Is a Ransomware Attack Reportable to HHS? HIPAA & HITECH Act Blog by Jonathan P. Tomes
Perhaps I should rename this blog the HIPAA Ransomware Blog because that seems to be the main topic of recent blogs. Not only are such .. read more
Important Government Warnings about Ransomware: HIPAA & HITECH Act Blog by Jonathan P. Tomes
You may think that I am going overboard with all my recent blogs about ransomware. But I’m not. It is that much of a problem. .. read more
HIPAA Violations Are Still Mostly People, Not Technology: HIPAA & HITECH Act Blog by Jonathan P. Tomes
I learned a long time ago, when I served in that contradiction of terms, military intelligence, that the big risk, at that time to defense .. read more
Coronavirus and Ransomware—What Do They Have in Common? HIPAA & HITECH Act Blog by Jonathan P. Tomes
Well, the short answer is that both coronavirus and ransomware are harmful. And both of them are infections. So-called Project Spy, for example, infects Android .. read more
HIPAA & CORONAVIRUS BLOG POST 4―Enforcement Discretion for Telehealth Remote Communications during the COVID-19 Nationwide Public Health Emergency: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Roger Severino, the Director of the Office for Civil Rights (“OCR”) of the U.S. Department of Health and Human Services (“HHS”) has announced that OCR .. read more
Being a Small Practice Won’t Save You from a HIPAA Penalty: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In the first enforcement action announced in 2020, the Department of Health and Human Services (“HHS”) has settled with Dr. Stephen A. Porter for $100,000 .. read more
HHS Office for Civil Rights and the Department of Education Issue Updated Guidance on Sharing Student Health Records under HIPAA and FERPA: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Having had the good fortune to be a HIPAA consultant for several universities, I am quite aware of the confusion that could result from possibly .. read more
What Do You Do If the HIPAA S**t Hits Your Fan and the Feds Come after You?: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Many of you will (hopefully) never need the guidance in this blog post. And I have never read a HIPAA blog post or article talking .. read more
OCR Reveals Its Right of Access Enforcement Priorities: HIPAA & HITECH Act Blog by Jonathan P. Tomes
At a major annual HIPAA conference, Roger Severino, Director of the Department of Health and Human Services (“DHHS”) Office for Civil Rights (“OCR”), revealed its .. read more
PHI with No Cover Sheet Warning Left on a Desk—Who’s Liable? HIPAA & HITECH Act Blog by Jonathan P. Tomes
One of our EMR Legal clients and Veterans Press customers recently emailed me the following question: If a workforce member leaves a page from a .. read more