DecisionHealth, DecisionHealth - 2025 Issue 1 (January)
New HIPAA rule makes the ‘addressable’ required, even before it’s finalized
A proposed rule from HHS would confirm that cybersecurity measures such as multi-factor authentication (MFA) and encryption of electronic protected health information (ePHI) are not optional safeguards, but something covered entities such as physician practices are required to implement to stay compliant with HIPAA. Because of the way the policies are directed, experts say you should work to meet the proposed rule’s requirements whether or not the rule is finalized.
To read the full article, sign in and subscribe to the DecisionHealth Newsletters.
Thank you for choosing Find-A-Code, please Sign In to remove ads.