Tag: HIPAA

  • Tracking A Patient’s Every Move: HIPAA Compliance Risk

    Tracking A Patient’s Every Move: HIPAA Compliance Risk

    By: Kelli Fleming with Burr & Forman LLP The Health and Human Services Office for Civil Rights (”OCR”) recently published a guidance bulletin addressing the use of online tracking technologies by entities covered by HIPAA, including but not limited physician practices.  A tracking technology is used to collect information about how online users interact with…

  • Phishing Emails: One Click and That’s It!

    Phishing Emails: One Click and That’s It!

    Many health care entities recognize that cybersecurity threats present a substantial risk to their organization. Moreover, the HIPAA Security Rule requires health care providers to develop and implement policies and procedures to ensure the confidentiality, integrity and availability of protected health information. However, while entities aim to secure health data, a recent study of health…

  • What Are the Top Three Concerns When Negotiating Business Associate Agreements?

    What Are the Top Three Concerns When Negotiating Business Associate Agreements?

    Business Associate Agreements (“BAAs”) are a necessary tool for ensuring HIPAA compliance, and the negotiated terms of BAAs are becoming more and more important as we venture into an era of mass cyber attacks and related HIPAA breaches. Covered entities, such a physician practices, are required to enter into a BAA anytime they hire a…

  • The Delivery and Confidentiality Challenges in Rural Health Care Explained

    The Delivery and Confidentiality Challenges in Rural Health Care Explained

    Medical practices in rural settings face a host of concerns, such as how emergency protocols may differ from urban areas, difficulty in finding nurses (according to a recent Friday Letter from the Alabama Hospital Association, registered nurses are the third most in-demand jobs), and difficulty in finding appropriate training for staff. In small towns/rural settings,…

  • Can We Overhaul Our ‘Broken’ Health Data System?

    Can We Overhaul Our ‘Broken’ Health Data System?

    COLUMBUS, Ohio – Our system for protecting health data in the United States is fundamentally broken, and we need a national effort to rethink how we safeguard this information, according to three experts in data privacy. “Data scandals are occurring on a regular basis, with no end in sight,” said Efthimios Parasidis, a co-author of…

  • How Are HIPAA Breaches Impacting Alabama?

    How Are HIPAA Breaches Impacting Alabama?

    by

    in

    HIPAA enforcement reached an all-time high in 2018, with financial settlements ranging from $100,000 to $16,000,000.  The Department of Health and Human Services (HHS) Office of Civil Rights (OCR) is responsible for providing oversight and ensuring HIPAA compliance. Last year alone, OCR resolved a total of 25,089 complaints of HIPAA violations and required at least…

  • HHS Lowers Annual Limits of Penalties for HIPAA Violations

    HHS Lowers Annual Limits of Penalties for HIPAA Violations

    by

    in

    Published in the Federal Register on April 30, 2019, the Department of Health and Human Services (“HHS“) issued a notification to inform the public that HHS is exercising its discretion in how it applies regulations concerning the assessment of civil money penalties (“CMPs“) under the Health Insurance Portability and Accountability Act of 1996 (“HIPAA“), as…

  • How Can You Ensure Your Email is Safe and HIPAA Compliant?

    How Can You Ensure Your Email is Safe and HIPAA Compliant?

    by

    in

    Using free email providers like Gmail, Yahoo, and MSN are expedient and easy to set up. It’s the reason why some healthcare providers rely on them. While you could stretch to make the argument that these email services can be configured to be “HIPAA capable,” none in the eyes of security experts are HIPAA compliant.…

  • The Painful Reality of Ransomware and How to Protect Against It

    The Painful Reality of Ransomware and How to Protect Against It

    Imagine if in a split second you were unable to access all of your patients’ health care records. A cruel ransomware attack had locked you out of your computer system, and in order to regain your precious data you needed to pay a cybercriminal’s demand in bitcoin. Unfortunately by the time you finish reading this…

  • Think Your Practice Management Software Makes You HIPAA Compliant?

    Think Your Practice Management Software Makes You HIPAA Compliant?

    Complying with HIPAA security standards is a complex matter that demands a comprehensive solution. As a busy healthcare provider, it’s easy and convenient to trust that your practice management software satisfies the necessary HIPAA requirements to keep your electronic medical records safe. But the truth is, in most cases, it doesn’t. A False Sense of…