New Sample BAA to Consider: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Because I have a number of current California clients and past ones who may be Premium Members, I have revised my sample Business Associate Agreement .. read more
Illinois Joins California in Affording More Protection to Personal Information: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In May, the Governor of Illinois, Bruce Rauner, signed amendments to the Illinois Personal Information Protection Act (“PIPA”), 815 ILCS 530/1 et seq., expanding the .. read more
Include Ransomware in Your Next Risk Analysis: HIPAA & HITECH Act Blog by Jonathan P. Tomes with Guest Commentator Alice M. McCart, J.D.
Reliable backup of data is crucial to your operations. In addition to other risks, such as power spikes or outages, fire, flood, or other natural .. read more
Two New Items for You in Premium Member Section: Volunteer Policy and Two More Chapters of HITECH Hysteria: HIPAA & HITECH Act Blog by Jonathan P. Tomes with Guest Commentator Alice M. McCart
For those of you who have been waiting for a volunteer policy separate and apart from Jon’s Workforce Security Policy, you’re in luck. It is .. read more
California Determines What Is Reasonable and Appropriate for Securing Health Information: HIPAA & HITECH Act Blog by Jonathan P. Tomes
HIPAA requires covered entities and business associates to implement reasonable and appropriate security measures in § 164.308(a)(1)(ii)(B), the risk management Administrative safeguards, but although it does .. read more
It was the Best of Breach Responses, it was the Worst of Breach Responses: HIPAA & HITECH Act Blog by Jonathan P. Tomes
It was the best of times, it was the worst of times, it was the age of wisdom, it was the age of foolishness, it .. read more
2 Happy New Year HIPAA Gifts for You on Our Premium Member Section: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In case one of your New Year’s resolutions was to finish your HIPAA Risk Analysis, you’re in luck. Because so many of you have asked .. read more
Shooting, God Forbid, on the Premises of a Health Care Provider or Business Associate, Including HIPAA Aspects: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Yet another mass shooting, this one in a Social Services Agency in San Bernardino, CA, coupled with my being asked to weigh in on protecting .. read more
Data Destruction and HIPAA Competence as Related to IT Support Companies: HIPAA & HITECH Act Blog by Jonathan P. Tomes with Guest Commentator Michael B. O’Hara, CISSP
Michael B. O’Hara’s narrative, part 1: Recently, my company, KB Computing, LLC, lost a managed services client. The reason, as it so often is, was .. read more
Minors’ Rights of Access to PHI: HIPAA & HITECH Act Blog by Jonathan P. Tomes
One of the more common questions that I get from Premium Members and others who have a free HIPAA question is regarding minors’ rights of .. read more