<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>HIPAA Archives - HIT Leaders and News</title>
	<atom:link href="https://us.hitleaders.news/tag/hipaa/feed/" rel="self" type="application/rss+xml" />
	<link>https://us.hitleaders.news/tag/hipaa/</link>
	<description>Healthcare Innovations and technology news and views</description>
	<lastBuildDate>Fri, 29 May 2026 16:14:39 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1</generator>
	<item>
		<title>Healthcare AI Identity Breach Risk Is Outpacing Governance</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/50083/healthcare-ai-identity-breach-risk-is-outpacing-governance/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=healthcare-ai-identity-breach-risk-is-outpacing-governance</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Tue, 02 Jun 2026 10:12:07 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[AI agents]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[Semperis]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=50083</guid>

					<description><![CDATA[<p>Healthcare organizations are adopting AI agents at the same time attackers are becoming more effective at exploiting identity systems. That convergence creates a new cybersecurity problem: AI is no longer only a tool used by clinicians, administrators, or security teams. It is becoming an actor inside the identity environment.</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/50083/healthcare-ai-identity-breach-risk-is-outpacing-governance/">Healthcare AI Identity Breach Risk Is Outpacing Governance</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Voice AI Tests Healthcare’s Privacy Discipline</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/50058/voice-ai-tests-healthcares-privacy-discipline/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=voice-ai-tests-healthcares-privacy-discipline</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Tue, 19 May 2026 09:55:37 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[Health Insurance Portability and Accountability Act]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[Voice AI]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=50058</guid>

					<description><![CDATA[<p>Voice AI has entered healthcare through one of the industry’s most sensitive workflow gaps: conversations that shape care but often disappear once they end. Staff meetings, case reviews, shift handoffs, care coordination calls, safety huddles, and operational briefings can contain clinically important context that never makes it into the medical record or formal documentation.</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/50058/voice-ai-tests-healthcares-privacy-discipline/">Voice AI Tests Healthcare’s Privacy Discipline</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Cybersecurity: The Vendor Risk Reckoning</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49984/cybersecurity-the-vendor-risk-reckoning/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=cybersecurity-the-vendor-risk-reckoning</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Mon, 23 Mar 2026 11:15:52 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[Maine Attorney General]]></category>
		<category><![CDATA[TriZetto]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=49984</guid>

					<description><![CDATA[<p>The breach at TriZetto Provider Solutions, a Cognizant business, should not be treated as another familiar HIPAA headline. A filing with the Maine Attorney General’s office indicates that 3,429,351 people were affected, while industry reporting tied to the same disclosure said the unauthorized access began on November 19, 2024, and the compromised data was not fully understood until late November 2025. In any sector, that kind of dwell time would be serious</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49984/cybersecurity-the-vendor-risk-reckoning/">Cybersecurity: The Vendor Risk Reckoning</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Healthcare’s Third-Party Reckoning Begins at the Contract Table</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49930/healthcares-third-party-reckoning-begins-at-the-contract-table/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=healthcares-third-party-reckoning-begins-at-the-contract-table</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Tue, 06 Jan 2026 21:32:14 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[Cyber Insurance]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[Risk Assessment]]></category>
		<category><![CDATA[TriZetto data breach]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=49930</guid>

					<description><![CDATA[<p>The lawsuit fallout from the TriZetto data breach has accelerated a reckoning long overdue in healthcare IT governance: vendor partnerships are not cybersecurity strategies. As Cognizant Technology Solutions now faces multiple U.S. class-action suits over its handling of a 2020 breach affecting its TriZetto Provider Solutions platform, the liability spotlight is shifting upstream. In a sector increasingly dependent on outsourced infrastructure, cloud-based platforms, and revenue cycle management automation, enterprise buyers can no longer separate procurement from risk management.</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49930/healthcares-third-party-reckoning-begins-at-the-contract-table/">Healthcare’s Third-Party Reckoning Begins at the Contract Table</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Breach Notices Expose the Real Cybersecurity Gap</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49902/breach-notices-expose-the-real-cybersecurity-gap/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=breach-notices-expose-the-real-cybersecurity-gap</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Mon, 15 Dec 2025 18:01:46 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[Health Management Systems of America]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[Revere Health]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=49902</guid>

					<description><![CDATA[<p>Two recent breach disclosures from Revere Health and Health Management Systems of America underline an uncomfortable reality in healthcare cybersecurity. The industry is not losing data because attackers are uniquely inventive. The industry is losing time, clarity, and control because too many organizations still cannot answer basic operational questions fast enough, which systems touched protected health information, which vendors sat in the path, and which controls were actually enforced.</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49902/breach-notices-expose-the-real-cybersecurity-gap/">Breach Notices Expose the Real Cybersecurity Gap</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Delayed Breach Disclosures Are Quietly Eroding Healthcare’s Cyber Trust</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49881/delayed-breach-disclosures-are-quietly-eroding-healthcares-cyber-trust/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=delayed-breach-disclosures-are-quietly-eroding-healthcares-cyber-trust</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Mon, 08 Dec 2025 12:11:53 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[ChristianaCare]]></category>
		<category><![CDATA[Health Insurance Portability and Accountability Act]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[Wyandot Center]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=49881</guid>

					<description><![CDATA[<p>As breach fatigue sets in across the healthcare sector, a quieter and more corrosive threat is emerging, not just the frequency of cyberattacks, but the time it takes for patients and providers to learn about them.</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49881/delayed-breach-disclosures-are-quietly-eroding-healthcares-cyber-trust/">Delayed Breach Disclosures Are Quietly Eroding Healthcare’s Cyber Trust</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Breach Notification Rules Were Designed for Disclosure Not Protection</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49791/breach-notification-rules-were-designed-for-disclosure-not-protection/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=breach-notification-rules-were-designed-for-disclosure-not-protection</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Wed, 29 Oct 2025 10:53:27 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[Breach Notification]]></category>
		<category><![CDATA[HIPAA]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=49791</guid>

					<description><![CDATA[<p>The Health Insurance Portability and Accountability Act (HIPAA) requires covered entities and business associates to notify affected individuals when protected health information (PHI) is breached. This rule, established to promote transparency and accountability, now serves as the healthcare sector’s primary line of defense against public fallout after cyber incidents. But that purpose is increasingly out of step with modern threats.</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49791/breach-notification-rules-were-designed-for-disclosure-not-protection/">Breach Notification Rules Were Designed for Disclosure Not Protection</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>HIPAA Enforcement Is Rising But Who&#8217;s Really Paying the Price</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49789/hipaa-enforcement-is-rising-but-whos-really-paying-the-price/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=hipaa-enforcement-is-rising-but-whos-really-paying-the-price</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Mon, 27 Oct 2025 10:46:54 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[OCR]]></category>
		<category><![CDATA[Office for Civil Rights]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=49789</guid>

					<description><![CDATA[<p>In 2024, the Office for Civil Rights (OCR) at the U.S. Department of Health and Human Services took more enforcement actions than in any previous year. It also levied its lowest average financial penalties in more than a decade. This divergence reveals a strategic pivot: OCR is broadening its enforcement net, but its ability to impose meaningful consequences remains constrained.</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49789/hipaa-enforcement-is-rising-but-whos-really-paying-the-price/">HIPAA Enforcement Is Rising But Who&#8217;s Really Paying the Price</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Why the Most Dangerous Data Breaches Are Still the Least Regulated</title>
		<link>https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49787/why-the-most-dangerous-data-breaches-are-still-the-least-regulated/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=why-the-most-dangerous-data-breaches-are-still-the-least-regulated</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Tue, 21 Oct 2025 11:40:19 +0000</pubDate>
				<category><![CDATA[Cybersecurity & Privacy]]></category>
		<category><![CDATA[Change Healthcare]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[PHI]]></category>
		<category><![CDATA[Protected Health Information]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=49787</guid>

					<description><![CDATA[<p>While the Change Healthcare ransomware attack drew national attention in 2024, its implications extend far beyond a single event. It spotlighted a structural vulnerability in the healthcare sector that continues to grow unchecked: the underregulation of business associates.</p>
<p>The post <a href="https://us.hitleaders.news/core-categories/cybersecurity-and-privacy/49787/why-the-most-dangerous-data-breaches-are-still-the-least-regulated/">Why the Most Dangerous Data Breaches Are Still the Least Regulated</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Marketing Violations Are Becoming a HIPAA Liability</title>
		<link>https://us.hitleaders.news/government/49745/marketing-violations-are-becoming-a-hipaa-liability/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=marketing-violations-are-becoming-a-hipaa-liability</link>
		
		<dc:creator><![CDATA[Jason Free]]></dc:creator>
		<pubDate>Mon, 06 Oct 2025 12:15:45 +0000</pubDate>
				<category><![CDATA[Government]]></category>
		<category><![CDATA[HHS]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[Marketing]]></category>
		<category><![CDATA[OCR]]></category>
		<guid isPermaLink="false">https://us.hitleaders.news/?p=49745</guid>

					<description><![CDATA[<p>The recent settlement between the Office for Civil Rights (OCR) and Cadia Healthcare is a stark warning that marketing strategies in healthcare are now squarely within the compliance crosshairs. The $182,000 resolution underscores a growing regulatory posture: public-facing patient testimonials, even when seemingly benign, carry legal risk if HIPAA rules are not strictly followed.</p>
<p>The post <a href="https://us.hitleaders.news/government/49745/marketing-violations-are-becoming-a-hipaa-liability/">Marketing Violations Are Becoming a HIPAA Liability</a> appeared first on <a href="https://us.hitleaders.news">HIT Leaders and News</a>.</p>
]]></description>
		
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/?utm_source=w3tc&utm_medium=footer_comment&utm_campaign=free_plugin

Page Caching using Disk: Enhanced 
Content Delivery Network Full Site Delivery via cloudflare

Served from: us.hitleaders.news @ 2026-08-23 18:48:00 by W3 Total Cache
-->