The AHA today urged the Department of Health and Human Services’ Office for Civil Rights to quickly initiate rulemaking for a legislative provision (H.R. 7898) enacted by Congress this year to recognize certain recommended security practices when making determinations related to Health Insurance Portability and Accountability Act audits, fines and resolution agreements.

“The law appropriately recognizes that covered entities and business associates, like all entities including the Federal Government, can never fully eliminate the risk of cyberattacks,” AHA wrote. “When the inevitable attack occurs, entities should not be penalized, but rather treated as the victims of a crime. The law translates this concept by allowing certain measures of regulatory relief if the HIPAA-covered entity or business-associate victim had in place federally recognized security practices, such as those defined under the National Institute of Standards and Technology (NIST) Cybersecurity Framework and developed under Section 405(d) of the Cybersecurity Act of 2015.”
 

Headline
The AHA submitted a statement for the record to the House Ways and Means Committee for its April 28 hearing with health system CEOs.In the statement, the AHA…
Chairperson's File
Public
We’re at a watershed moment in health care, which gives us opportunities to strengthen how we serve patients and communities. Health care leaders must help…
Headline
A joint advisory released April 23 from U.S. and international cybersecurity agencies, including the Cybersecurity and Infrastructure Security Agency, FBI,…
Perspective
Public
This week, more than 1,000 hospital and health system leaders came to Washington, D.C., united by a shared responsibility: to ensure every community has access…
Headline
The Centers for Medicare & Medicaid Services and the Food and Drug Administration April 23 announced a new pathway to expedite access to certain FDA-…
Headline
The Senate April 23 adopted a budget resolution by a 50-48 vote, paving the way for a narrow reconciliation bill focused on immigration enforcement funding.…