UMass Memorial Medical Group Inc. and UMass Memorial Medical Center Inc. reached a $230,000 settlement with the state of Massachusetts in response to two data breaches that exposed the personal health information of more than 15,000 Massachusetts residents.
Q: How long are we required to retain the records of out-of-state patients? Do we follow HIPAA’s record retention requirements, our state record retention requirements, or the record retention requirements of the state in which the patient lives?
In this month's Product Watch, we look at a game-changing texting app. With the available technology, covered entities and business associates would be hard-pressed to justify sending PHI using unsecure texts.