The guidance provides steps to ensure health information security and outlines notification requirements for compromised data.
Guidance from HHS on this subject was required by the American Recovery and Reinvestment Act and was built upon the requirements of the HIPAA Privacy and Security Rules, which remain unchanged.
Additionally, the Federal Trade Commission will publish regulations regarding patient notification of breached data that will apply to vendors of health records not covered by HIPPA.
Read the HHS release on new health information security guidance.
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.