Wanted: a business model for information exchange

The HITECH portion of the American Recovery and Reinvestment Act included lots of financial incentives for health care providers to adopt and “meaningfully” use health information technology such as electronic health record systems. It also directed…

New health data breach notification rules go into effect

The rules contained in the HITECH Act requiring HIPAA-covered entities, business associates, and non-covered entities that provide personal health records (PHR) to disclose breaches of personal health information go into effect on September 23. The draft…

New proposed flow and intermediary roles for health data

Word coming out of the Health IT Standards Committee last week is that the panel has approved a framework for the transmission of patient data from providers to federal government agencies such as the Centers for…

Contributions to CSI Alert on Claims-Based Identity Management

The September issue of the Computer Security Institute Alert focuses on claims-based identity, and includes articles by CSI Alert Editor Sara Peters, policy expert Charles Cresson Wood, “Privacy Professor” Rebecca Herold, and SecurityArchitecture.com’s own Stephen Gantz….