HHS Proposes Update on Cybersecurity Standards for Patient Data

December 27, 2024, 10:21 PM UTC

The Department of Health and Human Services issued a proposal Friday aimed at improving safeguards on electronic patient health information.

The proposed rule (RIN 0945-AA22) from the HHS’ Office for Civil Rights advances new security standards for electronic health information under the Health Insurance Portability and Accountability Act of 1996 (HIPAA) and the Health Information Technology for Economic and Clinical Health Act of 2009.

The policy introduces stronger requirements for health plans, providers, and their data middlemen to safeguard electronic protected health information from cybersecurity threats.

“The increasing frequency and sophistication of cyberattacks in the health care sector ...

Learn more about Bloomberg Law or Log In to keep reading:

Learn About Bloomberg Law

AI-powered legal analytics, workflow tools and premium legal & business news.

Already a subscriber?

Log in to keep reading or access research tools.