Sens. Mark Warner, D-Va., and Ron Wyden, D-Ore., reintroduced legislation that would establish minimum federal cybersecurity standards for healthcare organizations and provide $1.3 billion to help hospitals strengthen their defenses.
The senators reintroduced the Health Infrastructure Security and Accountability Act, according to a Sept. 17 news release from Mr. Warner’s office.
The legislation would require HHS to establish, enforce and regularly update minimum cybersecurity standards for healthcare providers, health plans, clearinghouses and business associates. Entities considered systemically important or critical to national security would face heightened standards.
Covered entities would also be required to develop continuity plans describing how they would respond to technology failures or intrusions, conduct annual cybersecurity tests and undergo independent security audits.
The bill would increase fines for failure to meet security requirements and strengthen HHS oversight through annual cybersecurity audits.
The legislation would provide $1.3 billion to help hospitals strengthen their cybersecurity, including $800 million for hospitals in rural and underserved urban communities.
“Voluntary standards are not enough to protect Americans’ health, safety, and privacy,” Mr. Warner said in the news release.
Mr. Wyden said the legislation would establish national cybersecurity standards for healthcare providers and direct resources toward rural and underserved areas.
At the Becker’s 32nd Annual Meeting: The Business and Operations of ASCs, taking place October 29-31 in Chicago, ASC leaders, surgeons and healthcare executives will explore strategies to drive growth, enhance operational performance, navigate reimbursement challenges and prepare for the future of ambulatory surgery. Apply for complimentary registration now.
