Proposed Rules by CISA Aim to Strengthen Cybersecurity in Healthcare
The recent cyberattack on Change Healthcare has highlighted the urgent need for better digital security in the U.S. healthcare system. The proposed rules by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) aim to address these vulnerabilities. These rules, which are not yet in effect, require organizations to report cyber incidents and preserve related data and records. They define "covered entities" based on size and sector-specific criteria, with healthcare entities needing to meet certain criteria to qualify.