Tuesday, February 10, 2015

Work Starts on National Breach Notification Law - HDM Top Stories Article | Health Data Management

Work Starts on National Breach Notification Law - HDM Top Stories Article | Health Data Management: “When a breach is discovered, one of the first things a company must do is to conduct a risk assessment to determine the type of data that has been accessed and the risk that potential fraudulent use of the data could entail,” testified Elizabeth Hyman, an executive vice president of public advocacy at CompTIA. “This risk assessment is a vital component to a company’s data breach response, and, depending upon the seriousness of the breach, may take some time to complete. We therefore ask that a federal standard ‘starts the clock’ on a notification requirement only after the risk assessment has been completed.”