• Home
  • About HIPAA
    • HIPAA and HITECH Newsletters
      • Sign Up for HIPAA Newsletter
    • OCR Audit Resources
    • HIPAA Offers
    • HIPAA HITECH Resources
      • NIST-OCR 2012 HIPAA Security Conference Presentations
    • About HIPAA Security Rules
    • HIPAA Risk Analysis Resources
      • HIPAA Risk Analysis Buyer’s Guide Checklist
    • HIPAA Privacy Rule Resources
  • Contact
  • HIPAA HITECH Blue Ribbon Panel
    • Frank Ruelas
    • Adam Greene
    • Feisal Nanji
    • Chris Apgar
    • Scott Blanchette
    • Kamal Govindaswamy
    • Stephen Gantz
    • Rick Kam
    • Mac McMillan
    • Elizabeth Warren
    • Patricia Jamieson-Montijo
    • Fred Scholl
    • Barb Cluster
    • Paul R. Hales
  • Webinars
    • On Demand Webinars
    • Live Webinars
    • Blue Ribbon Panel Live Events
  • Profile

About HIPAA

Helping you understand HIPAA compliance

Author Gravatar

AboutHIPAA.com is run by Bob Chaput, CISSP, CIPP-US, one of the nation’s leading experts in HIPAA-HITECH regulatory compliance. More →

Latest Article
HIPAA Audit Tips – Be Careful Claiming “Conduit”

HIPAA Audit Tips – Be Careful Claiming “Conduit”

Posted 20 May 2013 | 0 Comments
This entry is part 23 of 24 in the series HIPAA Audit Tips

This post is motivated by three phone conversations in one day with likely Business Associates (BAs), trying to sort out if they really are a HIPAA Business Associate.  Millions of companies are now statutorily obligated to comply with HIPAA-HITECH regulations, because of  their BA status.  They’d prefer to meet the “conduit exception” requirements and not… Read More »

More Articles

HIPAA Audit Tips – HHS Budget for Audits Increased

HIPAA Audit Tips – HHS Budget for Audits Increased

This entry is part 22 of 24 in the series HIPAA Audit Tips

I don’t know if you had a chance to listen to Kathleen Sebelius announce on a brief video, the HHS 2014 budget a few days ago, or read the “Highlights of the 2014 HHS Budget”.  The video announcement did not cite the reason for the $1MM, or 2.4%  increase in OCR’s  budget over 2013.  You might… Read More »

How to Conduct A HIPAA Security Compliance Self Audit

How to Conduct A HIPAA Security Compliance Self Audit

OCR has published audit protocols as part of the program to conduct the HITECH-mandated audits of Covered Entities and Business Associates.  Learn the specific audit procedures around meeting the explicit requirement to conduct an Evaluation at 45 CFR §164.308(a)(8). If you create, receive, maintain or transmit ePHI, you should view this webinar.

HIPAA Risk Analysis Tip – Eligible Provider EHR Pre-Payment Audit Document Request

HIPAA Risk Analysis Tip – Eligible Provider EHR Pre-Payment Audit Document Request

This entry is part 38 of 38 in the series HIPAA Security Risk Analysis Tips

CMS announced in January, after a critical OIG audit report, that Eligible Providers, Eligible Hospitals and Critical Access Hospitals who have purchased and implemented an electronic health record (EHR) system and attested to meaningful use of that EHR may be subjected to an audit before they see an incentive payment. Here’s today’s big TIP – Learn the exact requirement… Read More »

The Critical Difference: HIPAA Security Evaluation v HIPAA Security Risk Analysis

The Critical Difference: HIPAA Security Evaluation v HIPAA Security Risk Analysis

Compliance assessment?Security Evaluation? Risk Assessment? Risk Analysis? Compliance Analysis? Huh? Just what does the HIPAA Security Final Rule and/or The HITECH Act and/or Meaningful Use Final Rule require? We end the confusion in this webinar…

HIPAA-HITECH 101

HIPAA-HITECH 101

With increasing penalties, greater enforcement and a growing set of sources of business risks and sources of liabilities, healthcare organizations and companies that support healthcare organizations must gain a solid understanding of the HIPAA Privacy and Security and HITECH Breach Notification Rules. While it is fairly well known that these rules provide for the privacy… Read More »

Live Webinar – The Critical Difference: HIPAA Security Evaluation v HIPAA Security Risk Analysis

Live Webinar – The Critical Difference: HIPAA Security Evaluation v HIPAA Security Risk Analysis

Compliance assessment?Security Evaluation? Risk Assessment? Risk Analysis? Compliance Analysis? Huh? Just what does the HIPAA Security Final Rule and/or The HITECH Act and/or Meaningful Use Final Rule require? We end the confusion in this webinar…

How to Set Up and Administer a Business Associate Management Program

Covered Entities, Business Associates and their agents  who create, received, maintain and transmit ePHI for a “chain of custody” or “chain of trust” when it comes to HIPAA HITECH regulations. Responsibilities for safeguarding ePHI exist for all of these organizations. Sometimes the most security organizations suffer the embarrassment (HHS Wall of Shame) and liability of… Read More »

 1  2  3  4  5 » ...  Last » 
advert

Categories

  • Breach Notification Planning Tips (4)
  • Free Webinars (59)
    • Live Webinars (25)
    • On Demand Webinars (33)
      • Business Associates (3)
      • Guided Tours of Clearwater Compliance Software (3)
      • HIPAA Audits (4)
      • HIPAA Compliance Program Management (6)
      • HIPAA Fundamentals (5)
      • Policies & Procedures (2)
      • Recorded Blue Ribbon Panel Webinars (4)
      • Risk Analysis & Management (4)
  • HIPAA and IT Security (152)
  • HIPAA Audit Tips (37)
  • HIPAA Compliance Guides (126)
  • HIPAA Hitech News (93)
  • HIPAA Laws (118)
  • HIPAA Privacy (101)
  • HIPAA Privacy-Security Reminders (58)
  • HIPAA Security Risk Analysis Tips (47)
  • HIPAA Violations (61)
  • HITECH Act (121)
  • Testimonials (2)

AboutHIPAA.com is brought to you by


Read our company datasheet.

Questions about Compliance?


Clarify your compliance with a one-day intensive, educational HIPAA Compliance BootCamp™

Learn More

Subscribe

Get our regular HIPAA HITECH Newsletter and make sure you are first to hear about new laws and compliance issues.

Join us on Facebook!

People found this article by searching for:

1 about-hipaa AboutHIPAA.com audit prep audits audit tips cms-hipaa-compliance-audit Data Breach data security HHS HIPAA hipaa-audit hipaa-audit-lessons-learned hipaa-audit-tips-kmpg-ocr-randon-audit HIPAA-HITECH hipaa-laws-2011 hipaa business associate hipaa compliance hipaa compliance software hipaa law hipaa laws hipaa privacy rule HIPAA Risk Analysis HIPAA Security hipaa security assessment HIPAA Security Compliance program hipaa security final rule hipaa security risk assessment HIPAA Security Rule hipaa security standards HITECH HITECH Act interim final breach notification rule KPMG OCR online data backup and recovery present security controls risk analysis risks security rule compliance The HITECH Act threats Unsecured PHI vulnerabilities www-hipaa-com
  • Home
  • About HIPAA
  • Contact
  • Get a free trial of Clearwater HIPAA Security Assessment™
  • HIPAA HITECH Blue Ribbon Panel
  • Register
  • Webinars
  • Profile
  • Bob Chaput, CISSP, CIPP-US
  • Subscribe RSS

This site is brought to you by Clearwater Compliance