Will the NIST cybersecurity framework always be voluntary?

From: HealthITSecurity

Author Name:  Patrick Ouellette

Healthcare organizations have to be mindful of different types of federal regulations, such as meaningful use requirements included in the Affordable Care Act (ACA) and HIPAA’s privacy and security standards. But will the way in which the government handled meaningful use tie into how it regulates cybersecurity in the future?

According to Phil Alexander, Information Security Officer at University Medical Center (UMC) Health System, there’s a chance that meaningful use directives have set the standards for federal efforts to tighten up security.

Read Part 1 of this Q&A here: UMC Health System Security Officer discusses user awareness

Alexander, who has work experience with the U.S. Army and the National Security Agency (NSA), explained to HealthITSecurity.com why he thinks the National Institutes of Standards and Technology (NIST) voluntary cybersecurity framework will play an important part in federal cybersecurity enforcement. Though organizations had already been using the framework’s elements prior to its release, implementing the framework will be imperative for organizations in the future, according to Alexander.

How will federal cybersecurity efforts affect healthcare?

Read Complete Article

Facebooktwittergoogle_plusredditpinterestlinkedinmail

Leave a Reply

Your email address will not be published.

Please Answer: *