Another HIPAA Breach Settlement for Not Having Had a Business Associate Agreement in Place: HIPAA & HITECH Act Blog by Jonathan P. Tomes
My Vice President and editor, Alice M. McCart, always says that she hates it when I’m always right. I always mess with her by saying, .. read more
$1.55 Million Settlement Stresses Importance of Business Associate Agreements: HIPAA & HITECH Act Blog by Jonathan P. Tomes
A recent settlement in lieu of a civil money penalty underscores the importance of having business associate agreements in place with entities that perform a .. read more
California Determines What Is Reasonable and Appropriate for Securing Health Information: HIPAA & HITECH Act Blog by Jonathan P. Tomes
HIPAA requires covered entities and business associates to implement reasonable and appropriate security measures in § 164.308(a)(1)(ii)(B), the risk management Administrative safeguards, but although it does .. read more
It was the Best of Breach Responses, it was the Worst of Breach Responses: HIPAA & HITECH Act Blog by Jonathan P. Tomes
It was the best of times, it was the worst of times, it was the age of wisdom, it was the age of foolishness, it .. read more
2 Happy New Year HIPAA Gifts for You on Our Premium Member Section: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In case one of your New Year’s resolutions was to finish your HIPAA Risk Analysis, you’re in luck. Because so many of you have asked .. read more
Shooting, God Forbid, on the Premises of a Health Care Provider or Business Associate, Including HIPAA Aspects: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Yet another mass shooting, this one in a Social Services Agency in San Bernardino, CA, coupled with my being asked to weigh in on protecting .. read more
Data Destruction and HIPAA Competence as Related to IT Support Companies: HIPAA & HITECH Act Blog by Jonathan P. Tomes with Guest Commentator Michael B. O’Hara, CISSP
Michael B. O’Hara’s narrative, part 1: Recently, my company, KB Computing, LLC, lost a managed services client. The reason, as it so often is, was .. read more
Risk Analysis: The First One Is the Worst One: HIPAA & HITECH Act Blog by Jonathan P. Tomes with Guest Commentator Alice M. McCart, J.D.
We have many new HIPAA consulting clients at EMR Legal and many new HIPAA compliance tools customers at Veterans Press who know that they must .. read more
Latest HIPAA Settlement—a Lesson Still Not Learned: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Although most civil money penalties (“CMPs”) to date have involved risk analysis—that is, failure to do one, failure to do a complete one, or failure .. read more
Is That Security Incident a Reportable Breach? HIPAA & HITECH Act Blog by Jonathan P. Tomes
Several times a month, on average, I get a question from a Premium Member or others who get a free question, such as our seminar .. read more