Sad News: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Alice here: The sad news is that Jon Tomes passed away January 20, 2021. His obituary is at https://www.longviewfuneralhome.com/obituary/Jonathan-Tomes. I know that he would want .. read more
AMA/AHA Security Recommendations for Mitigating COVID-19 Cyber Risks: HIPAA & HITECH Act Blog by Jonathan P. Tomes
It isn’t exactly HIPAA, but because the Security Rule’s Security Management Process, 45 C.F.R. § 164.306(a), certainly requires covered entities and business associates to maintain .. read more
Is a Ransomware Attack Reportable to HHS? HIPAA & HITECH Act Blog by Jonathan P. Tomes
Perhaps I should rename this blog the HIPAA Ransomware Blog because that seems to be the main topic of recent blogs. Not only are such .. read more
Important Government Warnings about Ransomware: HIPAA & HITECH Act Blog by Jonathan P. Tomes
You may think that I am going overboard with all my recent blogs about ransomware. But I’m not. It is that much of a problem. .. read more
HIPAA Violations Are Still Mostly People, Not Technology: HIPAA & HITECH Act Blog by Jonathan P. Tomes
I learned a long time ago, when I served in that contradiction of terms, military intelligence, that the big risk, at that time to defense .. read more
Ban Ransomware Payments? HIPAA & HITECH Act Blog by Jonathan P. Tomes
The first death attributable to ransomware has reenergized the call to ban ransomware payments. An apparently misdirected ransomware attack against the Düsseldorf University Hospital in .. read more
COVID-19 Document Handling Protocol—a Good Idea? HIPAA & HITECH Act Blog by Jonathan P. Tomes
Although HIPAA does not require a protocol or policy for the handling of documents containing PHI if doing so involves a risk, the requirement for .. read more
New Mail SCAM Targeted at HIPAA Security, Privacy, and Compliance Officers: HIPAA & HITECH Act Blog by Jonathan P. Tomes
The Department of Health and Human Services (“HHS”) Office for Civil Rights (“OCR”) has warned health care organizations about a potential phishing scam conducted by .. read more
Health and Human Services’ Changes to 42 C.F.R. Part 2: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Although the topic of this blog item is slightly off the topic of HIPAA, it is sufficiently related to HIPAA to merit analysis. 42 C.F.R. .. read more
Telemedicine Compliance Issues Other Than HIPAA: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In what I suppose is a somewhat off-topic subject, I thought that I might remind readers that HIPAA compliance is not the only legal and .. read more