Latest Publications

Share:

New OFAC Advisory Offers Steps to Reduce Sanctions Risks for Entities Facilitating Ransomware Payments

Companies that make ransomware payments, whether they be the victim of a ransomware attack or entities that facilitate such payments, should review the updated advisory issued by U.S. Department of the Treasury's Office of...more

FTC Warns Health App Vendors: Comply with the Health Breach Notification Rule or Pay the Penalty!

Vendors of health applications (“health apps”) and connected devices that collect or use individuals’ health information, along with their service providers, are now on notice that they must provide timely notice to consumers...more

Medicare & Medicaid Facilities Are Put On Notice: Employees Must Be Vaccinated

Medicare and Medicaid certified facilities will be required to ensure that their employees are vaccinated for COVID-19, the Centers for Medicare & Medicaid Services (CMS) announced on September 9, 2021. ...more

Broad Vaccine Mandates Ahead

Private employers with 100 or more employees will be required to ensure their employees are either “fully vaccinated” or provide proof of a negative COVID-19 test at least once a week, under President Biden’s new six-prong...more

State Privacy Law Patchwork Expands as Colorado Passes Comprehensive Privacy Law

Colorado just became the third state to pass a comprehensive data privacy law, creating more challenges for businesses trying to navigate a variety of state, federal, and international privacy regimes. The Colorado Privacy...more

OIG Weighs In On COVID-19 Vaccination Incentives

The media has widely reported that several governmental, non-profit, and private organizations, including entities in the healthcare sector, are offering a variety of incentives to encourage more individuals to take the...more

ERISA Plan Sponsors – Watch Your Participants’ Data! DOL Issues New Cybersecurity Guidance for Retirement Plans

In response to a recent General Accounting Office (GAO) report recommending federal guidance to mitigate cybersecurity risks in retirement plans and to respond to ever-increasing cyber threats to plan participant data and...more

The New NYDFS Cyber Insurance Risk Framework – Required Reading for Insurers and Insureds

The New York Department of Financial Services ("NYDFS") recently released its Cyber Insurance Risk Framework (the “Framework”), which provides best practices for managing cyber insurance risk....more

Ransomware Targeting Hospitals and Healthcare Providers

While fighting a surge of new coronavirus infections in many parts of the country, healthcare providers must also be prepared to defend against ransomware. On October 28, 2020, the FBI, the U.S. Department of Health and Human...more

Schrems II and EU-U.S. Personal Information Transfers: Where Are We, and What’s Next?

The Court of Justice of the European Union (CJEU) recently issued a decision with global implications for data transfers from the EU in a case referred to the CJEU from the Irish Data Protection Commissioner, colloquially...more

CARES Act Provider Relief Funds – The Requirements Are Taxing

The Internal Revenue Service (“IRS”) recently clarified that CARES Act Provider Relief Funds (“Relief Funds”) are considered taxable income for for-profit providers, including physician practices. This news comes as a...more

New FBI Alert to Healthcare Providers – Beware of COVID-19 Phishing Campaigns

Healthcare providers are under siege, not only from the COVID-19 pandemic, but also from cyber criminals.  Following reports of targeted email phishing attempts, the FBI issued a FLASH alert warning healthcare providers on...more

Buyer Beware – FBI Warns of Fraud Involving Procurement of PPE and Other COVID-19 Supplies

Many employers are now making plans to have their employees return to the workplace. Based on recent alerts from the FBI, part of preparing to protect workers from COVID-19 at work should include protecting the company from...more

Accepting CARES Act Relief Funds for Health Care Providers? Tell Your Compliance Department

While the CARES Act signals relief for many healthcare providers, it is important to remember that there are strings attached and reasons for providers to involve their compliance departments in the use and tracking of the...more

COVID-19 Inquiries and Disclosures in the Workplace

Once an employee has been exposed to a suspected or confirmed case of COVID-19, what do you do? Once an employee has tested positive, what do you say?...more

California AG Releases Long-Awaited Proposed Regulations Under The CCPA

Since the California Consumer Privacy Act (CCPA) was enacted in June 2018, businesses have been waiting for the proposed regulations to provide guidance and potential clarifications. On October 10, 2019, California Attorney...more

Healthcare Providers Must Remember HIPAA Before Responding to Online Reviews

The latest HIPAA resolution agreement by the U.S. Department of Health and Human Services Office for Civil Rights (OCR) is a reminder that healthcare providers must take the high road when responding to unflattering online...more

On-Line Resources Help Nonprofit Organizations Prepare for Cybersecurity Threats

The effects of a data breach can be disastrous for any company, but especially for a nonprofit organization, not only because of the harm to the affected individuals, including those served by the organization, but also the...more

Online Resources Help Nonprofit Organizations Prepare For Cybersecurity Threats

Nonprofit organizations often collect personal information from a variety of sources such as donors, employees, volunteers, and the people who benefit from their services. This information is diverse and might include credit...more

GDPR: What You Need to Know Now

It is safe to say that there has been much fear and confusion over the European Union (EU) General Data Protection Rule, or GDPR. ...more

Compliance With HIPAA—Help For Small And Mid-Sized Providers

Based on the results of the Office for Civil Rights (OCR) Health Insurance Portability and Accountability Act of 1996 (HIPAA) Phase 2 desk audits for covered entities, small and mid-sized providers (Smaller Providers) are on...more

Global Ransomware Attack Makes Healthcare Organizations Wanna Cry

As has been widely reported, on May 12, 2017, organizations around the world, including Britain’s National Health Service, found their data held hostage by actors using a new variant of ransomware called WannaCry. According...more

April Showers Bring More HIPAA Settlements

April proved to be a busy month for the U.S. Department of Health and Human Services Office for Civil Rights (OCR) under its newly appointed director, Roger Severino. OCR announced three settlements of potential HIPAA...more

Lack of Timely Action and Knowledge of Risk Results in $3.2 Million Civil Monetary Penalty for HIPAA Violations

Children’s Medical Center of Dallas (Children’s) was hit with a $3.2 million civil penalty from the U.S. Department of Health and Human Services, Office for Civil Rights (OCR) for failing to take steps to properly protect...more

86 Results
 / 
View per page
Page: of 4

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide