HIPAA News
Patient Medical Record Access Guidance Issued by ONC

Patient Medical Record Access Guidance Issued by ONC

Patient medical record access guidance has been issued by the Department of Health and Human Services’ Office of the National Coordinator for Health Information Technology (ONC). The HIPAA Privacy Rule permits patients to obtain copies of their health information from...

OCR Explains How Covered Entities Should Respond to a Cyberattack

OCR Explains How Covered Entities Should Respond to a Cyberattack

The healthcare industry is under attack from hackers and malicious insiders. Systems are being compromised at a greater rate than ever before. Last year saw record numbers of HIPAA breaches reported to OCR and the trend has continued in 2017. This year looks like it...

Covered Bodies Reminded of Security Incident Requirement by OCR

Covered Bodies Reminded of Security Incident Requirement by OCR

The recent ransomware attacks and healthcare IT security incidents have driven the Department of Health and Human Services’ Office for Civil Rights to release a reminder to covered entities about HIPAA Rules on security breaches. In its May 2017 Cyber Newsletter, OCR...

HIPAA Enforcement Update Provided by OCR’s Iliana Peters

HIPAA Enforcement Update Provided by OCR’s Iliana Peters

Iliana Peters, Office for Civil Rights Senior Advisor for HIPAA Compliance and Enforcement, has given an update on OCR’s enforcement activities in a recent Health Care Compliance Association ‘Compliance Perspectives’ podcast. OCR reviews all data breaches involving...

Major Budget Cuts for OCR and ONC

Major Budget Cuts for OCR and ONC

The Trump administration has revealed its 2018 fiscal budget with the Department of Health and Human Services’ Office for Civil Rights (OCR) and Office of the National Coordinator for Health Information Technology (ONC) both facing major cuts to their operational...

Disclosure of HIV Status to Employer Results in $387,000 HIPAA Fine

Disclosure of HIV Status to Employer Results in $387,000 HIPAA Fine

St. Luke’s-Roosevelt Hospital Center Inc., has paid OCR $387,200 to resolve potential HIPAA violations identified during an OCR investigation of a complaint about a disclosure of PHI without permission. In September 2014, OCR was informed of a potential privacy...

HIPAA Rules on Ransomware Confirmed by OCR

HIPAA Rules on Ransomware Confirmed by OCR

Following the recent WannaCry ransomware attacks, the Department of Health and Human Services’ Office for Civil Rights (OCR) was particularly active. OCR sent out warnings, updates, and threat information related to WannaCry ransomware. OCR also took the attacks as an...

$2.4 Million HIPAA Fine for Memorial Hermann Health System

$2.4 Million HIPAA Fine for Memorial Hermann Health System

A $2.4y m settlement has been agreed by Memorial Hermann Health System with the Department of Health and Human Services’ Office for Civil Rights (OCR) to settle potential HIPAA Privacy Rule violations  The settlement arises from an impermissible disclosure on an...

Record-Breaking Year for Healthcare Data Breaches on the Cards

Record-Breaking Year for Healthcare Data Breaches on the Cards

Indications are that 2017 will be another record breaking year for healthcare data violations. Results for the first quarter of 2017 show data breaches have risen, with rises in theft incidents, hacks and unauthorized disclosures. Last year was a very bad year for...

Concern Expressed by LGBT Groups About New OCR Appointment

Concern Expressed by LGBT Groups About New OCR Appointment

Following the appointment of Roger Severino as head of OCR many human rights organizations have expressed concern over  due to the views he views regarding transgender people and same-sex marriages. Mr Severino has written a number of reports in which he has expressed...

Severino Appointed Director of HHS’ Office for Civil Rights

Severino Appointed Director of HHS’ Office for Civil Rights

Former civil rights trial attorney Roger Severino has been appointed by The Department of Health and Human Services’ Office for Civil Rights has a new leader by The Trump Administration. Mr Severino will lead the HIPAA enforcement efforts of the Office for Civil...

AHIMA Issues Updated HIPAA Compliance Audit Toolkit

AHIMA Issues Updated HIPAA Compliance Audit Toolkit

With Phase 2 of the Department of Health and Human Services’ Office for Civil Rights HIPAA compliance audits now well underway, the American Health Information Management Association (AHIMA) has updated its HIPAA audit readiness toolkit. Late last year, covered bodies...

$5.5 Million Paid by Memorial Healthcare System

$5.5 Million Paid by Memorial Healthcare System

The Department of Health and Human Services’ Office for Civil Rights (OCR), equaling last year’s record HIPAA settlement with Advocate Health, announced that a $5.5 million settlement had been agreed with Florida-based Memorial Healthcare Systems to settle potential...

Late Data Breach Reports Could Lead to Fines for Covered Bodies

Late Data Breach Reports Could Lead to Fines for Covered Bodies

In January 2017, the Department of Health and Human Services’ Office for Civil Rights issued a communication to covered entities in relation to the late reporting of data breaches following the announcement of a settlement with Chicago-based healthcare network...

6,200 Patient Records Illegally Accessed by Hospital Employee

6,200 Patient Records Illegally Accessed by Hospital Employee

Covenant HealthCare has advised more than 6,000 patients that their electronic medical records were inappropriately accessed by one of its staff members. The improper access was identified during a November 2016 review of EMR access logs. The audit revealed an unusual...

Delayed HIPAA Breach Notification Leads to $475,000 Settlement

Delayed HIPAA Breach Notification Leads to $475,000 Settlement

The first HIPAA settlement of 2017 has been announced by the Department of Health and Human Services’ Office for Civil Rights (OCR). This is also the first settlement to date specifically based on an unnecessary delay to breach notification after the exposure of...

Impermissible Disclosure of ePHI Lead to $2.2 Million Settlement

Impermissible Disclosure of ePHI Lead to $2.2 Million Settlement

MAPFRE Life Assurance Company of Puerto Rico – A subsidiary of MAPFRE S.A., of Spain – has agreed a $2.2 million settlement, with the U.S. Department of Health and Human Services’ Office for Civil Rights, to resolve potential noncompliance with the Health Insurance...

Virginia State Senator Avoids HIPAA Violation Fine for

Virginia State Senator Avoids HIPAA Violation Fine for

During her campaign to become Republican state senator for Virginia in 2015, Henrico County physician Siobhan Dunnavant, M.D., impermissably used patients’ contact information – classed as protected health information under HIPAA Rules – to garner donations from...

An Overview of HIPAA Settlements in 2016

An Overview of HIPAA Settlements in 2016

HIPAA settlements reached record highs in 2016. This is in part due to the Department of Health and Human Services’ Office for Civil Rights increasing its enforcement activities in recent years. In total, payments of $22,855,300 were made to OCR in 2016 to resolve...

Raise the level of HIPAA Awareness in your organization with Learner-Friendly, Comprehensive and Affordable HIPAA Training.

COMPREHENSIVE HIPAA TRAINING

Privacy is key to everything that we do at J Flowers Health Institute. We require the highest data privacy standards in our daily operations between our team members and patients. The HIPAA compliance and cyber security training we provide to our teams with ComplianceJunction creates enormous value for our organization.

Kevin DeLoach

Chief Operating Officer
J. Flowers Health Institute