• Our Partners
  • CarePolicy
  • HomeCareConsulting
  • Digit9X
  • Home
  • Assisted Living
  • Elderly
  • Home Care Agency
  • Home Care Worker
  • Home Nursing
Menu
  • Home
  • Assisted Living
  • Elderly
  • Home Care Agency
  • Home Care Worker
  • Home Nursing
Home » HHS proposes HIPAA updates to strengthen healthcare cybersecurity
Elderly

HHS proposes HIPAA updates to strengthen healthcare cybersecurity

adminBy adminJanuary 3, 2025No Comments4 Mins Read
Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


listen to article
4 minutes

This voice is automatically generated. Please let us know if you have any feedback.

Diving overview:

Regulators announced late last month that HHS wants to update the HIPAA security rules for the first time in more than a decade to strengthen healthcare cybersecurity. The Office of Civil Rights, which enforces HIPAA, has proposed changes to the regulations aimed at providing clarity and more specific guidance on the protection of electronic health data. This update also requires organizations and their business partners to keep written security policies and regularly review, test, and update them. The proposal comes as the healthcare sector weathers a growing wave of cyber-attacks and data breaches. From 2018 to 2023, OCR tracked a more than 100% increase in large-scale breaches, while the number of people affected by healthcare data breaches jumped more than 1000%.

Dive Insight:

Cybersecurity has become a critical component of health care delivery, and nearly every component of the system, from scheduling appointments to ordering prescriptions, relies on connected technology, regulators wrote in the proposed rule.

However, as the industry rapidly introduces new devices and tools, organizations become more vulnerable to cyberattacks, making the industry an attractive target for cybercriminals.

Since 2019, there has been an explosion in large-scale data breaches due to hacking and ransomware (a type of malware that denies users access to their data until a ransom is paid), according to OCR.

“Cyberattacks continue to impact the healthcare sector, with the number of large-scale breaches reported to OCR increasing significantly each year due to the prevalence of ransomware and hacking,” OCR Director Melanie Fontes Reiner said in a statement. ” “The number of people affected grows exponentially every year, and that number is expected to increase even further this year due to the Change Healthcare breach, the largest healthcare system breach in U.S. history.”

Many healthcare organizations are not investing adequately in cybersecurity, and some HIPAA-covered organizations are not consistently complying with the security rule's requirements, regulators wrote in the rule.

The proposed changes aim to clarify HIPAA requirements and add details to reduce the tide of cyberattacks and breaches.

The proposal would require healthcare organizations to create technology asset inventories and network maps detailing the movement of protected health data within their systems. Organizations should revise their inventories and maps at least once a year or when the company's environment or operations change.

Additionally, this update mandates a more specific risk analysis, including technology inventory and network maps, and a written review of potential threats and vulnerabilities.

The proposal would require covered entities and their businesses to implement multi-factor authentication, a common cybersecurity safeguard that requires users to provide multiple forms of identification in order to gain access, with some exceptions. It is also planned to make it compulsory to use it with the exception of . This requirement was introduced months after the massive Change cyberattack, in which hackers were able to access company systems using compromised credentials when MFA was not enabled.

Organizations should scan their systems for vulnerabilities at least every six months and conduct annual penetration tests, which are simulated cyberattacks used to assess security.

The proposal comes as regulators have expressed interest in strengthening cybersecurity in the healthcare sector. In late 2023, HHS released a cybersecurity strategy that includes plans for HIPAA updates and requirements for hospitals through Medicare and Medicaid.

The agency also announced voluntary cybersecurity goals for the industry early last year.

In preparation for the rise in attacks, some lawmakers are also considering toughening cyber standards. This fall, Sen. Ron Wyden, D-Ore., and Sen. Mark Warner, D-Virginia, will introduce legislation directing HHS to develop minimum requirements in this area and provide funding to help hospitals strengthen their practices. submitted.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

2025 Trends, Challenges, Opportunities

May 8, 2025

12 Top Ways Artificial Intelligence Will Impact Healthcare

May 8, 2025

Artyc PBC introduces Medstow 5L to promote a new era of healthcare logistics

May 8, 2025
Leave A Reply Cancel Reply

Top Posts

Sanford brings country voices to Becker's annual meeting

May 6, 2025

How To Unlock A Windows PC Without The Password?

January 14, 2021
7.2

Best Chanel Perfume of 2024 – Top Chanel Fragrance Worth Buying

January 15, 2021

Is It Safe to Use an Old or Used Phone? Report Card

January 14, 2021
Don't Miss

VE Day: new nurse training unveiled to boost care for veterans

By adminMay 8, 2025

Nurses will be supported to better meet the healthcare needs of veterans, serving personnel and…

Irish nurses ‘stretched to breaking point’ due to staff shortages

May 8, 2025

Tributes to student nurse TikTok star killed in stabbing

May 8, 2025

Nurse exodus after Brexit led to 1,400 NHS deaths, study finds

May 8, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to HomeCareNews.us, your trusted source for comprehensive information on home healthcare services. Our mission is to empower individuals and families by providing accurate, up-to-date, and insightful information about essential home care services in USA.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Governor Brown signs laws requiring Indiana Hospitals to lower medical prices or confiscate nonprofit status

May 9, 2025

AMN Healthcare Announces First Quarter 2025 Results

May 8, 2025

American Healthcare REIT (“AHR”) Announces First Quarter 2025 Results; Increases Full Year 2025 Guidance

May 8, 2025
Most Popular

Sanford brings country voices to Becker's annual meeting

May 6, 2025

How To Unlock A Windows PC Without The Password?

January 14, 2021
7.2

Best Chanel Perfume of 2024 – Top Chanel Fragrance Worth Buying

January 15, 2021
  • Home
  • About Us
  • Advertise with Us
  • Contact us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 HomecareNews.US

Type above and press Enter to search. Press Esc to cancel.