News & Analysis as of

Final Rules Data Security

Ballard Spahr LLP

The FTC's Revised Health Breach Notification Rule Is Now in Effect

Ballard Spahr LLP on

The Federal Trade Commission (FTC) continues to enforce and update its Health Breach Notification Rule (HBNR) amidst a fast-changing regulatory environment. A new rule, which took effect this week, expands the scope of the...more

Davis Wright Tremaine LLP

FTC Finalizes Expansion of Health Breach Notification Rule's Broad Applicability to Unauthorized App Disclosures

The FTC issued a final rule to lock in changes to the Health Breach Notification Rule (HBNR) that it proposed in May 2023. While the HBNR began as a breach notification rule seemingly focused on a narrow set of applications...more

Manatt, Phelps & Phillips, LLP

FTC Regulation Tracker – March 2024

The Final Rules keep rolling in, but with a twist. Each of the two Final Rules released in March were accompanied by Supplemental Notices of Proposed Rulemaking. In both cases, the Supplemental Rulemakings, if adopted, would...more

Goodwin

SAMHSA Final Rule Codifies Opioid Treatment Program Telehealth and Take-Home Medication Flexibilities

Goodwin on

On February 2, 2024, the Department of Health and Human Services (HHS) issued a Final Rule that expands access to medications for the treatment of opioid use disorder (OUD) via telehealth modalities and “take-home” doses....more

Foley & Lardner LLP

NIST Publishes Final “Cybersecurity Resource Guide” on Implementing the HIPAA Security Rule

Foley & Lardner LLP on

In an important development for HIPAA-regulated entities looking for practical assistance in understanding, implementing, and enhancing compliance with the HIPAA Security Rule, the National Institute of Standards and...more

DirectEmployers Association

OFCCP Week In Review: November 2023 #4

Tuesday, November 21, 2023: US DOL Inspector General’s Office Announced Report Citing IT Modernization & Security Concerns - The U.S. Department of Labor’s (“DOL”) Office of Inspector General (“OIG”) announced on X/Twitter...more

Troutman Pepper

FTC Amends Safeguards Rule to Require Reporting of Data Breaches

Troutman Pepper on

On October 27, the Federal Trade Commission (FTC) announced a final rule amending the Standards for Safeguarding Customer Information (Safeguards Rule) under the Gramm-Leach-Bliley Act. The Safeguards Rule requires nonbanking...more

Sheppard Mullin Richter & Hampton LLP

SEC Gives Finality on Cybersecurity Disclosures for Public Companies

The SEC has now finalized its much anticipated rules for public companies’ cybersecurity disclosures. The final rules, published this month, require disclosure of certain cybersecurity incidents much sooner than under many...more

Bass, Berry & Sims PLC

DHS Publishes Long-Awaited Final Rule on Controlled Unclassified Information

Bass, Berry & Sims PLC on

On June 21, the Department of Homeland Security (DHS) published a final rule to implement security measures that safeguard controlled unclassified information (CUI) from unauthorized access and disclosure and improve incident...more

Health Care Compliance Association (HCCA)

Report on Patient Privacy Volume 23, Number 2. ONC’s Tripathi: HIPAA Doesn’t Impede Sharing, Requirements Under Info Blocking...

Report on Patient Privacy Volume 23, no 2 (February 2023) When Micky Tripathi’s mom was recently transferred to a rehab facility to recover from a broken hip, the hospital, “right in front of me…printed off her record,...more

McDermott Will & Emery

FTC Seeks Public Comments Following Introduction of Federal Privacy Bill

McDermott Will & Emery on

Data privacy and security are again taking center stage in Washington, DC. On the heels of Congress’s introduction of the American Data Privacy and Protection Act (ADPPA), the Federal Trade Commission (FTC) announced on...more

Sheppard Mullin Richter & Hampton LLP

Beginning in May 2022 Banks Will Have 36 Hours to Disclose Certain Types of Cyber Incidents

Federal banking regulators issued a final rule that impacts how banks and other regulated entities report certain data incidents. Those subject to these new reporting requirements include U.S. banks and bank service...more

Sheppard Mullin Richter & Hampton LLP

Federal Bank Regulators Approve New Cybersecurity Incident Notification Rule

Last month, the FDIC, Federal Reserve Board, and the OCC announced a final rule to improve information sharing about cyber incidents that may affect the U.S. banking system.  Among other things, the final rule requires...more

Goodwin

Agencies Approve Final Rule: Computer-Security Incident Notification

Goodwin on

In This Issue. The Office of the Comptroller of the Currency (OCC), the Federal Deposit Insurance Corporation (FDIC) and the Board of Governors of the Federal Reserve System (together, the Agencies) issued a final rule...more

Morgan Lewis - All Things FinReg

Federal Banking Agencies Adopt New Computer-Security Incident Notification Requirements

The three federal banking agencies (i.e., the Federal Reserve Board, the Federal Deposit Insurance Corporation, and the Office of the Comptroller of the Currency—collectively, the Agencies) published a final rule (the Rule)...more

Sheppard Mullin Richter & Hampton LLP

Non-Banking Institutions Will Want to Review Security Measures in Light of Update to Safeguards Rule

The FTC recently announced a final rule updating its GLBA Safeguards Rule to “strengthen the data security safeguards” of consumer financial information. The FTC reported that it was making these changes in response to...more

Health Care Compliance Association (HCCA)

[Event] Indianapolis Regional Healthcare Compliance Conference - September 24th, Indianapolis, IN

Our one-day Regional Compliance Conferences provide attendees with a forum to interact with local compliance professionals, share information about your compliance successes and challenges, and create educational...more

Bradley Arant Boult Cummings LLP

Critical Changes for U.S. Cleared Facilities

Two significant changes are underway by the Defense Counterintelligence and Security Agency (DCSA) – both of which require the immediate attention of businesses that hold a U.S. security clearance or are in the process of...more

Health Care Compliance Association (HCCA)

Report on Patient Privacy Volume 20, Number 11. Privacy Briefs: November 2020

Report on Patient Privacy 20, no. 11 (November 2020) - HHS Office of the National Coordinator (ONC) for Health Information Technology (ONC) is giving health care organizations more time to meet new rules on information...more

Shook, Hardy & Bacon L.L.P.

Privacy and Data Security Alert | ONC and CMS Final Rules

Aimed at enabling greater patient access and mandating interoperability, recent Final Rules from the Office of the National Coordinator for Health IT (“ONC”) and the Centers for Medicare and Medicaid Services (“CMS”) have put...more

Health Care Compliance Association (HCCA)

[Virtual Event] 2020 Virtual Regional Healthcare Compliance Conference - Denver, CO - October 16th, 8:25 am - 5:00 pm MDT

Our Virtual Regional Healthcare Compliance Conferences provide updates on the latest news in regulatory requirement, compliance enforcement, and strategies to develop effective compliance programs. Watch, listen, and ask...more

Holland & Knight LLP

Final Rule Revises National Industrial Security Program

Holland & Knight LLP on

• The Information Security Oversight Office (ISOO) has issued a Final Rule to its 32 C.F.R. Part 2004 National Industrial Security Program (NISP) Directive, which is the overarching policy for federal agencies involved in...more

Bass, Berry & Sims PLC

HHS Modifies Drug and Alcohol Abuse Confidentiality Regulations, Proposes Additional Revisions

Bass, Berry & Sims PLC on

On January 18, 2017, the U.S. Department of Health and Human Services, Substance Abuse and Mental Health Services Administration (SAMHSA) released a final rule (the Final Rule) modifying the federal regulations governing the...more

WilmerHale

Department of Defense Issues Final Version of Key Cybersecurity Rule

WilmerHale on

On October 21, 2016, the Department of Defense (DoD) issued its final rule on Network Penetration Reporting and Contracting for Cloud Services, amending an interim version issued on August 26, 2015, and revised on December...more

Kilpatrick

Department of Defense (DoD) Issues Final Rule on Safeguarding Covered Defense Information and Related Information Security...

Kilpatrick on

On October 21, 2016, the Department of Defense (“DoD”) issued a final rule (the “final rule”) codifying the specific actions DoD contractors and subcontractors must take to adequately safeguard “covered defense information”...more

31 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide