The Hacking Policy Council (“HPC”) submits the following comments in response to the New York Department of Health’s proposed addition to Section 405.46 to Title 10 NYCRR (“Hospital Cybersecurity Requirements). We thank the Department of Health for the opportunity to provide input towards this important proposal. The HPC is a group of industry experts dedicated to creating a more favorable legal, policy, and business environment for security vulnerability disclosure and management, good faith security research, penetration testing, bug bounty programs, and independent repair for security. From this perspective, we recognize the importance of cybersecurity for healthcare and are broadly supportive of the Department of Health’s efforts to update sector security practices

Read Next

European Commission Announces New Action Plan To Confront Cybersecurity Challenges in the Age of AI

The European Commission released an Action Plan on Cybersecurity and AI, outlining how it intends to manage the growing cybersecurity risks associated with frontier AI models and strengthen Europe’s own AI-enabled cybersecurity capabilities.

Child Online Protection in Latin America

Digi Americas Alliance's latest report examines national approaches across six Latin American countries, highlights leading international frameworks, and offers recommendations to strengthen regional cooperation while respecting national differences.

Five Lessons from a Cross-Border Drone Attack Exercise

A tabletop exercise in Detroit underscores the national security risks to critical infrastructure and public spaces associated with drone attacks.