<?xml version="1.0"?>
<?xml-stylesheet type="text/xsl" href="billres.xsl"?>
<!DOCTYPE bill PUBLIC "-//US Congress//DTDs/bill.dtd//EN" "bill.dtd">
<bill bill-stage="Referred-in-Senate" bill-type="olc" dms-id="H220AB15EE3D34241A9F8FCC56E65115B" public-private="public" stage-count="1"><metadata xmlns:dc="http://purl.org/dc/elements/1.1/">
<dublinCore>
<dc:title>113 HR 3811 : Health Exchange Security and Transparency Act of 2014</dc:title>
<dc:publisher>U.S. House of Representatives</dc:publisher>
<dc:date>2014-01-13</dc:date>
<dc:format>text/xml</dc:format>
<dc:language>EN</dc:language>
<dc:rights>Pursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain.</dc:rights>
</dublinCore>
</metadata>
<form>
<distribution-code display="yes">IIB</distribution-code><congress>113th CONGRESS</congress><session>2d Session</session><legis-num>H. R. 3811</legis-num><current-chamber display="yes">IN THE SENATE OF THE UNITED STATES</current-chamber><action><action-date date="20140113">January 13, 2014</action-date><action-desc>Received; read twice and referred to the <committee-name committee-id="SSHR00">Committee on Health, Education, Labor, and Pensions</committee-name></action-desc></action><legis-type>AN ACT</legis-type><official-title display="yes">To require notification of individuals of breaches of personally identifiable information through Exchanges under the Patient Protection and Affordable Care Act.</official-title></form><legis-body id="HCBC524415F4B4E24B9E408C6CB8885FA" style="OLC"><section id="H86F4176578FE498B86FAE5AE4C071EF0" section-type="section-one"><enum>1.</enum><header>Short title</header><text display-inline="no-display-inline">This Act may be cited as the <quote><short-title>Health Exchange Security and Transparency Act of 2014</short-title></quote>.</text></section><section id="H10E8B6A8E80B40DDACBA5D63F9B7A41B"><enum>2.</enum><header>Notification of individuals of breaches of personally identifiable information through PPACA Exchanges</header><text display-inline="no-display-inline">Not later than two business days after the discovery of a breach of security of any system maintained by an Exchange established under section 1311 or 1321 of the Patient Protection and Affordable Care Act (<external-xref legal-doc="usc" parsable-cite="usc/42/18031">42 U.S.C. 18031</external-xref>, 18041) which is known to have resulted in personally identifiable information of an individual being stolen or unlawfully accessed, the Secretary of Health and Human Services shall provide notice of such breach to each such individual.</text></section></legis-body><attestation><attestation-group><attestation-date chamber="House" date="20140110">Passed the House of Representatives January 10, 2014.</attestation-date><attestor display="yes">Karen L. Haas,</attestor><role>Clerk</role></attestation-group></attestation></bill>


