The 2009 HITECH Act created the breach reporting rule. The following will summarize the rule, paying specific attention to the modifications that were detailed in the Omnibus Rule of January 23, 2013.
The Mississippi State Department of Health in Jackson, Mississippi, recently notified 30,799 patients of an email breach that gave a Centers for Disease Control and Prevention contractor unauthorized access to patient information, according to a press release
Q. Do laptops need to be encrypted if there is no PHI stored on them? Employees do use them to access PHI, but the PHI is stored remotely. We have a policy that states that employees are not allowed to save PHI to laptops.
Brush up on the Joint Commission's data management session topics before surveyors visit your hospitals. Follow these tips to ensure a successful survey.
Primary Health Care in Des Moines, Iowa, recently announced an email breach of its system one year after discovery. This exceeds the timeframe outlined in the HIPAA Breach Notification Rule, which states that organizations are required to report a breach within 60 days of discovery.