1. Home
  2. |Insights
  3. |DoD Prohibits FY17 Funds for Contractors with Restrictive Confidentiality Agreements

DoD Prohibits FY17 Funds for Contractors with Restrictive Confidentiality Agreements

Client Alert | less than 1 min read | 11.21.16

On November 14, 2016, DoD issued a class deviation prohibiting its agencies from awarding FY17 funds to companies that require employees or subcontractors to sign internal confidentiality agreements or statements that restrict them from lawfully reporting waste, fraud, or abuse. As described here, there has been increased scrutiny by government agencies in recent years of the use of internal confidentiality agreements, and a FAR final rule on the subject is expected in the near future.

Insights

Client Alert | 7 min read | 08.17.26

Delayed Notification of Cyberattacks May Trigger HIPAA Breach Notification Rule

After identifying a ransomware attack in 2021, OSF Healthcare System waited until its forensic investigation had concluded before notifying the U.S. Department of Health and Human Services (HHS) — and the affected individuals — of the breach. The 110-day delay (nearly double the 60-calendar-day notification deadline mandated by the HIPAA Breach Notification Rule) triggered an investigation from HHS’s Office for Civil Rights (OCR). The health system’s investigation determined that protected health information (PHI) had been stolen....