PogoWasRight.org

Menu
  • About
  • Privacy
Menu

AI in Health Care: What Privacy Officers Need to Know to Remain HIPAA Compliant

Posted on December 3, 2025December 2, 2025 by Dissent

Bailee Brown of Amundsen Davis LLC writes:

… In January 2025, the Department of Health and Human Services (HHS) published a proposed rule to revise HIPAA’s Security Rule requirements to protect against breaches and cyberattacks.

The rule would establish that electronic protected health information (ePHI) used in AI training data, prediction models, and algorithm data that is maintained by a regulated entity for covered functions is protected by HIPAA. It will require heightened risk analysis and risk management activities, including a written inventory of a covered entity’s technology assets that includes AI software that creates, receives, maintains, transmits, or interacts with ePHI, and regular monitoring of authoritative sources for known vulnerabilities and prompt remediation in accordance with patch management programs.

The rule will also apply to AI use by business associates.

Read more at JDSupra.

Related posts:

  • BULLETIN: HIPAA Privacy and Novel Coronavirus — from HHS OCR
Category: Artificial IntelligenceHealthcareLawsU.S.

Post navigation

← India demands smartphone makers install a government app on every handset
EU court says websites on the hook for user privacy harms →

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

Contact Me

Email: info[at]pogowasright.org
Security Issue: security[at]pogowasright.org
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]pogowasright.org

Research Report of Note

A report by EPIC.org:

State Attorneys General & Privacy: Enforcement Trends, 2020-2024

Categories

Recent Posts

  • EU justice chief draws red line on privacy reforms
  • Kaiser Permanente to Pay Up to $47.5M in Web Tracker Lawsuit
  • How Palantir shifted course to play key role in ICE deportations
  • U.S. Judge Blocks Trump From Cutting Medicaid Funding For Planned Parenthood In 22 States
  • India backs off mandatory ‘cyber safety’ app after surveillance backlash
  • Judge orders Trump administration to halt warrantless immigration arrests in District of Columbia
  • EU court says websites on the hook for user privacy harms

RSS Recent Posts at DataBreaches.net

  • Marquis data breach impacts over 74 US banks, credit unions
  • Virginia Twins Arrested for Conspiring to Destroy Government Databases
  • Cyberattack on Puerto Rico IT vendor Truenorth hits 3 agencies
  • Easy Question, Complicated Answer: What Does It Take to Stop Workers From Snooping?
  • Update on Dos-OP’s report on Nova RaaS
©2025 PogoWasRight.org. All rights reserved.