New Sample Media Policy for Our Blog Readers: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Merry Christmas! A Christmas Present from Jon and Alice Normally, we at Veteran’s Press and EMR Legal, our HIPAA publishing and consulting companies, reserve new .. read more
OCR Clarification on Aspects of Privacy Rule after Man-made Disasters: HIPAA & HITECH Act Blog by Jonathan P. Tomes
The recent shooting attack in Las Vegas and other man-made disasters have prompted the Department of Health and Human Services (“DHHS”) Office for Civil Rights .. read more
DHHS Updates Guidance on Disclosures to Family Members: HIPAA & HITECH Act Blog by Jonathan P. Tomes
The Privacy Rule, in 45 CFR§ 164.510(b), permits covered entities to disclose protected health information (“PHI”) to family members and even close personal friends who .. read more
First HIPAA Penalty for Failure to Comply with the HIPAA Breach Notification Rule: HIPAA & HITECH Act Blog by Jonathan P. Tomes
The U.S. Department of Health and Human Services (“DHHS”) Office for Civil Rights (“OCR”) last week announced the first HIPAA settlement in lieu of a .. read more
Watch Out for a Fake OCR Audit Phishing Email: HIPAA & HITECH Act Blog by Jonathan P. Tomes
On November 28, the Department of Health and Human Services (“DHHS”) warned that a marketing campaign has been circulating a fake OCR audit phishing email .. read more
Children’s Health Records and You: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Parents who have minor children have legitimate concerns about their children’s health records as used, disclosed, and maintained by their health care providers, insurers, and .. read more
OCR Issues Revised Audit Protocol: HIPAA & HITECH Blog by Jonathan P. Tomes
In April 2016, the U.S. Department of Health and Human Services (“DHHS”) Office for Civil Rights (“OCR”) issued its updated Phase 2 Audit Protocol. Its .. read more
California Determines What Is Reasonable and Appropriate for Securing Health Information: HIPAA & HITECH Act Blog by Jonathan P. Tomes
HIPAA requires covered entities and business associates to implement reasonable and appropriate security measures in § 164.308(a)(1)(ii)(B), the risk management Administrative safeguards, but although it does .. read more
It was the Best of Breach Responses, it was the Worst of Breach Responses: HIPAA & HITECH Act Blog by Jonathan P. Tomes
It was the best of times, it was the worst of times, it was the age of wisdom, it was the age of foolishness, it .. read more
Latest HIPAA Settlement 2—a Lesson Still Not Yet Learned about Risk Analysis: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In its press release, the Department of Health and Human Services (“DHHS”) once again pointed out the importance of an organization-wide risk analysis. The press .. read more