News & Analysis

December 25, 2017
Briefings on HIPAA

Tips from this month's issue.

December 22, 2017
Medicare Web

21st Century Oncology, a national network of cancer providers headquartered in Fort Myers, Florida, came under scrutiny by the Department of Justice (DOJ) and the Office for Civil Rights (OCR) earlier this year. In December, the organization agreed to a $26 million settlement with the DOJ and a $2.3 million settlement with OCR. 21st Century Oncology filed for bankruptcy in May.

December 21, 2017
Medicare Web

Q: How long do we need to keep hard copies of medical records after they’ve been scanned into our EMR?

December 20, 2017
HIM Briefings

Most physicians are familiar with the MIPS quality models: These are the Physician Quality Reporting System (PQRS) measures that we’ve been reporting for years with the old Medicare value-based purchasing program. What we don’t know much about are the new cost efficiency models in MIPS, which are based solely on hospital and physician ICD-10-CM/CPT claims data rather than a clinical abstraction of our medical records.

December 18, 2017
Briefings on HIPAA

The general rules for security, risk analysis, and risk management implementation specifications, and evaluation standards are key directives for ongoing compliance assurance. Although risk analysis concepts guidance appears in the Security Rule, many organizations use it for auditing Privacy Rule processes as well.

December 14, 2017
Medicare Web

Q: We see many assertions that encryption at the right level meets the National Institute of Standards and Technology (NIST)/HIPAA safe harbor provision with no explanation of what is necessary to prove the breached electronic protected health information (PHI) was actually encrypted at the moment of breach. How can a covered entity prove the PHI was actually encrypted at the time of the breach?

Pages