Back to School: Time for HIPAA Training for Your Workforce: HIPAA & HITECH Act Blog by Jonathan P. Tomes with Guest Commentator Alice M. McCart
It’s back-to-school time here in America, so it’s time to think about learning what we need to know and, by expansion, training our people in .. read more
Securing EHRs on Mobile Devices—New NIST Guidance: HIPAA & HITECH Act Blog by Jonathan P. Tomes
The single biggest category of DHHS civil money penalties involves loss or theft of EHRs on mobile devices. The only guidance in the Security Rule .. read more
Must You Audit Your Business Associates for HIPAA Compliance? HIPAA & HITECH Act Blog by Jonathan P. Tomes
Now that the HITECH Act and the Omnibus Rule have made covered entities potentially liable for breaches by their business associate, see Compliance Hit: Expanded .. read more
DHHS Finally to Draft Rule for Sharing HIPAA Civil Money Penalties with Victims: HIPAA & HITECH Act Blog by Jonathan P. Tomes
DHHS has announced that it will issue the advance notice for receiving comments on proposed rules for sharing a percentage of HIPAA civil money penalties, .. read more
DHHS Issues Reminder to Address Physical Security, Particularly Workstation Security: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In May 2018, the U.S. Department of Health and Human Services (“DHHS”) Office for Civil Rights (“OCR”) issued its Cybersecurity Newsletter, “Workstation Security: Don’t Forget .. read more
Biggest HIPAA Civil Money Penalty Yet—How Does $5.5 Million Sound? HIPAA & HITECH Act Blog by Jonathan P. Tomes
Memorial Healthcare System (“MHS”) settled with the U.S. Department of Health and Human Services (“DHHS”) for $5.5 million for potential violations of the Health Insurance .. read more
Mental Health and Substance Abuse PHI Reporting under HIPAA: HIPAA & HITECH Act Blog by Jonathan P. Tomes with guest commentator Alice M. McCart, J.D.
Trying to figure out what HIPAA and the HITECH Act require in the way of disclosing protected health information (“PHI”) under various circumstances in general .. read more
Sample Release of PHI to Clergy Policy Posted in Premium Member Section: HIPAA & HITECH Act Blog by Jonathan P. Tomes
As I discussed in my December 21, 2017, blog post, which included a new Sample Media Policy, and my November 28, 2017, post regarding the .. read more
New Sample Media Policy for Our Blog Readers: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Merry Christmas! A Christmas Present from Jon and Alice Normally, we at Veteran’s Press and EMR Legal, our HIPAA publishing and consulting companies, reserve new .. read more
NCCoE and NIST Guidelines for Ransomware Recovery: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Little doubt exists that ransomware is a major threat to the availability of health information. Ransomware is a type of malicious software from cryptovirology, a .. read more