Entries from Realtime Community | IT Compliance tagged with 'privacy rule'
Today the FTC issued a consent order against mortgage lender James B. Nutter & Company for GLBA Privacy Rule and Safeguards Rule violations resulting from having an inadequte information security program and safeguards. The requirements will result in, among other...
Posted by Rebecca Herold on June 16, 2009 4:56 PM
The 2nd ever to date HIPAA sanction has been handed down by the Department of Health and Human Services (HHS)......
Posted by Rebecca Herold on February 19, 2009 9:01 AM
I just got this email notification from the Department of Health and Human Services (HHS) Office of Civil Rights (OCR) yesterday......
Posted by Rebecca Herold on February 11, 2009 4:11 PM
On February 2 Allscripts released a report, "The 2009 Economic Stimulus Plan and the Electronic Health Record: Opportunities and Challenges for U.S. Medical Groups; A Survey of 1,800 Healthcare Professionals" (NOTE: Registration is required, but it's free.) A few excerpts...
Posted by Rebecca Herold on February 11, 2009 10:52 AM
Today the Institute of Medicine (IOM) released a report, "Beyond the HIPAA Privacy Rule: Enhancing Privacy, Improving Health Through Research"......
Posted by Rebecca Herold on February 4, 2009 4:21 PM
I anticipate that with the big $700 billion "rescue" plan the government is going to continue the increased compliance activities......
Posted by Rebecca Herold on November 10, 2008 2:55 AM
Yesterday the Department of Health and Human Services (HHS) Office for Civil Rights (OCR) posted a new HIPAA frequently asked question (FAQ) to their site; a great question that many organizations do not even consider until after the fact......
Posted by Rebecca Herold on October 7, 2008 5:50 PM
Today I communicated with Sue Marquette Poremba at SC Magazine for an article she published this afternoon, "Proliferating HIPAA complaints and medical record breaches" She had seen my blog posting from yesterday, "HIPAA Complaints And Associated Resolutions Since 2003" and...
Posted by Rebecca Herold on May 23, 2008 7:43 PM
The U.S. Health Insurance Portability and Accountability Act (HIPAA) has required compliance from covered entities (CEs) since 2003. The Department of Health and Human Services (HHS) is the Federal agency with regulatory oversight for compliance; with the Office of Civil...
Posted by Rebecca Herold on May 22, 2008 12:25 PM
The U.S. Centers for Medicare and Medicaid Services (CMS) announced last week that they plan to audit 10 - 20 hospitals for HIPAA compliance in the next 9 months according to a Government Health IT article....
Posted by Rebecca Herold on January 21, 2008 8:51 PM
I just read a very interesting article, "CMS' HIPAA watchdog presents potential conflict" that made me go Hmmm!! The genesis of the article is that the Centers for Medicare and Medicaid Services (CMS), the agency that is responsible for the...
Posted by Rebecca Herold on January 15, 2008 2:30 AM
On December 17 the U.S. Federal Trade Commission (FTC) fined and penalized American United Mortgage Company for throwing the personally identifiable information (PII) and financial information of its customers and consumers into an open, publicly-accessible dumpster. Under the terms of...
Posted by Rebecca Herold on December 26, 2007 2:41 PM
It seems there are more and more stories related to patient privacy and HIPAA popping up lately. Today another story caught my eye related to them....
Posted by Rebecca Herold on October 11, 2007 6:45 PM
A couple of weeks ago I blogged about the Ivinson Memorial Hospital applying sanctions to their staff for violating HIPAA requirements. They have set a good example...another hospital has also applied sanctions...suspending 27 of their staff members for violating HIPAA...
Posted by Rebecca Herold on October 10, 2007 7:33 PM
It is great to see a story published about a hospital, actually any type of organization that is a covered entity (CE), that is actively and seriously trying to be in compliance with HIPAA requirements....
Posted by Rebecca Herold on September 29, 2007 4:19 PM
Gosh, I just had a flashback to the "Where's the Beef" commercial from years ago... :) The U.S. Health Insurance Portability and Accountability Act (HIPAA) Privacy Rule went into effect in April, 2001, and gave covered entities (CEs) two years...
Posted by Rebecca Herold on September 12, 2007 7:32 PM
There are so many ways in which bad things can happen with the authorized access personnel and business partners have to sensitive data, personally identifiable information (PII), and business systems. Many times the bad things that happen are a result...
Posted by Rebecca Herold on September 10, 2007 9:17 AM
During a divorce case in Illinios, K.S. Kim claimed a hospital violated HIPAA by sending her health records to her ex-husband's attorney....
Posted by Rebecca Herold on July 13, 2007 1:30 AM
I've been reading so much about HIPAA lately; no enforcement actions yet, but a lot of changes, proposals and initiatives. Two more I read about recently:...
Posted by Rebecca Herold on April 26, 2007 12:30 AM
The Department of Health and Human Services (HHS) has a Confidentiality, Privacy, and Security Workgroup, also known as the American Health Information Community, that is made up of practitioners, IT folks, lawyers and other leaders outside of the government who...
Posted by Rebecca Herold on April 23, 2007 10:53 AM
On April 13 the Pittsburgh Tribune-Review reported that the University of Pittsburgh Medical Center (UPMC) admitted to using the records of 80 patients, including names and Social Security numbers, for a presentation they made at a 2002 symposium, in violation...
Posted by Rebecca Herold on April 16, 2007 7:51 PM
Something that has bothered me, and many others, for a very long time is how there have been absolutely no enforcement actions for the Health Insurance Portability and Accountability Act (HIPAA) privacy rule or security rule since they went into...
Posted by Rebecca Herold on April 9, 2007 5:01 PM
Site tags used on this blog: