The Department of Health and Human Services (HHS) released its AI Strategic Plan in January 2025, establishing a comprehensive approach to artificial intelligence. The Plan’s Overview states that it “provides a framework and roadmap to ensure that HHS fulfills its… Read More ›
healthcare cybersecurity
HHS Information Security Program Rated ‘Not Effective’ for FY 2024
The Department of Health and Human Services’ (HHS) information security program failed to meet federal effectiveness standards according to a November 14, 2024, audit report, signaling important cybersecurity lessons for healthcare entities and digital health companies. Specifically, the report stated… Read More ›
Cybersecurity and HIPAA: NIST’s 2024 Resource Guide for Regulated Entities
In February 2024, the final version of a resource guide concerning cybersecurity and the implementation of the HIPAA Security Rule was published by the National Institute of Standards and Technology (NIST) of the U.S. Department of Commerce. It provides… Read More ›
HHS releases Cybersecurity Performance Goals for the Healthcare and Public Health Sector
The U.S. Department of Health and Human Services (HHS) recently published Healthcare and Public Health Sector (HPH) Cybersecurity Performance Goals (CPGs) in a document entitled, “Strengthening the Cybersecurity of the Healthcare Sector and Keeping Patients Safe and Secure.” These voluntary… Read More ›
HHS seeks to increase Cybersecurity in the Health Care Sector
The U.S. Department of Health and Human Services (HHS) has been making efforts to increase cybersecurity in the health care sector and outlined its strategy in a concept paper released in December 2023. The paper stresses that both patient safety… Read More ›