Idaho State University agreed to pay $400,000 to settle allegations of HIPAA Security Rule violations after disabling server firewall protections at the Pocatello Family Medicine Clinic for at least 10 months, resulting in a breach affecting 17,500 patients. ISU failed to properly assess risks and vulnerabilities to electronic protected health information, leading to the breach and significant financial penalties. Other organizations, such as Hospice of North Idaho, have also faced HIPAA violations, underscoring the importance of data security measures.
Connecticut Senate Bill Raises the Stakes on Data Breach Response
Hayley Steele and Gregory Szewczyk of Ballard Spahr write: A new bill introduced in Connecticut—Connecticut Senate Bill 117, An Act Concerning Breaches of Security Involving


