What does the new NY State Financial Services Department Regulation (23 NYCRR 500) have to do with HIPAA? These two laws have very similar cybersecurity requirements for Covered Entities. Most importantly, this law applies to everyone doing business in New York. Even if your business is exempt, you must file an exemption by April 15, 2020. Read the full report here.
[zohoForms src=https://forms.totalhipaa.com/totalhipaa/form/NYDFSWhitePaperRegistration/formperma/T2t0OmrkpZUfvcEXjpiZWNyGRjabDZldfnF-vaBG-d8 width=100% height=600px]Is Outlook HIPAA Compliant? How to Follow Best Practices for Email Security
Microsoft Outlook is not HIPAA compliant by default, but it can support HIPAA compliance when properly configured. To use Outlook safely for transmitting ePHI, your organization must use a paid Microsoft 365 business or enterprise plan, sign a BAA with Microsoft, enable end-to-end encryption, enforce MFA, and establish strict administrative policies. Free consumer accounts (@outlook.com or @hotmail.com) cannot support HIPAA compliance.


