A New Era for Health Information Privacy and Cybersecurity Oversight?
The U.S. Department of Health and Human Services (HHS) announced a significant restructuring of its Office for Civil Rights (OCR) on May 18, creating three dedicated divisions:
• Conscience and Religious Freedom Division
• Civil Rights Division
• Health Information Privacy, Data, and Cybersecurity Division
While the reorganization does not directly change HIPAA requirements, it may signal a heightened federal focus on healthcare privacy, cybersecurity, and data protection.
CMS established the UPICs to consolidate program integrity activities formally performed by the Zone Program Integrity Contractors (ZPICs), Program Safeguard Contractors (PSCs), and Medicaid Integrity Contractors. As a result, UPICs are the only program integrity contractors that monitor both the Medicare fee-for-service (FFS) and Medicaid programs. UPICs are responsible for identifying and protecting against fraud, waste, and abuse using both pre-payment medical reviews and post-payment audits. UPIC audits should be taken very seriously as they can result in high-dollar extrapolated overpayment demands, payment suspensions, and referral to law enforcement for additional review.
AI Impersonates Clinicians: What You Need to Know
Artificial intelligence is rapidly entering everyday medical workflows—from documentation support and patient messaging to clinical decision support and triage tools. While these technologies can improve efficiency in private practice settings, a recent Pennsylvania lawsuit highlights an important and emerging risk: AI systems that appear to “act like clinicians” may be crossing into the unlicensed practice of medicine.