• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Alston & Bird Privacy, Cyber & Data Strategy Blog

  • Home
  • Services
  • Events
  • Contacts

HIPAA

New Jersey Expands HIPAA-Based Exemptions Under Its Comprehensive Privacy Law

February 16, 2026 By Jennifer Everett, Dorian Simmons and Sara Pullen

On January 20, 2026, the New Jersey Governor signed Assembly Bill A5017 (“Amendment”), amending the New Jersey Data Protection Act (“NJDPA”). The Amendment exempts data that is not protected health information (“non-PHI”) from the NJDPA when it is handled by covered entities or business associates in accordance with the privacy and security requirements of the […]

Filed Under: Crisis & Data Breach Response, HIPAA/Health Information Privacy, Security & Breach Response Tagged With: Cybersecurity, Data Protection, Health Information Security, HIPAA, HITECH, Privacy, US State Law

HIPAA Security Rule: Still on Track for Finalization

November 3, 2025 By Jennifer Everett, Kate Hanniford, Angela Burnette and Jennifer Pike

Since the HHS Office for Civil Rights’ (OCR) publication of a proposed rule to overhaul the HIPAA Security Rule in January 2025, many in the health care and privacy community have wondered whether the rule would quietly fade away. Some even hoped it might be “dead in the water.” However, despite sharp criticisms and industry […]

Filed Under: HIPAA/Health Information Privacy, Security & Breach Response Tagged With: Health Information Security, HIPAA, Privacy

New Law Requires HHS to Consider Recognized Security Practices as Mitigating Factor When Determining Penalties

January 21, 2021 By Privacy, Cyber & Data Strategy Team

On January 5, 2021, the president signed into law H.R. 7898, an Act that amends the Health Information Technology for Economic and Clinical Health (HITECH) Act to require the Secretary of Health and Human Services (HHS) to consider specific recognized security practices of covered entities and business associates when making certain determinations regarding fines, penalties, […]

Filed Under: Board Governance & Cyber Risk Management, HIPAA/Health Information Privacy, Security & Breach Response, Privacy & Cyber Regulatory Enforcement Tagged With: HHS, HIPAA, HITECH, National Institute for Standards and Technology (NIST)

White Paper on Privacy Issues in Proposed New National Medical Claims Database

September 30, 2019 By Peter Swire

Prof. Peter Swire, Elizabeth and Thomas Holder Chair at the Georgia Tech Scheller College of Business and Senior Counsel at Alston & Bird, has published a new white paper on “Possible Privacy, Cybersecurity, and Data Breach issues in the Proposed National Medical Claims Database Under Section 303 of S. 1895.” Senators Lamar Alexander (R-TN) and Patty Murray […]

Filed Under: HIPAA/Health Information Privacy, Security & Breach Response Tagged With: Health Information Security, HIPAA, Senate

Anthem Settles Data Breach Litigation for Record-Setting $115M

June 27, 2017 By Andrew Liebler

Health insurance giant Anthem, Inc. agreed to the largest data breach settlement to-date last week, ending multi-district consumer litigation over a 2015 data breach for $115 million.  The data breach, which resulted from a hacker-orchestrated cyberattack following the theft of an employee password, exposed personally identifiable information (“PII”) and protected health information (“PHI”) of nearly […]

Filed Under: Crisis & Data Breach Response, HIPAA/Health Information Privacy, Security & Breach Response, Privacy & Cybersecurity Litigation Tagged With: Class Action, Health Information Security, HIPAA

  • Page 1
  • Page 2
  • Page 3
  • Interim pages omitted …
  • Page 7
  • Go to Next Page »

Primary Sidebar

This blog is a service of Alston & Bird’s Privacy, Cyber & Data Strategy team and focuses on key data privacy and data security issues.


Receive email notifications when new posts are added.

Receive email notifications when new posts are added.


RANSOMWARE FUSION CENTER
Click here to request access

THE DIGITAL DOWNLOAD
Click here to see the editions

PRIVACY & CYBER EVENTS
Click here to see upcoming and past events

PRIVACY & CYBER MAILINGS
Click here to sign up


Secondary Sidebar

Categories

Recent Posts

  • The FTC’s COPPA Policy Statement to Incentivize Age Verification Through a More Flexible Enforcement Approach
  • NYDFS Revises Prescriptive FAQs on Multifactor Authentication
  • Threat Actors Exploit Google’s Gemini to Accelerate Cyberattacks
  • CISA Revives CIRCIA Rulemaking
  • Genetic Goldmine or Legal Landmine? Tempus AI Confronts GIPA Exposure
Copyright © 2026 · Alston & Bird · All Rights Reserved. Privacy.