HIPAA

HIPAA Q&A on Risk Analysis

By Steve Spearman – Performing a risk analysis is the cornerstone of HIPAA compliance, so it’s important to understand the regulations that require risk analysis, as well as how to conform to these rules. This week’s Q&A with Steve Spearman, focuses on understanding the essentials of risk analysis.

Read More

Breaches, Breaches, Everywhere

By Matt Fisher – It often seems as though a day does not go by without the report of a new breach of healthcare data. Examples of breaches include loss of unencrypted devices (whether laptops, flash drives or other devices), usage of non-secure services, inattention to paper records, employee snooping, and more.


Colorado Medicaid Mails PHI to Wrong Addresses

By Steve Spearman – This past summer, the state of Colorado’s Medicaid program, the Colorado Department of Health Care Policy and Financing (HCPF), accidentally sent letters containing PHI to the wrong addresses, affecting individuals from 1,069 households.



What Closing the HIPAA Gaps Means for the Future of Healthcare Privacy

By Kirk J Nahra – By now, most people have felt the effects of the HIPAA Privacy Rule (from the Health Insurance Portability and Accountability Act). HIPAA has set the primary standard for the privacy of healthcare information in the United States since the rule went into effect in 2003. It’s an important rule that creates significant baseline privacy protections for healthcare information across the country.


When a Breach Isn’t a Breach

By Matt Fisher – A hospital in Arkansas recently learned the lesson of the nuances contained within the HIPAA Privacy Rule. There are many uses and disclosures identified in the Privacy Rule that permit actions that would otherwise appear to be a breach.



HIPAA Criminal Violations on the Rise

By Matt Fisher – Stories appear almost everyday about medical records being improperly accessed, hacked or otherwise being stolen. The number of stories about such thefts is almost matched by the number of stories about the high value placed upon medical records by identity thieves and others.