News & Analysis

October 1, 2014
Briefings on HIPAA

The September 22, 2014, deadline to revise business associate agreements (BAA) may have seemed like a date far in the future when the HIPAA omnibus final rule was released January 25, 2013. However, this compliance date is now in our rearview mirror as we continue to move along the road toward establishing and maintaining compliance with the HIPAA Privacy Rule and Security Rule.

October 1, 2014
Briefings on HIPAA

In the wake of several large breaches, OCR is ready to ramp up its oversight of HIPAA compliance as it embarks upon Phase 2 of its HIPAA privacy, security, and breach notification audits. OCR began preparing for this round of audits around the same time that news broke of the second-largest HIPAA breach in the U.S., a hacking incident that affected 4.5 million patients treated at or referred to Tennessee-based Community Health Systems, Inc.

September 1, 2014
Briefings on HIPAA

Tips from this month's issue

September 1, 2014
Briefings on HIPAA

With so many moving parts in a healthcare organization, privacy and security incidents are sometimes difficult to track and manage.

September 1, 2014
HIM Briefings

Q: Are there any penalties for sending an unencrypted email containing PHI to the intended recipient? Would this just be a violation of the CE's policy and not a privacy breach under HITECH?

September 1, 2014
Briefings on HIPAA

Q: I am employed by an acute care psychiatric hospital. The hospital's police department will sometimes take photographs of injuries patients have at the time of admission.

Pages