Securing InformationSecuring Information

Final rules governing health-information security go into effect April 21

information Staff, Contributor

February 21, 2003

1 Min Read
information logo in a gray background | information

The final rules for securing electronic health-care information were entered into the Federal Register last week and will take effect on April 21. They require health-care companies to develop, implement, and document the measures they take under the Health Insurance Portability and Accountability Act to ensure that health information remains secure. Large health-care organizations will have until April 2005 to comply, while smaller ones must comply by April 2006.

Security experts warn a lack of specifics may cause confusion. "This is going to be a free-for-all for a long time," says Pete Lindstrom, research director at Spire Security.

But for companies already on top of their security efforts, the new rules shouldn't be a burden. Says Bruce Peck, information security manager at St. Vincent Hospitals and Health Care Center: "This outlines what we were already doing."

Read more about:

20032003
Never Miss a Beat: Get a snapshot of the issues affecting the IT industry straight to your inbox.

You May Also Like


More Insights