Jay P. Anstine (janstine@bluebirdhealthlaw.com) is the President of Bluebird Healthlaw Partners in Fort Collins, CO.
Many in our profession called 2015 “The Year of the Hack,” and it seems 2018 has become “The Year of the State.” Perhaps due in part to lacking a federal law akin to the EU’s General Data Protection Regulation (GDPR), this year we saw several new state data protection laws. Vermont, Colorado, Alabama, Louisiana, South Carolina, South Dakota, Arizona, Oregon, and California all joined a growing list of states implementing new requirements. One area being addressed with all these new laws is imposing stricter breach notification requirements. Below are three such examples.