OCR Clarification on Aspects of Privacy Rule after Man-made Disasters: HIPAA & HITECH Act Blog by Jonathan P. Tomes
The recent shooting attack in Las Vegas and other man-made disasters have prompted the Department of Health and Human Services (“DHHS”) Office for Civil Rights .. read more
DHHS Updates Guidance on Disclosures to Family Members: HIPAA & HITECH Act Blog by Jonathan P. Tomes
The Privacy Rule, in 45 CFR§ 164.510(b), permits covered entities to disclose protected health information (“PHI”) to family members and even close personal friends who .. read more
Illinois Joins California in Affording More Protection to Personal Information: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In May, the Governor of Illinois, Bruce Rauner, signed amendments to the Illinois Personal Information Protection Act (“PIPA”), 815 ILCS 530/1 et seq., expanding the .. read more
$1.55 Million Settlement Stresses Importance of Business Associate Agreements: HIPAA & HITECH Act Blog by Jonathan P. Tomes
A recent settlement in lieu of a civil money penalty underscores the importance of having business associate agreements in place with entities that perform a .. read more
California Determines What Is Reasonable and Appropriate for Securing Health Information: HIPAA & HITECH Act Blog by Jonathan P. Tomes
HIPAA requires covered entities and business associates to implement reasonable and appropriate security measures in § 164.308(a)(1)(ii)(B), the risk management Administrative safeguards, but although it does .. read more
Minors’ Rights of Access to PHI: HIPAA & HITECH Act Blog by Jonathan P. Tomes
One of the more common questions that I get from Premium Members and others who have a free HIPAA question is regarding minors’ rights of .. read more
HIPAA, FERPA, and Immunizations: HIPAA & HITECH Act Blog by Jonathan P. Tomes
A client asked me to write a blog post regarding to whom the organization could disclose immunization records. Here it is: One of the problems .. read more
New Mental and Behavioral NOPP in Premium Member Section: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Some of our mental and behavioral health practitioner clients had asked for a sample notice of privacy practices (“NOPP”) that incorporates the special, more stringent .. read more
California News re Health Information Privacy and Security and HIPAA Breach Notification Rule: HIPAA & HITECH Act Blog by Jonathan P. Tomes
In October 2014, Kamala D. Harris, Attorney General, California Department of Justice, released the California Data Breach Report. The report noted that, in the health .. read more
Phase II Audits: HIPAA Privacy, Security, and Breach Notification Heads Up: HIPAA & HITECH Act Blog by Jonathan P. Tomes
Section 13411 of the HITECH Act requires the Department of Health and Human Services (“DHHS”) to audit covered entities and business associates to ensure that .. read more