PHI

Ransomware Wreaks Havoc in 2017

By Art Gross – Ransomware dominated the healthcare industry in 2017, with six of the top ten breaches reported to the U.S. Department of Health and Human Services a direct result of the malicious software.


Smile! Privacy Policy Snapshot – Model Privacy Notice

By David Harlow – In thinking about patient privacy, many folks assume that HIPAA is the first and last word on the subject. Nothing could be farther from the truth. Protected health information under HIPAA (PHI) is also protected by a variety of other federal and state regulatory schemes.


Communication Breakdown: Fax Failure

By Matt Fisher – Healthcare entities have received another warning from the OCR concerning yet another aspect of HIPAA compliance. OCR’s settlement with St. Luke’s-Roosevelt Hospital Center focuses on controlling when and how PHI is released.



Lessons Learned from OCR Enforcement Actions

By Rita Bowen – As of September 30, 2013, the U.S. Department of Health and Human Services’ (HHS) Office for Civil Rights (OCR) has received over 141,754 complaints. Over 24,500 of these led to OCR investigations, resulting in required changes to privacy practices, corrective actions or technical assistance.