News & Analysis as of

Department of Health and Human Services (HHS) Risk Management Health Care Providers

Sheppard Mullin Richter & Hampton LLP

Potential False Claims Act Liability for Providers of Gender-Affirming Care for Minors

On July 9, 2025, the U.S. Department of Justice (“DOJ”) announced it sent more than 20 subpoenas to physicians and clinics involved in providing gender-affirming care to minors, and that the subpoenas related to...more

Bradley Arant Boult Cummings LLP

AI Meets HIPAA Security: Understanding HHS’s Risk Strategies and Proposed Changes

In this final blog post in the Bradley series on the HIPAA Security Rule notice of proposed rulemaking (NPRM), we examine how the U.S. Department of Health and Human Services (HHS) Office for Civil Rights interprets the...more

Dentons

Ep. 51 – Building Effective Compliance Committee Agendas

Dentons on

Many healthcare organizations understand the importance of having a Compliance Committee but some struggle to use their committee effectively. The key to ensuring the Compliance Committee is effective is building smart...more

McDermott Will & Schulte

Human Trafficking Monitoring for Telehealth Providers

Telehealth providers are uniquely positioned to monitor for human trafficking when interacting with patients. Survivor records indicate that health services are among the most common points of access to help trafficked...more

Kerr Russell

The Difference Between ‘Non-Covered’ vs. ‘Disallowed’ Services

Kerr Russell on

Question: I have had several colleagues describe their experience with dental plan audits. All of them have had to pay something back. Sometimes they say this is due to a service being deemed a “noncovered service.” Other...more

Baker Donelson

OCR Issues "Dear Colleagues" Letter Regarding AI in Medicine

Baker Donelson on

On May 6, 2024, OCR published the final rule interpreting and implementing Section 1557 at 45 C.F.R. § 92 (the Final Rule). The Final Rule regulates the use of patient care decision support tools, including AI algorithms for...more

Whiteford

Client Alert: HIPAA Happenings: U.S. Department of Health and Human Services Proposes Updated HIPAA Cybersecurity Rules

Whiteford on

On January 6, 2025, the U.S. Department of Health and Human Services (“DHHS”) Office of Civil Rights (“OCR”) published a proposed rule entitled, “HIPAA Security Rule to Strengthen the Cybersecurity of Electronic Health...more

Fisher Phillips

Proposed Updates to HIPAA Security Rule Would Require Entities to Adopt Enhanced Cybersecurity Measures

Fisher Phillips on

The HIPAA Security Rule may soon undergo a big overhaul that would better defend healthcare data from cybersecurity threats – and require much more from covered entities when it comes to establishing and maintaining defenses....more

McCarter & English, LLP

Proposed HIPAA Security Rule Amendments: Not Too Soon to Take Stock

On January 6, 2025 the U.S. Department of Health and Human Services published a Proposed Rule (90 FR 898) to strengthen the HIPAA Security Rule and afford greater cybersecurity protections for electronic protected health...more

Clark Hill PLC

HHS OCR Proposes Updates to the HIPAA Security Rule to Respond to Emerging Threats

Clark Hill PLC on

On Dec. 27, the Department of Health and Human Services (HHS) issued proposed updates to the HIPAA Security Rule to address evolving cybersecurity threats in healthcare. Introduced through a Notice of Proposed Rulemaking...more

Jackson Lewis P.C.

OCR Proposed Tighter Security Rules for HIPAA Regulated Entities, including Business Associates and Group Health Plans

Jackson Lewis P.C. on

As the healthcare sector continues to be a top target for cyber criminals, the Office for Civil Rights (OCR) issued proposed updates to the HIPAA Security Rule (scheduled to be published in the Federal Register January 6). It...more

Brownstein Hyatt Farber Schreck

Bipartisan AI Task Force Report Sets the Stage for Health Care AI Action in 2025

The House Task Force on Artificial Intelligence (AI) released a comprehensive 253-page report providing a roadmap for Congress as it develops policies to regulate and optimize the use of this rapidly advancing technology. The...more

Polsinelli

The OIG’s Concerns with Potentially Fraudulent Medicare Advantage Marketing

Polsinelli on

The HHS Office of Inspector General (“OIG”) released a Special Fraud Alert to inform health care professionals (“providers”) and Medicare Advantage Organizations (“MAOs”) about the OIG’s view of potentially abusive marketing...more

Jackson Lewis P.C.

Florida Healthcare Provider Faces $1.19M HIPAA Penalty Following Independent Contractor Breach

Jackson Lewis P.C. on

A healthcare provider delivering pain management services in Florida and other states faces a $1.19 million civil monetary penalty from the U.S. Department of Health and Human Services (HHS), Office for Civil Rights (OCR)....more

Rivkin Radler LLP

Million Dollar Penalty Imposed on Pain Management Practice Following HIPAA Breach

Rivkin Radler LLP on

The U.S. Department of Health and Human Services’ Office for Civil Rights (OCR) announced on December 3 that it imposed a $1.19 million penalty on Gulf Coast Pain Consultants, a pain management practice in Florida, following...more

Lathrop GPM

OIG Issues New Nursing Facility Compliance Guidance, Comes on the Heels of Enhanced Medicare Enrollment Requirements for SNFs

Lathrop GPM on

The Office of Inspector General at the U.S. Department of Health and Human Services (OIG) recently followed up on a 2023 commitment to supplement its General Compliance Program Guidance (GCPG) by publishing its first...more

Alston & Bird

Coming This December: Will Health Care Entities Be Unwrapping New HIPAA Security Rules for the Holidays?

Alston & Bird on

Our Health Care and Privacy, Cyber & Data Strategy Groups cover an upcoming proposed rule from U.S. Health and Human Services (HHS) that would formalize cybersecurity requirements and allow the Office for Civil Rights (OCR)...more

Williams Mullen

Ransomware Hat Trick: OCR Scores Three Major Enforcement Actions in 2024

Williams Mullen on

Ransomware attacks are a growing threat in the health care sector due to the value of personal health information (PHI). In addition to being expensive, these attacks can cripple health care operations, delay patient care,...more

Health Care Compliance Association (HCCA)

HHS Abandons Appeal in Public Website Pixel Case, But CEs and BAs Should Expect Continued Scrutiny

The HHS Office for Civil Rights (OCR) has abandoned its appeal of a federal judge’s ruling overturning OCR’s guidance prohibiting covered entities (CEs) and business associates (BAs) from using the web-tracking technologies...more

Whiteford

New CMS EMTALA Portal Signals CMS Continued Focus on Enforcement Fight Against State Abortion Bans

Whiteford on

On May 21, the Centers for Medicare and Medicaid Services (CMS) announced a new option on CMS.gov to allow individuals to more easily file an Emergency Medical Treatment and Labor Act (EMTALA) complaint. Before launching the...more

Epiq

Healthcare Organizations Can Meet New HHS Cybersecurity Goals with the Help of Tabletop Exercises

Epiq on

In today’s digital age, securing sensitive healthcare data is paramount. With the rise in cyber threats targeting healthcare organizations, the Department of Health and Human Services (HHS) has taken proactive steps to...more

Health Care Compliance Association (HCCA)

Understanding the HHS OIG’s General Compliance Program Guidance

In late 2023, The Office of Inspector General (OIG) at the Department of Health and Human Services issued its new General Compliance Program Guidance. In this podcast, David Schumacher, Partner and Co-Chair of the Fraud &...more

Robinson+Cole Health Law Diagnosis

Forecasting the Integration of AI into Health Care Compliance Programs

Health care entities maintain compliance programs in order to comply with the myriad changing laws and regulations that apply to the health care industry. Although laws and regulations specific to the use of artificial...more

Arnall Golden Gregory LLP

Responding to a Third-Party Data Breach: Practical Legal and Compliance Steps

Cyberattacks and data incidents are rapidly increasing, and third-party services companies are a frequent source of exposure for healthcare providers. Healthcare is a prime target for cybercriminals, with ransomware and...more

Health Care Compliance Association (HCCA)

Privacy Briefs: March 2024

Research from Guidepoint Security found that 2023 saw an 80% increase in ransomware activity year-over-year, driven in part by multiple mass exploitation campaigns impacting hundreds of organizations. In total, the report...more

82 Results
 / 
View per page
Page: of 4

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide