November 12, 2020
News & Insights

Q: What are the essential steps when conducting a risk analysis? Are there any sample tools out there to provide guidance on best practices for risk analyses? How often should organizations be conducting these tests?

November 10, 2020
News & Insights

The Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and HHS released a joint advisory on October 28 to warn healthcare organizations of potential cyberattacks.

November 9, 2020
Briefings on HIPAA

The complexity and competitiveness of today’s business environment require that organizations have early warning systems to identify times when they face certain risks. Compliance officers should be active participants in the organization’s risk assessment process.

November 3, 2020
News & Insights

Aetna Life Insurance Company and its affiliated covered entity agreed to pay $1 million to the Office for Civil Rights (OCR) and to adopt a corrective action plan to settle three potential HIPAA violations that occurred in 2017.

November 5, 2020
News & Insights

Q: Workers will likely remain remote for the foreseeable future, but as coffee shops and restaurants begin to reopen, it’s possible that employees may be accessing protected health information (PH)  in these locations. While it is best practice to avoid doing this altogether, what should employees do to avoid exposing PHI in this scenario?

November 2, 2020
Briefings on HIPAA

The rate at which cybercriminals target healthcare organizations continues to rise, and the consequences of the attacks are becoming more severe. Two recent high-profile attacks illustrated the urgent need for healthcare organizations to defend against cyberattacks, particularly those involving ransomware, and the importance of comprehensive backup policies and procedures to continue operations in the event of an attack that compromises the network.

October 29, 2020
News & Insights

Q: If employees are working remotely and accessing protected health information (PHI) not only on their computers and mobile devices, but printing it as well, how should they safely dispose of the printed PHI?

October 27, 2020
News & Insights

The Georgia Department of Human Services (Georgia DHS) on October 9 reported a security incident that potentially affected 45,732 individuals, according to the Office for Civil Rights (OCR) breach report.

October 26, 2020
Briefings on HIPAA

Q: Can an independent radiology facility mail postcards with a reminder that it's time for patients to schedule? The postcard would include the patient's name and address, obviously, but then either a check mark by screening mammogram or the words “follow-up exam.”

October 20, 2020
News & Insights

Oaklawn Hospital, a healthcare provider in Marshall, Michigan, recently reported a security incident that potentially impacted 26,861 individuals, according to the Office for Civil Rights (OCR) breach report.

Pages