This #WeekendReading: U.S. District Court has formally put an end to the Biden-era Retirement Security Rule (aka "Fiduciary Rule 2.0") after the Trump administration's Department of Labor elected not to defend the rule against lawsuits led by groups representing product distribution industry. kitc.es/41o4XaR
The end of the Retirement Security Rule represents a win for these groups and echoes their previous win in 2018 when the Obama administration's original fiduciary rule was struck down in court. Which raises the question of whether the DoL and fiduciary advocates might rethink their efforts to apply a uniform fiduciary standard to advisors and salespeople, and instead consider an alternative approach that focuses on separating advisors and salespeople by simply limiting the ability of salespeople to hold themselves out as advisors and ensuring that people who say they are advisors really are, so consumers are clear about the distinction between the two and can make their own decisions? #fiduciaryrule#securityrule#advicers
Did you know? There are 2 parts to #HIPAA: The #PrivacyRule, which tends to be more focused on the non-electronic aspects of an individual’s protected health information, and the #SecurityRule, which focuses on the electronic management of that individual’s information.
.@NIST is updating its Resource Guide for Implementing the HIPAA Security Rule! content.govdelivery.com/acco…
You're invited to submit comments until 6/15 - Email sp800-66-comments@nist.gov w/ Resource Guide for Implementing the HIPAA Security Rule Call for Comments in subject field.
Just announced by the OCR /HHS, this takes phishing to a whole new level.
" individual posing as an OCR Investigator has contacted HIPAA covered entities in an attempt to obtain protected health information (PHI)"
#cybersecurity#securityrule#HIPAA#OCR#Phishing#healthcare
Who does the #SecurityRule apply to?
What information is protected?
Does your entity need to be compliant with its requirements?
Find the answers to these questions and more in this summary collecting the key elements of the Privacy and Security Rules.
ow.ly/5tPH50vJqpg
The top area of HIPAA non-compliance is not conducting a risk analysis.
The best way to protect your data is by conducting a risk analysis (SRA).
Why the disconnect?
#HIPAA#SecurityRule#SRA#SecurityAudit#CyberSafeKY
The Security Rule requires an annual risk analysis to assess the potential risks and vulnerabilities associated with the confidentiality, integrity and availability of the data. 45 C.F.R. § 164.308(a)(1)(ii)(A) #HIPAA#SecurityRule