The Centers for Medicare & Medicaid Services (CMS) Innovation Center (the Innovation Center) published its data-sharing strategy, which seeks to further enable data sharing while ensuring proper security, risk management, and privacy obligations. The strategy outlines the Innovation Center’s approach to identifying data sharing needs across Innovation Center models and highlights the importance of data in developing and testing innovative healthcare payment and service delivery models.Continue Reading CMS Innovation Center Outlines Data Sharing Principles

On July 25, the Department of Health and Human Services (HHS) announced a number of organizational changes, including renaming the Office of the National Coordinator for Health Information Technology (ONC) to the Assistant Secretary for Technology Policy and Office of the National Coordinator for Health Information Technology (ASTP/ONC), among other actions. These organizational changes reflect heightened focus to provide oversight and issue policies governing the use of individuals’ health data and the development of artificial intelligence (AI) technologies. It also demonstrates HHS’ aim to address recent cyberattacks against the healthcare sector entities.Continue Reading HHS Reorganizes ONC and Bolsters AI Leadership

Linda Malek and Jason Johnson are partners in Crowell’s Health Care and Privacy & Cybersecurity Groups, and have a particular focus on advising clients on compliance issues related to clinical research and clinical trials. Stephen Holland is Senior Counsel in Crowell’s Government Affairs Group and previously served as Senior Health Counsel to the U.S. House Committee on Energy and Commerce, where he advised Members of Congress and their staffs on FDA policy.

On July 25, the Food and Drug Administration (FDA) issued final guidance entitled Real-World Data: Assessing Electronic Health Records and Medical Claims Data to Support Regulatory Decision-Making for Drug and Biological Products. The guidance aims to provide drug sponsors with considerations should they wish to use real-world data (RWD) drawn from electronic health records (EHRs) or medical claims data in their clinical studies to support regulatory decisions related to the safety and efficacy of a drug.Continue Reading FDA Issues Guidance on Using Electronic Health Records and Medical Claims Data in Clinical Studies

On July 9, 2024, the Office of Science and Technology Policy (OSTP) released new guidance for federal research agencies that require certain research institutions (“covered institutions”) to certify that the institution has established and operates a research security program that includes certain specific standardized requirements.  The certification requirements are in accordance with the National Security Presidential Memorandum-33 (NSPM-33) and the CHIPS and Science Act. The purpose of these guidelines is to address increased foreign risk to research security in the U.S. Research and Development (“R&D”) landscape and to preserve the open and collaborative nature of the R&D environment. The research security requirements are summarized below. Continue Reading New federal guidelines for research security programs at covered institutions

Health data exchange and interoperability have entered a new chapter in the U.S. In 2016, the 21st Century Cures Act (Cures Act) included a requirement that the Office of the National Coordinator for Health Information Technology (ONC) create a Trusted Exchange Framework and Common Agreement (TEFCA) for nationwide health information exchange.  Seven years later, on December 12, 2023, ONC announced that the nationwide health data exchange governed by TEFCA is operational. At the signing event, many Department of Health and Human Services (HHS) officials celebrated the announcement including Secretary Xavier Becerra, Deputy Secretary Andrea Palm, and National Coordinator for Health Information Technology, Micky Tripathi.Continue Reading The Trusted Exchange Framework and Common Agreement (TEFCA) and State Data Exchange is Moving Forward in 2024

On February 21, Senator Bill Cassidy (R-LA), Ranking Member of the Senate Health, Education, Labor, and Pensions (HELP) Committee, released a report to propose policy recommendations to revise the Health Insurance Portability and Accountability Act of 1996 (HIPAA) framework and ensure privacy protections for health data and information. In the report, Senator Cassidy highlights recent reports of breaches and violations of patients’ health data privacy and outlines several proposals to modernize the HIPAA framework and other privacy regulations.Continue Reading Senate HELP Committee Ranking Member Issues Health Data Privacy Policy Recommendations