decisionhealth Newsletters, Part B News - 2024 Issue 7 (July)
Change Healthcare’s long-delayed breach notice gives providers new footing
Subscribe or sign in to view the full article.
Article Overview
This piece covers the aftermath of the Change Healthcare cyberattack, focusing on the late breach notice, federal HIPAA and HHS/OCR guidance, and the practical implications for covered entities such as physician practices. It is relevant to compliance, privacy, and revenue-cycle stakeholders who need to understand how the notice affects breach notification responsibilities, contractual risk, and related state-law review.
Why This Topic Matters
The article matters because it clarifies how a major healthcare cyber incident can shift breach-notification expectations for providers and business associates. It also highlights the need to review contracts, state requirements, and internal risk-management processes after a large-scale vendor disruption.
What You Will Learn
- How the Change Healthcare cyber incident affected provider organizations
- What the delayed breach notice changed for HIPAA-related response efforts
- Why covered entities should review business associate agreements after a vendor breach
- What kinds of state-law and contract issues may need follow-up
- How healthcare organizations can think about resilience and third-party risk management
Who Should Read This
- Physician practices
- Healthcare compliance officers
- Privacy and security officers
- Revenue cycle leaders
- Healthcare attorneys
- Medical group administrators
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com