HHS Proposes Strengthened HIPAA Security Rule
The White House has cleared the HIPAA Security Rule update proposed by the U.S. Department of Health and Human Services. A draft version of the Notice of Proposed Rulemaking (NMPR) was published on Friday and is due to be added to the Federal Register on January 6, 2025. The HHS is seeking comments on the proposed rule from HIPAA-regulated entities, healthcare industry stakeholders, and the public. The comment period will be open for 60 days following the date of publication of the NMPR in the Federal Register. This is the first major update to the HIPAA Security Rule in over a decade and follows the January 2023 publication of the HHS Healthcare and Public Health Sector Cybersecurity Performance Goals. The purpose of the voluntary goals is to encourage healthcare organizations to enhance cybersecurity but as the HHS explained in its December 2023 Healthcare Sector Cybersecurity concept paper, voluntary goals alone would be unlikely to be sufficient to drive the behavioral changes needed across the sector to enhance cybersecurity. The purpose of the original HIPAA Security Rule was...
Digital Marketing for Plastic Surgeons
The benefits of digital marketing for plastic surgeons – and how these are achieved – can vary depending on the “HIPAA status” of a plastic surgeon, their professional certification, the nature of their services, and state licensing laws. Due to these variables, it may be advisable for a plastic surgeon to subcontract their digital marketing activities to a digital marketing agency familiar with federal and state regulations. Digital marketing for plastic surgeons has the objective of increasing plastic surgeons’ online presence via a combination of digital resources to attract new customers, and – in the case of cosmetic surgery – to build relationships with existing customers in order to attract repeat business and referrals. However, while digital marketing can be a cost-effective way to increase profitability, federal and state regulations apply to how some digital resources can be used. What does Digital Marketing for Plastic Surgeons Consist Of? Digital marketing for plastic surgeons is a multi-layered approach to marketing that utilizes up to five digital resources....
HHS Urges Health Sector to Improve OT & IoMT Security
The Department of Health and Human Services (HHS) has urged healthcare organizations to take steps to safeguard operational technology (OT) and the Internet of Medical Things (IoMT). Vulnerabilities in OT and IoMT systems could potentially be exploited by malicious actors to access internal healthcare networks, steal data, and cause significant operational disruption. The Food and Drug Administration (FDA) has taken steps to improve medical device security by requiring vendors of medical devices to implement appropriate cybersecurity measures covering the entire lifecycle of their products. Vendors must provide documentation verifying that cybersecurity measures have been implemented in their pre-market submissions. Devices with insufficient cybersecurity will not be approved; however, these requirements only apply to new medical devices that are brought to market, not the large number of medical devices already in use. Devices may be used by healthcare organizations for patient care, product manufacturing, data collection, facility management, and other purposes. Medical devices...
Decrease in Workplace Fatalities Encouraging – More Must Be Done to Improve Workplace Safety
The U.S. Bureau of Labor Statistics has published a summary of the findings of the 2023 National Census of Fatal Occupational Injuries, which shows a 3.7% year-over-year percentage decrease in workplace fatalities. In 2023, there were 5,283 workplace fatalities which occurred at a rate of 3.5 per 100,000 full-time workers, down from 3.7 in 2022. There was one reported fatality every 99 minutes in the United States in 2023. Construction was the sector with the highest number of fatalities (1,075), as has been the case every year since 2011. Slips, trips, and falls were the most common cause of death in this sector (39.2%) followed by transportation incidents. Across all industry sectors, transportation incidents were the most frequent type of fatal event, accounting for 36.8% of all workplace fatalities in 2023. There were 740 fatalities due to violent acts, with homicides accounting for 61.9% of violent acts and 8.7% of all work-related fatalities. 162 workplace fatalities were due to opioid use. The majority of fatalities were men, with women accounting for 8.5% of all workplace...
American Addiction Centers Ransomware Attack Affects Almost 411,000 Patients
American Addiction Centers, Inc., a Brentwood, TN-based addiction rehabilitation center, has recently confirmed that 410,747 current and former patients have been affected by a cybersecurity incident and may have had their protected health information stolen. A copy of the individual notification letters was sent to the Maine Attorney General confirming that the compromised data included names, addresses, phone numbers, dates of birth, medical record numbers, other identifiers, Social Security numbers, and health insurance information. The unauthorized third party did not obtain any financial or treatment information. The stolen data related to patients of American Addiction Centers as well as its affiliated providers, AdCare (MA & RI), the Greenhouse (TX), Desert Hope Center (NV), Oxford Treatment Center (MS), Recovery First (FL), Sunrise House (NJ), River Oaks Treatment Center (FL), and Laguna Treatment Hospital (CA). The cyberattack was detected on or around September 26, 2024, and third-party cybersecurity experts were engaged to investigate the incident. American Addiction...



