This post is part of our series on key aspects of the final HITECH omnibus rule published by the U.S. Department of Health and Human Services (HHS) in the Federal Register on January 25, 2013. Previous posts are available here. The regulations are effective March 26, 2013, but covered entities and business associates have
January 2013
HITECH Update #9: Omnibus Rule Revises Individual Rights to Request Restrictions, Access to Protected Health Information
This post is part of our series on key aspects of the final HITECH omnibus rule published by the U.S. Department of Health and Human Services (HHS) in the Federal Register on January 25, 2013. Previous posts are available here. The regulations are effective March 26, 2013, but covered entities and business associates have…
New HIPAA / HITECH Rule Requires Health Plan Changes
The HIPAA / HITECH omnibus rule published in the Federal Register late last week includes a number of changes that will require action by employers, health plans, and business associates in the coming months. The new requirements take effect on March 26, although group health plans and business associates have until September 23, 2013, to…
FEC Increases Individual Contribution Limits for 2013-2014
The Federal Election Commission increased the limits on the amount an individual can contribute to a candidate or national political party, as well as the overall limit on the amount an individual can give to all federal candidates and federal political committees in a two-year election cycle.
An individual can now give up to $2,600…
HITECH Update #8: New Requirements for HIPAA Notices of Privacy Practices
This post is part of our series on key aspects of the final HITECH omnibus rule published by the U.S. Department of Health and Human Services (HHS) in the Federal Register on January 25, 2013. Previous posts are available here. The regulations are effective March 26, 2013, but covered entities and business associates have…
HITECH Update # 7: New HIPAA Requirements for Business Associates and Their Subcontractors
This post is part of our series on key aspects of the final HITECH omnibus rule published by the U.S. Department of Health and Human Services (HHS) in the Federal Register on January 25, 2013. Previous posts are available here. The regulations are effective March 26, 2013, but covered entities and business associates have…
FFIEC Proposes Social Media Guidance
On January 22, 2013, the Federal Financial Institutions Examination Council proposed guidance on the applicability of consumer protection and compliance laws, regulations, and policies to activities conducted via social media by depository institutions. The proposed guidance would not impose additional compliance obligations on institutions. Instead, the guidance is intended to help financial institutions understand potential…
Humana’s Quality Assurance Calls Not Exempted From CIPA
On Wednesday, a federal judge in the Central District of California dismissed Humana Pharmacy Inc.’s motion to dismiss a putative class action suit alleging the company illegally recorded telephone calls with customers, finding that the California Invasion of Privacy Act (“CIPA”) does not exempt quality assurance recordings. In its motion to dismiss, Humana argued that…
China Releases National Standard for Personal Information Collected Over Information Systems; Industry Self-Regulatory Organization Established
China’s Standardization Administration recently released a long-awaited national standard related to personal information. Entitled Information Security Technology — Guidelines for Personal Information Protection Within Public and Commercial Services Information Systems (信息安全技术公共及商用服务信息系统个人信息保护指南) (“Guidelines”), the new standard will take effect February 1, 2013. The Guidelines are voluntary and lack the force of law. They nevertheless clarify key…
ICO fines Sony £250,000 following the 2011 Playstation Network Platform data breach
On 24 January 2013, the UK Information Commissioner’s Office (ICO) announced that Sony Computer Entertainment Europe Limited (Sony) would be fined £250,000 following a data breach of the Playstation Network. The breach occurred in 2011 when hackers accessed the personal details of “millions” of Playstation Network customers, including names, dates of birth, passwords, and other…