Over at Healthcareinfosecurity.com there is an insightful article on the first HIPAA audits. Some highlights of the article include: In the pilot phase, OCR is auditing eight health plans, two claims clearinghouses plus 10 provider organizations, including three hospitals, three physicians’ offices, and a laboratory, a dental office, a nursing/custodial facility and a pharmacy. ...
A recent incident shows just how important it is to train all workforce members on the HIPAA regulations. Notice how I used the words workforce members and not just employees. A temporary staff member of Providence Holy Cross Medical Center recently posted patient information on Facebook. The temporary staff member also made fun of...
2011 has been a great year for us and we couldn’t be more excited for 2012. We had the opportunity to work with some really great people at a lot of different medical practices throughout the United States. We got to show that the HIPAA Secure Now! process really works and can help practices with...
The National Institute of Standards and Technology (NIST) has recently released a HIPAA Security Rule Toolkit to help organizations comply with the HIPAA Security Rule. From their website: The NIST HIPAA Security Toolkit Application is intended to help organizations better understand the requirements of the HIPAA Security Rule, implement those requirements, and assess those implementations...
Kim Falkner from SPAMfighter is our guest blogger and gives her insight into hosted vs. in-house SPAM filters. It is a good topic because with SPAM comes risks to electronic protected health information (ePHI). Hosted spam filter? Better than in-house software? We do not have to delve on the fact that spam is an annoyance...
The Department of Health and Human Service (HHS) has announced that they will perform 150 HIPAA audits by the end of 2012. The chance of you getting audited is very small but what if you open up your mail one day and found a notice that your medical practice has been select to be audited?...
Leon Rodriquez the head of OCR, in an interview, stated that the 150 HIPAA audits is just a pilot program. OCR recently hired the consulting firm KPMG to launch a HIPAA compliance audit program, with 150 audits anticipated by the end of 2012. Because this is the first time the office is conducting audits, the...
Howard Anderson, Executive Editor over at HealthcareInfoSecurity.com had an insightful interview with Leon Rodriguez, the new director of the Department of Health and Human Services’ Office for Civil Rights. Rodriquez a former prosecutor and defense lawyer talks about his priorities as the head of OCR. He states: Making enforcement a priority (because) enforcement promotes compliance...
Every day we work with Practice Administrators (PAs) to help them with HIPAA compliance. It is amazing how much responsibility is placed on a PA’s plate. They are involved with hiring and firing of employees, billing, scheduling, personnel issues, insurance issues, patient issues, equipment issues, technology issues, provider issues and compliance issues. It is amazing...
FierceEMR posted a story on how some providers are attesting to meaningful use measures but are actually not addressing all of the required measures. Specifically some providers are stating that they have performed a meaningful use risk assessment on how patient data is being protected but have not actually performed the risk assessment. The article...
Recent Comments