Our Focus
As technology continues to develop, myriad avenues for security and privacy breaches expanded to include medical devices, telehealth, electronic health records, payment systems, and connections with patients’ outside vendors. Given our depth of knowledge of experience in dealing with health privacy and security issues as well as emerging technologies, we are able to help clients navigate these difficult issues.
ArentFox Schiff’s experienced team of health privacy and security attorneys counsel health care clients on all aspects of the European Union General Data Protection Regulation (GDPR), HIPAA, and similar state laws governing health privacy and security concerns.
Our experience and work for clients include:
- Development of compliance programs consistent with HIPAA standards and best practices.
- Negotiation and organization of arrangements for the disclosure and exchange of health information including business associate, data use, and electronic data interchange agreements.
- HIPAA and health information privacy training.
- Investigation and analysis of breaches and other security incidents and assistance with meeting applicable notification requirements.
- Response to audit requests and investigations conducted by HHS’s Office of Civil Rights and state agencies as well as representation of clients in enforcement actions.
- Advising clinical trial sponsors and managers with respect to the collection and disclosure of health data as part of clinical research studies.