On January 5, 2020, HR 7898, became law amending the Health Information Technology for Economic and Clinical Health Act (HITECH Act), 42 U.S.C. 17931, to require that “recognized cybersecurity practices” be considered by the Secretary of Health and Human Services (HHS) in determining any Health Insurance Portability and Accountability Act (HIPAA) fines, audit results or mitigation remedies. The new law provides a strong incentive to covered entities and business associates to adopt “recognized cybersecurity practices” and risk reduction frameworks when complying ...
Recent Updates
- When AI Becomes Part of Medicine: Why CMS’s AI Questions Matter Now
- Watch: Gender-Affirming Care: What Health Care Providers Need to Know About Federal Enforcement – Thought Leaders in Health Law
- Executive Order 14321 at One Year: Civil Commitment Policy Shifts and Provider Impact
- Watch: FDA’s 2026 Enforcement Priorities: What In-House Counsel Must Know – Thought Leaders in Health Law
- The Future of 340B: New Bills Offer Competing Solutions to Modernize the 340B Drug Discount Program