Healthcare Cybersecurity Regulations: What HIPAA Actually Requires
Healthcare cybersecurity regulations means the set of federal and voluntary requirements that govern how covered entities and their business associates protect electronic protected health information (ePHI). Two regulations are mandatory with direct penalty exposure: the HIPAA Security Rule (45 CFR Part 164) and the HITECH Act. The remaining frameworks, including NIST CSF 2.0 and HITRUST CSF, are … Read more