Guidance from the Department of Health and Human Services on how to comply with HIPAA requirements on security and privacy of protected health information falls short of federal guidelines, leaving electronic health records and data vulnerable.

That’s the conclusion of a new Government Accountability Office report, which finds that HHS’s guidance does not address all of the elements provided in the Cybersecurity Framework developed by the National Institute of Standards and Technology.

Register or login for access to this item and much more

All Health Data Management content is archived after seven days.

Community members receive:
  • All recent and archived articles
  • Conference offers and updates
  • A full menu of enewsletter options
  • Web seminars, white papers, ebooks

Don't have an account? Register for Free Unlimited Access