New U.S. regulations in the health privacy field present a number of compliance challenges for employer plans during 2013 and 2014. This session will summarize the basic rules under the Health Insurance Portability and Accountability Act (HIPAA), describe the new final regulations and their changes, and provide practical compliance assistance in areas of particular concern to employers. Among other topics, the session will cover: the changing status of business associates under HIPAA business associate agreements; the new standards for evaluating breaches of security, including risk assessment, notification, and reporting obligations; restrictions on the use of genetic information for health plan underwriting and related notice obligations; new participant rights; and enhancements to the HIPAA enforcement regime and civil penalties. Attendees will have an opportunity to raise questions about the new regulations during the session and will leave with a road map for addressing their HIPAA compliance gaps.