HHS Signals Continued Focus on Health Plan Privacy and Cybersecurity
Privacy and security are enforcement priorities for government regulators following HHS's restructuring of its Office for Civil Rights.
Questions about your benefits? Contact your HR administrator.
With the rise of data security incidents, businesses are encouraged to maintain a Written Information Security Plan.
With the rise of data security incidents, businesses are encouraged to maintain a Written Information Security Plan (WISP). A WISP protects businesses and clients, offering a structured response framework for security breaches and other disruptions like natural disasters or theft.
A well-designed WISP should be tailored to a company’s size, activities, and sensitivity of customer data, focusing on three key areas: employee management and training, information systems, and identifying and managing system failures. It’s also important to understand post-breach responsibilities when building a WISP.
Key Elements of a WISP:
Requirements for a WISP:
Tips for Maintaining a WISP:
The IRS has also provided a plain language WISP sample for guidance, available on IRS.gov.
Benefit Allocation Systems (BAS) provides online solutions for: Employee Benefits Enrollment; COBRA; Flexible Spending Accounts (FSAs); Health Reimbursement Accounts (HRAs); Leave of Absence Premium Billing (LOA); Affordable Care Act Record Keeping, Compliance & IRS Reporting (ACA); Group Insurance Premium Billing; Property & Casualty Premium Billing; and Payroll Integration.
MyEnroll360 integrates with major insurance carriers for enrollment eligibility management (e.g., Blue Cross, Blue Shield, Aetna, United Health Care, Kaiser, CIGNA and others), and with leading payroll platforms for enrollment deduction management (e.g., Workday, ADP, Paylocity, PayCor, UKG, and others).
This article is for informational purposes only and is not intended as legal, tax, or benefits advice. Readers should not rely on this information for taking (or not taking) any action relating to employment, compliance, or benefits. Always consult with a qualified professional before making decisions based on this content.