News & Analysis as of

Patient Privacy Rights Data Protection Healthcare

McDermott Will & Emery

US healthcare offshoring: Navigating patient data privacy laws and regulations

Unlike other sectors, US healthcare businesses must reconcile cost-saving strategies with stringent compliance obligations, especially when patient data crosses national borders or is accessed overseas....more

Foley & Lardner LLP

AI Contracts in Health Care: Avoiding the Data Dumpster Fire

Foley & Lardner LLP on

For AI companies in the health care space, data is everything. It fuels model performance, drives product differentiation, and can make or break scalability. Yet too often, data rights are vaguely defined or completely...more

Alston & Bird

New York Passes Health Privacy Law – Your Questions Answered

Alston & Bird on

The New York State legislature passed the Health Information Privacy Act (“NYHIPA”) on January 22, 2025, marking the second state to introduce a comprehensive consumer health data law. If passed, the NYHIPA imposes more...more

Epstein Becker & Green

New York’s Health Information Privacy Act Poised to Become the Latest in a Growing Trend of State Data Privacy Laws

Epstein Becker & Green on

New York State appears poised to become the fourth state to explicitly regulate consumer health data not covered by the federal Health Insurance Portability and Accountability Act (HIPAA)....more

Constangy, Brooks, Smith & Prophete, LLP

New Year, New Rules? New York’s Health Privacy Bill S-929 advances

Just in time for setting a new year’s resolution, the New York Senate passed health privacy bill S-929. This bill was first introduced during the 2024 legislative session but failed to pass. Now in the early weeks of 2025,...more

Epstein Becker & Green

Proposed Modernization of the HIPAA Security Rules

Epstein Becker & Green on

The HIPAA Security Rule was originally promulgated over 20 years ago. While it historically provided an important regulatory floor for securing electronic protected health information, the Security Rule’s lack of...more

A&O Shearman

Council of the EU adopts the European Health Data Space Regulation

A&O Shearman on

On January 21 2025, the Council of the European Union (Council) announced its decision to adopt the Regulation of the European Parliament and of the Council on the European Health Data Space (EHDS). As we have previously...more

Clark Hill PLC

New York Senate Passes Landmark Health Privacy Bill S-929

Clark Hill PLC on

On Jan. 21, the New York Senate approved a groundbreaking health privacy bill, S-929. The legislation, modeled on Washington state’s My Health My Data Act, aims to extend protections over personal health information beyond...more

Vorys, Sater, Seymour and Pease LLP

Proposed Update to the HIPAA Security Rule

In early January, the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) published a Notice of Proposed Rulemaking. The Proposed Rule would modify the Security Standards for the Protection of...more

Carlton Fields

Cybersecurity May Be OCR’s New Year’s Resolution

Carlton Fields on

The U.S. Department of Health and Human Services Office for Civil Rights (OCR) appears to have made cybersecurity its New Year’s resolution. The first few weeks of 2025 have already brought with them proposed amendments to...more

Vorys, Sater, Seymour and Pease LLP

Action Required for HIPAA Covered Entities Regarding Reproductive Health Care Compliance

On April 22, 2024, the Department of Health and Human Services (HHS) Office of Civil Rights (OCR) issued a Final Rule titled HIPAA Privacy Rule to Support Reproductive Health Care Privacy (Final Rule)....more

Health Care Compliance Association (HCCA)

Privacy Briefs: October 2024

23andMe agreed to pay $30 million and provide three years of security monitoring to settle a lawsuit accusing the genetics testing company of failing to protect the privacy of 6.9 million customers whose personal information...more

Quarles & Brady LLP

Friendly Reminder - Finalize and Post Your Consumer Health Data Privacy Notice Before March 31

Quarles & Brady LLP on

Friendly reminder – the Washington My Health My Data Act (“WMHMDA”) compliance deadline for regulated entities to post their consumer health data privacy policy is March 31, 2024 (June 30, 2024 for small businesses). A...more

Stinson LLP

First of its Kind Privacy Law Signals Fundamental Shift in Protection of Consumer Health Data

Stinson LLP on

As more and more states consider consumer privacy laws, the first-of-its kind My Health My Data Act (the Act) could be a harbinger of health and wellness compliance requirements to come. The ramifications of Washington...more

Quarles & Brady LLP

Never Say Never Again: HHS Signals the Return of HIPAA Audit Program

Quarles & Brady LLP on

On February 12, 2024, the U.S. Department of Health and Human Services (“HHS”) published a notice in the Federal Register regarding reinstatement of the Health Information Portability and Accountability Act of 1996 (“HIPAA”)...more

Epstein Becker & Green

New York Aims to Bolster Hospital Cybersecurity with Imminent Release of Proposed Regulations

Epstein Becker & Green on

New York Governor, Kathy Hochul, recently announced proposed cybersecurity rules for New York hospitals, which are due to be imminently published in the State Register on December 6, 2023, subject to approval by the Public...more

Robinson+Cole Data Privacy + Security Insider

New York Governor Proposes Cybersecurity Regulations for NY Hospitals

On November 13, 2023, Governor Kathy Hochul released proposed cybersecurity regulations applicable to all hospitals located within the state of New York. The Governor has included $500 million in grant funding in her FY24...more

Epstein Becker & Green

Dr. Jack of All Trades? OCR’s New Telehealth Guidance Suggests High Expectations on Providers

Epstein Becker & Green on

On October 18, 2023, the U.S. Department of Health and Human Services (“HHS”) Office for Civil Rights (“OCR”), which is tasked with enforcing the Health Insurance Portability and Accountability Act (“HIPAA”), issued two new...more

Hogan Lovells

U.S. Senator requests information on ways to improve privacy protections of health data

Hogan Lovells on

Adding to the growing trend of policymakers interested in regulating health and wellness data, last week U.S. Senator Bill Cassidy requested stakeholder feedback to help identify solutions to modernize HIPAA and ensure all...more

Health Care Compliance Association (HCCA)

Privacy Briefs: September 2023

The number of data breaches affecting health care providers declined in the second half of 2022, consistent with a downward trend over the past two years, according to a report from cybersecurity firm Critical Insight. Total...more

Robinson+Cole Data Privacy + Security Insider

Joint Commission Issues Alert on Patient Safety After a Cyber-Attack

On August 15, 2023, the Joint Commission issued a Sentinel Event Alert entitled “Preserving patient safety after a cyberattack,” which provides “tips on what organizations can do to prepare to deliver safe patient care in the...more

Quarles & Brady LLP

Diving into the Washington My Health My Data Act Part Twelve : Washington Attorney General Guidance

Quarles & Brady LLP on

This is Part Twelve, the final installment of our series of legal updates on the Washington My Health My Data Act (“WMHMDA”). We are thrilled that you came along as we dove into the intricacies of WMHMDA that are creating...more

Quarles & Brady LLP

Diving into the Washington My Health My Data Act - Part Eleven: HIPAA vs. WMHMDA (for table lovers)

Quarles & Brady LLP on

This is Part Eleven in a series of legal updates on the Washington My Health My Data (“WMHMDA”), where Quarles continues its deep dive into the various factors and intricacies of WMHMDA that are creating waves in the privacy...more

Bradley Arant Boult Cummings LLP

The Imperative of Cyber Preparedness: The Power of Tabletop Exercises

In an age where digital connectivity is rapidly advancing, cybersecurity has become an inescapable concern for organizations across industries. With cyber threats ranging from data breaches to ransomware attacks, it is...more

Epstein Becker & Green

FTC Highlights Risks to Data in a Post-Dobbs World

Epstein Becker & Green on

The 21st Century digital age has provided women with numerous sexual and reproductive health tools that track periods, ovulation, and pregnancy. By simply plugging certain health data inputs into these apps, women can now...more

35 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide