AHLA Health Law Weekly: Why ALL Health Care Organizations Must Care About SEC Proposed Cybersecurity Rule Changes

Clearwater Founder & Executive Chairman, Bob Chaput, in AHLA’s Health Law Weekly

According to the American Hospital Association (AHA), there are 6,093 hospitals in the United States. Of this total number, 1,228 are investor-owned (for-profit) acute care hospitals and 2,960 are nongovernment not-for-profit acute care hospitals. The remainder of the 6,093 hospitals is comprised of government acute care hospitals (federal, state, or local government), psychiatric hospitals, and other hospitals. All of these hospitals, regardless of their designation as for-profit, not-for-profit, or government, can likely agree on the sentiment-“cybersecurity is patient safety.

As of September 2022, the New York Stock Exchange (NYSE) had a combined total of 2,578 listed domestic and international companies, while the Nasdaq had 3,788 for a total of 6,366 publicly listed companies. The population of companies subject to the U.S. Securities and Exchange Commission (SEC) disclosure requirements is small, especially when considering the approximately 32.6 million businesses in the United States. The point is that private companies dominate the U.S. economy and may not be directly subject to SEC registration, reporting, and disclosure requirements. They are, however, increasingly targeted by adversarial threat sources and subject to the same accidental, structural, and environmental threat sources that public companies face. Getting an organization’s cyber risk management “ducks in a row” is not just for SE-regulated companies.

In a recently published article in AHLA’s Health Law Weekly, Clearwater Founder and Executive Chairman, Bob Chaput, goes on to explain why the SEC’s proposed cybersecurity rule changes should garner the attention of all healthcare organizations, not solely those who are public entities.

Chaput shares an analysis of key questions and proposed considerations for healthcare leaders.

Download the full article here

Copyright 2023, American Health Law Association, Washington, DC. Reprint permission granted. 

Newsletter

Sign up for our monthly newsletter discussing hot topics and access to invaluable resources.


Related Blogs

Potential Oracle Cloud Breach

Potential Oracle Cloud Breach

A significant concern has emerged involving Oracle Cloud services. Reports have surfaced regarding the alleged sale of 6 million records extracted from Oracle Cloud’s Single Sign-On (SSO) and LDAP directories.
Are You Ready For Quantum Day in Healthcare?

Are You Ready For Quantum Day in Healthcare?

From AI-driven diagnostics to wearable smart devices and telehealth breakthroughs, rapid digital transformation drives modern healthcare service delivery. From what was once a tech-resistant industry — and one where many legacy systems still play critical roles in operations — healthcare tech adoption has radically evolved since pre-COVID. With all these breakthroughs and benefits, many covered entities and business associates struggle to keep pace with the increased risk these innovations introduce into the modern healthcare ecosystem. The more technologies, web apps, smart devices, and cloud services your organization adopts, the greater chance of a cyber breach.
Clinical Research Organizations: M&A Goldmine or Data Liability? Why Cybersecurity Must Be on Every Investor’s Radar

Clinical Research Organizations: M&A Goldmine or Data Liability? Why Cybersecurity Must Be on Every Investor’s Radar

The market for clinical trials is experiencing significant momentum in mergers and acquisitions (M&A). Private equity (PE) investment in Clinical Research Organizations (CROs) and Site Management Organizations (SMOs) is being spurred by site consolidation, expansion of specialized services, and technology innovation. These firms are important players in the pipeline of drug development and the best targets for investors who wish to capitalize on healthcare innovation.

Connect
With Us