CISA’s Proposed Cyber Incident Reporting Rule Limits Scope to Hospitals with Over 100 Beds; Comments Due June 3

CISA’s Proposed Cyber Incident Reporting Rule Limits Scope to Hospitals with Over 100 Beds; Comments Due June 3

The Cybersecurity and Infrastructure Security Agency (CISA) issued a Notice of Proposed Rulemaking (NPRM), as mandated by the Cyber Incident Reporting for Critical Infrastructure Act of 2022 (CIRCIA), outlining regulations concerning cyber incident reporting and ransom payment reporting, aiming to bolster the nation’s cybersecurity posture (press release). CIRCIA, passed in 2022, requires certain critical infrastructure organizations to report cyber incidents within 72… (Colocho, March 27, 2024) #Health Information Technology, #Hospitals, #Privacy, #Transparency