OCR Stopped Grading Whether You Did The Homework. Now It Grades What You Did With The Answer.
On April 23, 2026, the HHS Office for Civil Rights settled four ransomware investigations in a single announcement: $1,165,000 in penalties, more than 427,
A continuously updated tracker of U.S. and international AI laws and regulations affecting healthcare and regulated industries.
On April 23, 2026, the HHS Office for Civil Rights settled four ransomware investigations in a single announcement: $1,165,000 in penalties, more than 427,
I remember exactly where I was when the Change Healthcare attack hit the news. Pharmacies could not process claims. Clinicians could not verify eligibility. Hospitals that
A bipartisan bill would let DHS order a shutdown of frontier AI systems in a loss-of-control scenario. Here's why the kill switch is warranted, how the bill actually works, and why "loss-of-control scenario" is the definition that decides whether it's a credible deterrent or a political gesture.
Most compliance officers I talk to have already worked out their AI transcription policy in their head, even if it's never been written down.
How agentic AI reshapes governance, risk, and trust for genetics-based healthcare navigation — and a phased roadmap for building it safely.
Ten AI bills cleared a House committee on a bipartisan vote. The real story is what didn't make it into the markup — and the preemption fight one committee over that will actually decide whether federal AI law displaces the state patchwork.
OCR just pushed the HIPAA Security Rule's final action to July 2027 — the second delay in over a year. The CHIME-led pushback, the real cost of inaction, and why encryption still isn't mandatory under HIPAA in 2026.
By Chris Bowen | Founder & CEO, Bowen & Company If you think the healthcare cybersecurity crisis is improving, the data tells a different story. 2025 became
The HIPAA Security Rule overhaul is still proposed — not final. Here is where the rule actually stands as of June 2026, what would change if adopted, and why this is not a done deal.
Most founders think HIPAA compliance begins when they become successful. It begins much earlier. A practical guide from someone who has completed 900+ SRAs.
By Chris Bowen — Founder & CEO, Bowen & Company. Founder & former CISO, ClearDATA. The proposed 2026 HIPAA Security Rule updates represent the most significant change