HIPAA News
OCR Clarifies Permitted Uses and Disclosures of PHI

OCR Clarifies Permitted Uses and Disclosures of PHI

The Office for Civil Rights encourages suggestions from HIPAA-covered bodies about aspects of HIPAA that are unclear or need further clarification. Some of the inquiries submitted via the OCR website indicate some covered bodies are struggling to comprehend the Health...

HIPAA Violation Costs Lincare $239,800

HIPAA Violation Costs Lincare $239,800

OCR has ordered a HIPAA-covered entity to pay civil monetary penalties for HIPAA breaches. Lincare Inc. must to pay $239,800 for violations of the HIPAA Privacy Rule which were found during the investigation of a complaint about a breach of 278 patient records. The...

Law Firms are not Complying with HIPAA Rules: Survey

Law Firms are not Complying with HIPAA Rules: Survey

A recent survey carried out by Legal Workspace suggests that many are not. In fact, most health attorneys are not in adherence with HIPAA Rules and have failed to implement the appropriate technical, administrative, and physical measures to keep PHI/PII secure. Legal...

Healthcare Pager and Fax Replacement Launched by TigerText

Healthcare Pager and Fax Replacement Launched by TigerText

TigertText has revealed the launch of two new communication solutions for healthcare providers. The two new devices have clear potential, and could convince many healthcare providers to start replacing pagers and faxes. The new products, named TigerPage &...

Upgrade Internet Explorer to Remain HIPAA Compliant

Upgrade Internet Explorer to Remain HIPAA Compliant

Microsoft will be stopping support and security updates for Internet Explorer 8, 9 and 10 as of Wednesday January 12, 2016. All users of Internet Explorer must switch to Internet Explorer 11, or make the switch over to Microsoft Edge, in order to continue receiving...

Oregon Breach Notification Law Now Applicable

Oregon Breach Notification Law Now Applicable

Organizations operating in Oregon must now adhere with a new data breach law that came into effect on January 1, 2016. If a data breach that exposes the personal information of more than 250 state residents is experienced, a breach notice must be filed to the Oregon...

New Guidance on Patient Data Access Issued by OCR

New Guidance on Patient Data Access Issued by OCR

The Department of Health and Human Services’ Office for Civil Rights has started 2016 with the launch of a brand new website interface, and has now followed up on previous assurance by issuing new guidance on HIPAA. This is the first in what is expected to be a...

NICS Reports Now Permitted Under HIPAA Privacy Rules

NICS Reports Now Permitted Under HIPAA Privacy Rules

The Department of Health and Human Services has revealed a final rule permitting certain covered bodies to disclose specific elements of Protected Health Information (PHI) to the National Instant Criminal Background Check System (NICS), altering the HIPAA Privacy...

Long Awaited Upgrade for OCR Website

Long Awaited Upgrade for OCR Website

The Department of Health and Human Services’ Office for Civil Rights website has completed a redesigned recently, upgrading with new features, a responsive design and a more user-friendly feel. The redesign was part of the Reimagined HHS.gov project. The aim was to...

Phishing Simulation Exercises Valuable: Official Study

Phishing Simulation Exercises Valuable: Official Study

The Office for Civil Rights recently release its first financial penalty to an organization that experienced a data violation after its staff responded to a phishing campaign. The case lead to The University of Washington Medicine agreeing to a $750,000 fine to settle...

Omnibus Bill Addresses Healthcare Cybersecurity

Omnibus Bill Addresses Healthcare Cybersecurity

New cybersecurity measures specifically for the healthcare industry have been added to the Omnibus bill signed into law by Congress late last week. The aim of their inclusion is to help healthcare organizations tackle the growing danger of cyberattacks, and supply...

HIPAA Compliant Texting App for Desktops Launched by TigerText

HIPAA Compliant Texting App for Desktops Launched by TigerText

TigerText, the largest supplier of secure text messaging solutions, has revealed the its latest initiative, TigerText Anywhere: A HIPAA compliant secure texting app for desktop computing. TigerText’s HIPAA compliant text message platform has already been a great...

Security  Vulnerabilities at Medi-Cal MCOs Revealed in OIG Audit

Security Vulnerabilities at Medi-Cal MCOs Revealed in OIG Audit

The Department of Health & Human Services Office of Inspector General has recently published the results of information system reviews conducted on three Californian Medicaid managed-care organizations (MCOs), revealinf numerous, significant security...

University of Washington Medicine School Fined $750,000

University of Washington Medicine School Fined $750,000

University of Washington Medicine has agreed to settle a HIPAA fine of $750,000, for potential HIPAA violations with the Department of Health and Human Services’ Office for Civil Rights, arising from a 90,000-record data breach experienced in 2013. There has been an...

NY Attorney General HIPAA Fine for URMC

NY Attorney General HIPAA Fine for URMC

An HIPAA fine of $15,000 has been issued by the attorney general to University of Rochester Medical Center for a breach of patient privacy that happened in March, 2015. It is not only the Office for Civil Rights that issues financial penalties for violations of HIPAA...

HIPAA Violation Fine $3.5 Million for Triple-S

HIPAA Violation Fine $3.5 Million for Triple-S

The Department of Health and Human Services’ Office for Civil Rights has agreed a HIPAA violation fine of $3.5 million with Puerto Rico Blue Cross Blue Shield licensee Triple S Management Corporation. This is the second HIPAA violation fine to be revealed in the space...

Improper Disposal of PHI: Texas Attorney General Takes Action

Improper Disposal of PHI: Texas Attorney General Takes Action

A legal case has been filed by the Texas attorney general’s office against Alliance Health Management & Consulting Inc., for the improper disposal of Protected Health Information (PHI) of patients. The home healthcare management company is no longer operating,...

Social Media HIPAA Violation: Healthcare Provider Not Liable

Social Media HIPAA Violation: Healthcare Provider Not Liable

This week a case against University of Cincinnati Medical Center (UCMC) was presided over by Judge Jody Luebbers in the Hamilton County Common Pleas Court in relation to the posting of Protected Health Information of a patient on social media. The incident that lead...

Electronic HIPAA Transactions: New Rules Approved by CAQH CORE

Electronic HIPAA Transactions: New Rules Approved by CAQH CORE

As part of Phase IV of the CAQH® CORE® Operating Rules, the CAQH® Committee on Operating Rules for Information Exchange (CORE®) recently approved new national rules for electronic HIPAA transactions. These new rules for electronic HIPAA transactions govern four groups...

ICD-10 Transition: WEDI Issues New Resources

ICD-10 Transition: WEDI Issues New Resources

The Workgroup for Electronic Data Interchange (WEDI) has developed two new resources to help groupsput in place the new ICD-10 codes required by the Health Insurance Portability and Accountability Act (HIPAA). The new resources, ICD-10 State Workers’ Compensation...

HIPAA Compliance Audits to Commence in 2016: New Deputy Director

HIPAA Compliance Audits to Commence in 2016: New Deputy Director

The newly appointed Deputy Director for Information Privacy at the Department of Health and Human Services’ Office for Civil Rights has been adjusting to her new role at the OCR since her appointment earlier this year, but until recently she has not given spoken to...

Cancer Care Group to Pay $750,000 HIPAA Non-Compliance Penalty

Cancer Care Group to Pay $750,000 HIPAA Non-Compliance Penalty

Cancer Care Group, an Indiana-based radiation oncology private physician practice, has agreed to settle with the Department of Health and Human Services’ Office for Civil Rights for $750,000, for potential HIPAA breaches relating to a 2012 data violation. In August...

FitBit Launches HIPAA Compliant Wellness Platform

FitBit Launches HIPAA Compliant Wellness Platform

Fitbit, America’s leading producer of activity and fitness trackers, announced it has developed a HIPAA compliant wellness platform which it should corner the lucrative healthcare market. The company has dabbled with health and fitness trackers for the healthcare...

OIG: VA Vulnerable to Data Exposure Via Employees’ Social Media App

OIG: VA Vulnerable to Data Exposure Via Employees’ Social Media App

The VA Office of the Inspector General (OIG) has recently issued the findings of its administrative examination of  into improper web-based collaboration technology by the Department of Veteran Affairs (VA). It found the agency is particularly vulnerable to data...

Raise the level of HIPAA Awareness in your organization with Learner-Friendly, Comprehensive and Affordable HIPAA Training.

COMPREHENSIVE HIPAA TRAINING

Please enable JavaScript in your browser to complete this form.

Privacy is key to everything that we do at J Flowers Health Institute. We require the highest data privacy standards in our daily operations between our team members and patients. The HIPAA compliance and cyber security training we provide to our teams with ComplianceJunction creates enormous value for our organization.

Kevin DeLoach

Chief Operating Officer
J. Flowers Health Institute