Revised NIST-OCR Resource Guide Can Help Entities Implement Cyber Measures

The latest version of the cybersecurity resource guide published by the HHS Office for Civil Rights (OCR) and the National Institute of Standards and Technology (NIST) includes resources for HIPAA covered entities and their business associates to help their understanding of the HIPAA Security Rule, drive compliance with the law and bolster security, the two agencies say.

OCR and NIST announced Feb. 16 that they had published the final version of Special Publication 80-66 Revision 2, Implementing the Health Insurance Portability and Accountability Act (HIPAA) Security Rule: A Cybersecurity Resource Guide.[1]

The joint OCR-NIST guide is the latest effort by HHS to help health care organizations harden their electronic systems against ransomware and other cyber threats. The agency released a department-wide cybersecurity strategy for the health care sector in December 2023[2] and released voluntary cybersecurity performance standards for health care in January 2024.[3]

This document is only available to subscribers. Please log in or purchase access.
 


Would you like to read this entire article?

If you already subscribe to this publication, just log in. If not, let us send you an email with a link that will allow you to read the entire article for free. Just complete the following form.

* required field