Skip to main content

Privacy & Cybersecurity

Viewpoints

Filter by:

Business Associates Beware

February 11, 2013 | Blog | By Cynthia Larose

If you haven't yet caught up with the new HIPAA Omnibus Rule and its consequences for those businesses who are not themselves healthcare providers, but are service providers to healthcare entities (and even further downstream than that....), you can take a listen to our recent webinar highlighting the most important changes and issues.
Read more
Mintz is presenting a webinar on January 30, 2013 to discuss the impact of the HIPAA Omnibus Rule - the first, sweeping overhaul of the HIPAA privacy and security rules in a decade.
Read more
The Department of Health and Human Services, Office for Civil Rights (OCR) has posted on its website sample business associate agreement provisions to help covered entities and business associates comply with the new business associate agreement requirements under the final HIPAA Omnibus Rule.
Read more
Something everyone can do for Data Privacy Day:  make it a point to change at least one password and make it "long and strong."
Read more
Time for some tips to keep your company (and your employees) safe online --
Read more
US marketers who have been paying attention to anti-spam developments north of the border are concerned about proposed new Canadian regulations. If you have not been paying attention, it's probably time that you did. We have a guest post today discussing the progress of those regulations.
Read more

HITECH Omnibus Rule Basics

January 18, 2013 | Blog | By Cynthia Larose

As we pore through the 562-page HITECH Omnibus Rule released by the Department of Health and Services late yesterday afternoon.
Read more
We posted this alert back in March, and now California Attorney General Kamala Harris has released a recommended set of privacy best practices for app developers and advertising networks entitled "Privacy on the Go: Recommendations for the Mobile Ecosystem."
Read more
The European Parliament recently published a report on the European Commission’s draft of a new EU Data Protection Regulation. The report, which includes the European Parliament’s proposal for a revised draft of the Regulation runs to an astounding 215 pages. 
Read more
As we continue our "new year, new look" series into important privacy issues for 2013, we boldly predict:
Regulatory Scrutiny of Data Collection and Use Practices of Mobile Apps Will Increase in 2013
Read more
The Department of Health and Human Services, Office for Civil Rights (OCR) reached its first settlement for a data breach involving less than 500 individuals. Under the December 2012 settlement, the Hospice of North Idaho (HONI) will pay OCR a $50,000 penalty to resolve allegations that it violated the HIPAA Security Rule. 
Read more

First of a series (updated): Issues for 2013

January 3, 2013 | Blog | By Cynthia Larose, Adam Veness

Happy New Year! We are beginning this week with a series of top Privacy and Security issues for 2013, as we see them. Let's start with an issue of interest to publicly traded companies, or companies considering going public in 2013 - a reminder that cybersecurity issues are of interest to the Securities and Exchange Commission (SEC) and are a shareholder disclosure issue.  
Read more
After years of consideration and feedback the Federal Trade Commission released the final revision to the 14-year old Children’s Online Privacy Protection Act (COPPA) Rule. 
Read more
The Center for Digital Democracy (CDD) filed a complaint yesterday asking the Federal Trade Commission (FTC)  to investigate violations of the Children’s Online Privacy Protection Act (COPPA) by Nickelodeon and mobile app-maker PlayFirst.
Read more
Delta Airlines, Inc. may have to pay fines equal to 20 “excess bag” fees for each user that has downloaded its “Fly Delta” mobile application. California Attorney General Kamala Harris has filed a complaint against Delta, alleging that Delta has failed to conspicuously post a privacy policy on its mobile application, in violation of California’s Online Privacy Protection Act (“CalOPPA”).
Read more
People's United Bank of Maine has agreed to pay about $ 390,000 to settle a claim that its security practices allowed unauthorized persons to withdraw funds from a construction company's account (Patco Construction Co. v. People's United Bank, D. Me., No. 09-503, agreed dismissal filed 11/19/12).
Read more
Can your organization answer "yes" to any of the following questions?
Read more
The U.S. Department of Health and Human Services Office for Civil Rights (OCR) has released guidance on the methods that covered entities and business associates can use to de-identify protected health information (PHI) in accordance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy Rule. 
Read more
When is a gallon of gas like an iTunes track? That may sound like a riddle from a Lewis Carroll novel, but it was one of the questions considered by the California Supreme Court during oral arguments in Apple v. Superior Court (Krescent) as Apple, Inc. attempted to persuade the Court that the Song-Beverly Credit Card Act of 1971, which prohibits retails from recording a customer’s personal identification information as a condition of accepting a credit card payment, does not apply to online retailers.
Read more
Sometimes the most interesting things that emerge from conferences are whispered across the aisle just after a presentation or debated by attendees off-site over a glass or two of wine.
Read more

Explore Other Viewpoints: