corrective action plan to settle allegations that it violated the HIPAA Privacy and Security Rules in connection...more

Practice Spotlight: Best Practices for Responding to the Threat of Ransomware

Ransomware, a specialized form of malware used for extortion attempts, has been around the internet for more than a decade but now, because of a rash of recent attacks, has moved to the forefront as the most problematic cyber...more

Significant New EU Data Protection Privacy Framework Regulation Approved

On April 14, 2016 the European Parliament approved the European Union General Data Protection Regulation (GDPR), which replaces the EU Data Protection Directive (95/46/EC), the privacy law originally established in 1995. The...more

71 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide