Good infographic on the need to implement secure communications to protect patient information Original infographic can be found at TheConnectedClinician.com [divider_line] [divider_line]
One of our medical practice clients contacted us regarding a breach of Protected Health Information (PHI) by their billing company. The client received a letter from the billing company’s attorney stating that 60 of the client’s patients had their information breached when the billing company’s file server was compromised. The PHI included treatment reports, name,...
The post appeared on June 26, 2014 in EMR & HIPAA It’s one thing to have a laptop stolen with 8,000 patient records or for a disgruntled doctor to grab his patients’ records and start his own practice. It’s another when the Cosa Nostra steals that information, siphons money from the patient’s bank account and...
Here is a quote from one of our IT partners: My client got physically upset at me when I brought up the topic of HIPAA. They didn’t want to discuss it and said it was just another government regulation and they just want to practice medicine. While I was shocked to hear someone actually say...
Centers for Medicare & Medicaid Services (CMS) has proposed extending the use of 2011 certified EHR technology (CEHRT) into 2014. Previously all eligible providers (EPs) were required to use 2014 CEHRT to attest for Meaningful Use in 2014. The table below explains what version and what Meaningful Use objectives EPs can use in 2014 ...
Here is a list of common HIPAA violations that we find while performing a HIPAA Risk Assessment: Using Dropbox to store PHI Everyone loves Dropbox! Dropbox is simple, easy to use and convenient. It makes backing up and sharing data very easy. Unfortunately Dropbox is NOT HIPAA compliant. So use Dropbox for personal use but...
The U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) levied $1,975,220 in fines on two entities for HIPAA violations. Both entities had breaches related to lost laptops that were not encrypted to protect the patient information. Concentra Health Services (Concentra) was handed down a $1,725,220 for a stolen laptop that...
There is an article over at HealthIT Security that discusses the new Department of Health and Human Services – HHS security risk assessment tool. The article interviews Alisa Chestler a shareholder in the Washington, D.C. office of Baker Donelson. Alisa shares many of the same thoughts I had when I reviewed the tool for the...
When it comes to complying with the HIPAA Security and Omnibus Rules, there is a lot of confusion as to what needs to be done. And if you look at the amount of work it can be overwhelming; security risk assessment, employee training, policies and procedures, business associates, breach notification, encryption, disaster recovery to name...
Recent Comments