To better protect the privacy of personal health information, the Department of Health and Human Services (HHS) and the Federal Trade Commission (FTC) have published new rules implementing the HITECH breach notification requirements. Healthcare providers and other covered entities regulated under HIPAA will be required to provide notice to individuals, HHS, and, potentially, the media when unsecured protected health information is breached. These new rules extend the notification requirements to business associates and vendors of electronic health records, while strengthening the requirements for covered entities. The notification requirements apply to any breach on or after September 23, 2009. For more information about these requirements, click here.
Continue reading "HHS and FTC Issue Final Breach Notification Rules" »