Important new rule changes to the Health Insurance Portability and Accountability Act of 1996 now force law firms that come into contact with protected health information to revisit internal policies and practices, and enforce information security controls, protect confidential information, monitor workforce information access and track compliance.
Until now, the U.S. Department of Health and Human Services never made the move to audit or penalize law firms for lack of compliance with HIPAA data privacy and security rules, choosing instead to focus regulatory efforts on health care providers and related health care organizations. But the game is about to change. The HIPAA Omnibus Rule, which took effect on March 26, finalizes multiple revisions to previous HIPAA regulations. For the first time, business associates, such as law firms, are directly liable for multiple provisions of HIPAA rules.
This content has been archived. It is available through our partners, LexisNexis® and Bloomberg Law.
To view this content, please continue to their sites.
Not a Lexis Subscriber?
Subscribe Now
Not a Bloomberg Law Subscriber?
Subscribe Now
LexisNexis® and Bloomberg Law are third party online distributors of the broad collection of current and archived versions of ALM's legal news publications. LexisNexis® and Bloomberg Law customers are able to access and use ALM's content, including content from the National Law Journal, The American Lawyer, Legaltech News, The New York Law Journal, and Corporate Counsel, as well as other sources of legal information.
For questions call 1-877-256-2472 or contact us at [email protected]