Health Privacy and Security Download
Welcome to The Crowell Health Privacy and Security Download! Covering issues related to the privacy and security of health data, including legislation, regulations, cases, regulatory guidance, enforcement actions, and health data breaches, we are your destination for insights and commentary on important developments in the world of health privacy and security and what they mean for you and your organization.
Featured
On June 27, 2023, the Department of Health and Human Services (“HHS”) Office of Inspector General (“OIG”) issued a final rule (“OIG Final Rule”) that implements statutory provisions for its enforcement of the information blocking penalties created by the 21stCentury Cures Act (“Cures Act”) and…
Continue Reading HHS-OIG Releases Final Rule Implementing Information Blocking PenaltiesHealth Privacy and Security Editors


The Latest
On February 1, 2023, the Federal Trade Commission (“FTC”) announced an enforcement action (“Enforcement Action”) against California-based telehealth and prescription drug discount provider GoodRx Holdings, Inc. (“GoodRx”) for allegedly violating…
Continue Reading FTC Imposes $1.5 Million Civil Penalty in First-of-Its-Kind Health Breach Notification Rule Enforcement ActionOn November 9, the Department of Health and Human Services (HHS) issued a proposed rule to adopt updated versions of the retail pharmacy standards for electronic transactions adopted under the…
Continue Reading HHS Issues Proposed HIPAA Rule to Adopt Updated Version of Retail Pharmacy Standards for Electronic TransactionsThe Office for Civil Rights (OCR) at the Department of Health and Human Services (HHS) recently issued a bulletin to highlight the obligations of Health Insurance Portability and Accountability Act…
Continue Reading HHS OCR Issues a Bulletin on HIPAA Requirements for Tracking Health Information When Using Online TechnologiesEarlier this week, the United States Department of Health and Human Services (“HHS”) released a Notice of Proposed Rulemaking (“NPRM”) that proposes to make sweeping changes to regulations at 42…
Continue Reading HHS Proposes Significant Amendments to Part 2 Regulations Governing the Confidentiality of Substance Use Disorder RecordsThe Biden Administration is taking action to support access to reproductive health care in response to the Supreme Court’s decision in Dobbs v. Jackson Women’s Health Organization. This is…
Continue Reading Biden Acts to Protect Reproductive Health Care Services: Executive Order and Privacy GuidanceThe Russia-Ukraine conflict is increasing the risk of ransomware attacks and other cyber threats for U.S. companies, and those in the health care industry may be targeted. In a recent…
Continue Reading Increased Cyber Risk for Health Care Organizations Due to the Russia-Ukraine ConflictOn January 18, 2022, the U.S. Department of Health and Human Services (HHS) Office of the National Coordinator for Health Information Technology (ONC) and the entity chosen as a contracting…
Continue Reading ONC Releases a Framework for Nationwide Health Information ExchangeThis article was originally published in Corporate Compliance Insights.
Both your company’s data supply chain and its physical version have fundamentally similar business risks. Given the consequences of unethical…
Continue Reading Is Your Data Supply Chain Ethical? Don’t Restrict Due Diligence to Physical Operations.On May 14, 2021, CMS published FAQs addressing questions that have been raised regarding the Interoperability and Patient Access final rule published May 2020. CMS is careful to note that…
Continue Reading CMS Issues First FAQs on the CMS Interoperability and Patient Access RuleEarlier this month, OIG issued a Special Fraud Alert on Speaker Programs warning drug and device companies and health care providers that it has significant concerns about payments for “speaker…
Continue Reading OIG Sends a Special Fraud Alert on Speaker ProgramsOn October 29, 2020, the Departments of Health and Human Services, Labor, and the Treasury (“the Departments”) issued a final rule requiring private-sector health insurers and self-insured health plans to…
Continue Reading HHS Finalizes Health Plan Price Transparency RuleLast week, the Office of the National Coordinator for Health Information Technology (ONC) published an Interim Final Rule: Information Blocking and the ONC Health IT Certification Program: Extension of Compliance …
Continue Reading ONC Issues Interim Final Rule Extending Compliance Dates for the Information Blocking and the ONC Health IT Certification Program