• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Alston & Bird Privacy, Cyber & Data Strategy Blog

  • Home
  • Services
  • Events
  • Contacts

HIPAA/Health Information Privacy, Security & Breach Response

An English-Language Primer on Germany’s GDPR Implementation Statute: Part 1 of 5

September 19, 2017 By Daniel Felz

Over the past year, the German government has been working on legislation to implement the EU’s General Data Protection Regulation (GDPR).  On July 6, 2017, Germany did so by passing a statute titled the Data Protection Amendments and Implementation Act. The Act repeals Germany’s venerated Federal Data Protection Act (Bundesdatenschutzgesetz, or BDSG) and replaces it […]

Filed Under: Board Governance & Cyber Risk Management, European Privacy & Cybersecurity, HIPAA/Health Information Privacy, Security & Breach Response, Privacy & Cyber Regulatory Enforcement Tagged With: EU Data Protection, EU Regulation, European Union (EU), GDPR, GDPR Implementation

Anthem Settles Data Breach Litigation for Record-Setting $115M

June 27, 2017 By Andrew Liebler

Health insurance giant Anthem, Inc. agreed to the largest data breach settlement to-date last week, ending multi-district consumer litigation over a 2015 data breach for $115 million.  The data breach, which resulted from a hacker-orchestrated cyberattack following the theft of an employee password, exposed personally identifiable information (“PII”) and protected health information (“PHI”) of nearly […]

Filed Under: Crisis & Data Breach Response, HIPAA/Health Information Privacy, Security & Breach Response, Privacy & Cybersecurity Litigation Tagged With: Class Action, Health Information Security, HIPAA

Advocate Health Care Network Agrees to Pay $5.55 Million to Settle Potential HIPAA Penalties

August 5, 2016 By HIPAA Privacy & Security Team

On August 4, 2016, the Office of Civil Rights (“OCR”) announced that Advocate Health Care Network (“Advocate”), Illinois’ largest fully-integrated health care system, has agreed to pay a record-breaking $5.55 million to settle claims of multiple Health Insurance Portability and Accountability Act (“HIPAA”) violations involving electronic protected health information (“ePHI”).  The substantial settlement stems from […]

Filed Under: Crisis & Data Breach Response, HIPAA/Health Information Privacy, Security & Breach Response, Privacy & Cyber Regulatory Enforcement Tagged With: HIPAA

HHS/OCR Announces Launch of HIPAA Audit Program Phase 2

March 21, 2016 By Privacy, Cyber & Data Strategy Team

Today, the U.S. Department of Health & Human Services’s (HHS) Office for Civil Rights (OCR) announced the launch of Phase 2 of its HIPAA Compliance Audit Program. (OCR’s announcement can be accessed at Audit Phase 2 Announcement and further information about Phase 2 can be accessed at Audit Phase 2 Information.) In this phase, OCR will […]

Filed Under: Board Governance & Cyber Risk Management, Crisis & Data Breach Response, HIPAA/Health Information Privacy, Security & Breach Response, Privacy & Cyber Regulatory Enforcement Tagged With: Health Information Privacy, Health Information Security, HIPAA, HIPAA Audit Program, HIPAA Breach Notification Rule, HIPAA Privacy Rule, HIPAA Security Rule, HITECH

HHS Issues HIPAA Security Rule Crosswalk with NIST Cybersecurity Framework

February 29, 2016 By Privacy, Cyber & Data Strategy Team

Last week, the HHS Office for Civil Rights (OCR) released a crosswalk between the requirements of the HIPAA Security Rule and the NIST Cybersecurity Framework. The crosswalk – which was developed in conjunction with the National Institute of Standards and Technology (NIST) and the HHS Office of the National Coordinator for Health IT – maps each […]

Filed Under: Board Governance & Cyber Risk Management, HIPAA/Health Information Privacy, Security & Breach Response, Privacy & Cyber Regulatory Enforcement Tagged With: Health Information Security, HIPAA, HIPAA Security Rule, National Institute for Standards and Technology (NIST)

  • « Go to Previous Page
  • Page 1
  • Interim pages omitted …
  • Page 5
  • Page 6
  • Page 7
  • Page 8
  • Page 9
  • Interim pages omitted …
  • Page 13
  • Go to Next Page »

Primary Sidebar

This blog is a service of Alston & Bird’s Privacy, Cyber & Data Strategy team and focuses on key data privacy and data security issues.


Receive email notifications when new posts are added.

Receive email notifications when new posts are added.


RANSOMWARE FUSION CENTER
Click here to request access

THE DIGITAL DOWNLOAD
Click here to see the editions

PRIVACY & CYBER EVENTS
Click here to see upcoming and past events

PRIVACY & CYBER MAILINGS
Click here to sign up


Secondary Sidebar

Categories

Recent Posts

  • A New U.S. Cyber Strategy: President Trump’s Cyber Strategy for America
  • U.S. Senator Marsha Blackburn Proposes National AI Legislative Framework
  • EU Moves Toward a Single Entry Point for Security Incident Reporting
  • Ninth Circuit Partially Lifts Injunction Against California Age-Appropriate Design Code Act
  • CalPrivacy Seeks Input on Reducing Friction in Privacy Rights Experience and Challenges with Opt-Out Preference Signals
Copyright © 2026 · Alston & Bird · All Rights Reserved. Privacy.