August 1, 2019
Briefings on HIPAA

Our expert answers HIPAA questions about out-of-state patients, smartphones, and HIPAA training.

August 1, 2019
Briefings on HIPAA

HIPAA training is required by the HIPAA rules, under § 164.530, Administrative requirements. But just because it’s required doesn’t mean it has to be repetitive, boring, or unappealing. There are ways to make your healthcare staff excited about HIPAA training. At the very least, you can do your part to make sure they’re engaged.

August 16, 2019
News & Insights

The New York City Fire Department (FDNY), which operates ambulances, disclosed in August that 10,253 patients treated or transported by the FDNY from 2011 to 2018 may have had their protected health information (PHI) compromised after an external hard drive containing unencrypted data went missing in March, according to an FDNY press release.

August 15, 2019
News & Insights

Q: Is there anything that a hospital needs to do regarding HIPAA and the confidentiality of famous patients? Obviously employees shouldn’t snoop, but can you recommend any added protections?

August 1, 2019
Briefings on HIPAA

OCR in 2013, through the Health Information Technology for Economic and Clinical Health (HITECH) Ac,t issued a final rule identifying provisions of the HIPAA rules that apply directly to business associates (BA) and those provisions for which BAs are directly liable.

August 8, 2019
News & Insights

Q: Research coordinators are tasked with finding suitable candidates for research studies. Because our coordinators work for a hospital, is the work they do in finding candidates for research an activity that is subject to HIPAA? What do we need to do to ensure HIPAA compliance?

August 1, 2019
Briefings on HIPAA

HIPAA security officers arguably have more on their plates now than ever before as the cloud and mobile era are fully upon us and potential cybercriminal access to PHI increases,

August 1, 2019
News & Insights

Q: Do HIPAA privacy rules apply to foreign nationals receiving healthcare from a U.S.-based healthcare provider? Are there any provisions for sharing information with a patient’s provider overseas?

July 12, 2019
News & Insights

The Nemadji Research Corp., a patient eligibility and billing service based in Minnesota, announced that the protected health information of thousands of patients may have been exposed earlier this year after a Nemadji employee fell victim to a phishing attack.

July 25, 2019
News & Insights

Q: We still use a color-coded filing system at my organization that uses specific colors to identify patient types, like whether an individual is a Medicaid/CHIP patient. These files are mostly used for billing documentation. Because the colors identify patient type, would this be considered a HIPAA violation?

Pages