Tuesday, February 23, 2010

High-Stakes for Law Firms Subject to HITECH Act / HIPAA Rules

As mentioned previously, the HITECH Act of 2009 has taken effect. These rules extend HIPAA confidentiality and information protection rules to entities including law firms. Provisions of the new law include notification and public disclosure.

Yeseterday, one of our readers noted that the Health and Human Services Office of Civil Rights just created a web page to list data breaches. Any organization subject to the regulation that loses or exposes records must notify affected parties and, if more than 500 individuals are affected, publicly disclose the breach.

No law firm wants to see its name on this list.

No comments:

Post a Comment