In the first five months of 2025, the U.S. Department of Health and Human Services’ (HHS) Office for Civil Rights (OCR) announced it had entered into ten Health Insurance Portability and Accountability Act (HIPAA) resolution...more
5/21/2025
/ Business Associates ,
Covered Entities ,
Data Breach ,
Department of Health and Human Services (HHS) ,
Enforcement Actions ,
Health Insurance Portability and Accountability Act (HIPAA) ,
HIPAA Security Rule ,
HIPAA Violations ,
OCR ,
Penalties ,
Risk Assessment ,
Risk Management ,
Settlement Agreements
The U.S. Department of Health and Human Services (HHS) recently released a proposed rule to better protect electronic health data from cybersecurity threats. The proposed rule would apply to health plans, healthcare...more
The Federal Trade Commission (FTC) has a long-standing habit of creating legal obligations through blog posts. Recent communications from the FTC by way of its Office of Technology Blog evidence an aggressive expectation...more
8/19/2024
/ Anonymization ,
Corporate Counsel ,
Court of Justice of the European Union (CJEU) ,
Data Protection ,
De-Identification ,
Federal Trade Commission (FTC) ,
General Data Protection Regulation (GDPR) ,
Health Insurance Portability and Accountability Act (HIPAA) ,
Personal Data ,
Safe Harbors ,
Subject Matter Experts (SMEs)
California has a long history of protecting privacy rights. Article I, Section 1, of the California Constitution expressly provides a right of privacy. Recently, the focus has been on compliance with the California Consumer...more
2/29/2024
/ Business & Professions Code ,
California Consumer Privacy Act (CCPA) ,
California Privacy Rights Act (CPRA) ,
CalOPPA ,
Compliance ,
Consumer Privacy Rights ,
Disclosure Requirements ,
Health Insurance Portability and Accountability Act (HIPAA) ,
Invasion of Privacy ,
Minors ,
Personal Information ,
PHI ,
Privacy Laws ,
Security and Privacy Controls ,
Sensitive Personal Information ,
SOPIPA ,
State Constitutions ,
State Privacy Laws ,
Statutory Violations ,
Student Privacy ,
Unfair Competition Law (UCL) ,
Website Design ,
Websites
On February 14, 2024, the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) and the National Institute of Standards and Technology (NIST) published a new, final version of their guidance for...more
2/26/2024
/ Biden Administration ,
Cybersecurity ,
Department of Health and Human Services (HHS) ,
Electronic Protected Health Information (ePHI) ,
Final Guidance ,
Health Care Providers ,
Health Insurance Portability and Accountability Act (HIPAA) ,
HIPAA Security Rule ,
NIST ,
OCR ,
Popular ,
Risk Assessment ,
Risk Management