S 5443: Health Infrastructure Security and Accountability Act of 2026

S 5443 in plain English: This bill would strengthen cybersecurity requirements for healthcare entities, increasing penalties for violations and providing federal funding to help hospitals and other providers adopt cybersecurity practices. It sets new civil and criminal penalties for noncompliance and allocates hundreds of millions of dollars in incentive payments through Medicare.

Stated purpose

The bill aims to strengthen cybersecurity standards for health information by increasing oversight and compliance requirements for health care entities, and to provide Medicare-based support to hospitals dealing with cyberattacks.

Key points

Arguments supporters make

Arguments opponents make

Tradeoffs

Stronger cybersecurity protections and oversight come at the cost of higher compliance burdens and fees on health care organizations, which could strain smaller or less-resourced providers even as larger systems gain clearer federal guidance. The bill also trades judicial and administrative review of certain agency decisions for faster, more flexible government action on emerging cyber threats.

Current status in Congress: In committee.

NewsClear — neutral news & congressional tracking · Bill of the Week