Articles Tagged With: PHI
-
Computer Disposal Not Simple When PHI Involved
Disposing of an old, unneeded computer usually is as easy as chucking it in the dumpster out back or giving it away to charity. But not when it might contain protected health information.
-
OCR’s Update on Online Tracking Guidance Still Tricky
The Office for Civil Rights (OCR) recently updated its December 2022 bulletin regarding the use of third-party tracking technologies by HIPAA-regulated entities “to increase clarity for regulated entities and the public.” However, the clarity is questionable.
-
Compliance Requirements Continue to Change, Need Close Attention
Healthcare compliance is a never-ending challenge, and the expectations change constantly. Staying abreast of new developments is essential. Some of the latest involve the False Claims Act, Medicare risk adjustments, and HIPAA enforcement.
-
When a Privacy Breach Is Not a Breach
Language is important when talking about noncompliance with HIPAA. Not every instance of noncompliance is a breach.
-
HHS Issues HIPAA Best Practices for Telehealth
The Department of Health and Human Services published a resource guide to assist telehealth providers in explaining the privacy and security risks to patients, but the guidance makes clear HIPAA does not require this education. However, the goal is for the resource guide to help providers who would like to discuss potential risks with the patient.
-
First HIPAA Settlement for Ransomware, Fine for Phishing
The Office for Civil Rights achieved two firsts recently: a settlement agreement related to a ransomware attack on a business associate and the first fine issued for a phishing attack. Both cases hold lessons for other covered entities.
-
OCR Updates HIPAA Assessment Tool
The Office for Civil Rights has updated a self-assessment tool that covered entities can use to determine how well they are complying with HIPAA, and the new version presents an opportunity to see how useful the resource can be.
-
What to Expect After a HIPAA Violation
Discovering a HIPAA violation in your organization inevitably causes anxiety about what will follow and how bad the consequences can be. Understanding the process and what to expect can ease some of the worry and help you manage the process to the best possible resolution.
-
Plan Now for Eventual HIPAA Changes
HHS has been expected to finalize proposed modifications to HIPAA in 2023, but it now appears that will not happen until December 2024 — or later. Whenever the changes come, covered entities will need to review their compliance policies and update them within 180 days of final rulemaking.
-
State Laws on PHI Require Careful Consideration
Complying with HIPAA requirements on patient privacy may be difficult sometimes, but it is not enough. State laws also apply — and they may come with different requirements.