What the HIPAA rulemaking notice means for you
Tech CISO Scott Mattila discusses proactive measures critical to reducing cyber risks and describes the steps hospitals and health systems can take to prepare now to comply with crucial mandates.
Over the past decade, cybersecurity breaches have skyrocketed, particularly in healthcare. The attack on Change Healthcare was a major wake-up call – prompting, among other reforms, the notice of proposed rulemaking from HHS in December 2024, designed to strengthen cybersecurity requirements.
This follows the HHS Cyber Performance Goals introduced in 2023, signaling a push for stricter security measures across the industry.
Despite the HITECH Act being signed more than 15 years ago, HIPAA hasn't kept pace with modern cyber threats, experts say. The NPRM aims to eliminate ambiguity in the original security rule and reinforce essential safeguards.
CLICK HERE TO READ THE COMPLETE IN-DEPTH STORY