You’d Better Not Control Your Business Associate’s Performance! HIPAA & HITECH Act Blog by Jonathan P. Tomes
The Omnibus Rule, fleshing out the HIPAA changes in the HITECH Act, clarified when covered entities and business associates would be liable for breaches of .. read more
Compliance Hit: Expanded Liability for Business Associates’ Breaches: HIPAA & HITECH Act Blog by Jonathan P. Tomes
The HITECH Act expanded the liability of business associates in a number of ways, primarily by making them face the same civil and criminal liability .. read more
Risk Analysis Change for Breach Notification: HIPAA & HITECH Act Blog by Jonathan P. Tomes
On January 17, 2013, the Department of Health and Human Services (“DHHS’”) released its draft long-anticipated Omnibus Rule amending the HIPAA Privacy, Security, Breach Notification .. read more
New Compliance Burden–HITECH Omnibus Rule Is Out! HIPAA & HITECH Act Blog by Jonathan P. Tomes
On January 17, 2013, the Department of Health and Human Services (“DHHS”) published in the Federal Register the HITECH Omnibus Rule to implement the HIPAA .. read more
Addressable Implementation Specification Matrix Posted on Premium Member Section
Under the Department of Health and Human Services (“DHHS”) regulations implementing the Health Insurance Portability and Accountability Act of 1996 (“HIPAA”), a covered entity must .. read more
New Resource Posted for Premium Members
The $1 million settlement by Massachusetts General for what has come to be known as the “Million Dollar Subway Ride,” for the loss of paper .. read more
New Sample Business Associate Policy Posted in Premium Member Section: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Now that the HITECH Act has effectively (if not legally—business associates were not added to the list of covered entities) made business associates covered entities .. read more
New Medical Records Content Policy Posted in Premium Member Section
At my seminars, if I don’t bring up the issue of release of third-party records to the patient or client under the Privacy Rule’s right .. read more
DHHS Issues New Guidance on De-identification
On November 26, 2012, the Department of Health and Human Services (“DHHS”) issued new guidance on the de-identification of protected health information (“PHI”). Its intent .. read more
HIPAA Waivers during Emergencies
Hurricane Sandy spotlighted the provision allowing the Secretary of Health and Human Services (“HHS”) to waive certain provisions of the Health Insurance Portability and Accountability .. read more