Recent Guidance on Ransomware, HIPAA, and Cyber Incident Reporting
August 3, 2016
The Department of Health and Human Services (HHS) recently released guidance for health care entities to better understand and respond to the increased threats of ransomware. The guidance was published on July 11, 2016, and provides clarification regarding the interplay of ransomware and HIPAA, specifically that (1) a ransomware attack is a “security incident” under HIPAA, and (2) a…