More Articles

It’s hard to say whether the Office for Civil Rights (OCR) acting on its own, or in conjunction with the Department of Justice (DOJ), will show the same level of consideration to healthcare organizations who “try”, but it’s sure worth considering if its likely. After all, the number of investigative actions and caseloads are only [...]

Over the last two years, we have been working hard to ensure that all the HIPAA Security Risk Analyses that we performed were “by-the-book” and that the software tools we built, similarly, followed guidance provided by Health and Human Services (HHS) and Office for Civil Rights (OCR) guidance. Would you please give me your opinion [...]

Too many privacy and security decisions are being made in a vacuum, without benefit of risk analysis to facilitate informed decision making. Struggling to find the software and methodology to power and document your risk analysis? In this live session, you will learn how the Clearwater HIPAA Risk Software™ will energize your compliance program.

In Chapter 3 of the relatively new National Institutes of Standards and Technology (NIST) Special Publication (SP) 800-30, a description the process of assessing information security risk is provided. Read on to learn what a real risk analysis comprises. Here’s today’s big tip – Complete a Bona Fide HIPAA Security Risk Analysis – Follow the [...]

The deadline for HIPAA Security Rule compliance for Covered Entities (CEs) was April 2005! For Business Associates (BAs), the date was February 2010. Additionally, the federal government unveiled its criteria for the Meaningful Use of electronic health records (EHRs) on July 13. The criteria must be met in order for a hospital or eligible provider [...]

Attendees at HCCA’s 16th Annual Compliance Institute, April 29 – May 2, 2012 were treated to a look behind the curtains at the so-called “OCR Random Audit Documentation Request List”. As a reminder, the mandated audits are brought to you by The HITECH Act at Section 13411. These audits represent yet again another arrow in [...]

The deadline for HIPAA Security Rule compliance for Covered Entities (CEs) was April 2005! For Business Associates (BAs), the date was February 2010. Additionally, the federal government unveiled its criteria for the Meaningful Use of electronic health records (EHRs) on July 13. The criteria must be met in order for a hospital or eligible provider [...]

If you create, receive, maintain or transmit ePHI, you need to view this webinar. No matter where you are in your HIPAA-HITECH compliance journey and no matter where you are in the ePHI “chain of trust”, you will benefit from knowing exactly where you stand with respect to the HIPAA Security Regulations: Learn how to do [...]

Our May 2012 HIPAA-HITECH eNewsletter has been published. Read our May 2012 HIPAA-HITECH Compliance eNewsletter to learn more … HIPAA-HITECH security updates, education events, alerts and tips of importance to everyone striving to safeguard electronic Protected Health Information (ePHI). This month’s eNewsletter contains an explanation of the importance of completing a Risk Analysis Risk Rating Report…