Health Data: Privacy, Patient Access, Interoperability, and Information Blocking
Overview
Health data is at the core of health care delivery and payment, is key for leveraging innovative digital health technology, and is needed for research to advance health care improvements. Federal and state data laws and policies historically have addressed health data privacy, including the Health Insurance Portability and Accountability Act of 1996 (HIPAA) regulations. While these rules continue to be important, there are new laws and policies that have attempted to balance patient privacy with access to data for important purposes, including patient access to data.
Insights
Client Alert | 11 min read | 01.10.25
On January 6, 2025, the Department of Health and Human Services’ Office for Civil Rights (“OCR”) published a notice of proposed rulemaking (the “NPRM”) entitled HIPAA Security Rule To Strengthen the Cybersecurity of Electronic Protected Health Information. In light of evolving technologies and cybersecurity threats, the NPRM aims to modernize security regulations implementing the Health Insurance Portability and Accountability Act security standards (the “HIPAA Security Rule”) and strengthen protections for the confidentiality, integrity, and availability of electronic protected health information (“ePHI”). In particular, OCR is considering modifications to the HIPAA Security Rule to address:
Client Alert | 8 min read | 12.20.24
Client Alert | 6 min read | 08.29.24
HHS Proposes Using Procurement Policy to Push Health IT Standards
Firm News | 9 min read | 06.06.24
Insights
Health Care Privacy: Closing the Gaps in HIPAA Regulation
|05.14.24
Privacy and Cybersecurity Outlook: The 2024 Landscape
- |
12.21.22
Crowell & Moring’s Health Law Blog
Insights
Client Alert | 11 min read | 01.10.25
On January 6, 2025, the Department of Health and Human Services’ Office for Civil Rights (“OCR”) published a notice of proposed rulemaking (the “NPRM”) entitled HIPAA Security Rule To Strengthen the Cybersecurity of Electronic Protected Health Information. In light of evolving technologies and cybersecurity threats, the NPRM aims to modernize security regulations implementing the Health Insurance Portability and Accountability Act security standards (the “HIPAA Security Rule”) and strengthen protections for the confidentiality, integrity, and availability of electronic protected health information (“ePHI”). In particular, OCR is considering modifications to the HIPAA Security Rule to address:
Client Alert | 8 min read | 12.20.24
Client Alert | 6 min read | 08.29.24
HHS Proposes Using Procurement Policy to Push Health IT Standards
Firm News | 9 min read | 06.06.24