Compliance programs typically refer to formalized institutional procedures within corporations and organizations to detect, prevent and respond to indvidual and widespread instances of regulatory... more +
Compliance programs typically refer to formalized institutional procedures within corporations and organizations to detect, prevent and respond to indvidual and widespread instances of regulatory violations. In response to many corporate scandals evidencing rampant unethical business practices, many nations, including the United States, began passing strict regulatory frameworks aimed at curbing these abuses. Notable pieces of legislation in this area include the U.S. Foreign Corrupt Practices Act (FCPA), Sarbanes-Oxley (SOX), and the U.K. Bribery Act, to name a few. The foregoing statutes and the severe penalties often associated with them form the basis of many modern institutional compliance programs.
PODCAST - Inside Law - HIPAA Changes Overview by Emily Wey
Tips for Mobile App Privacy Compliance
Lessons Learned from the Parker Drilling DPA and Ralph Lauren NPA
The New Normal: Taking Responsibility for Your Vendors
Lessons Learned from the BizJet Executives FCPA Enforcement Actions
Suzanne Folsom on Corporate Compliance Issues -
Suzanne Rich Folsom and Bart M. Schwartz on Corporate Compliance in 2011
ACADEMI's Suzanne Rich Folsom and PwC's Glenn Ware on Moral Hazard
Suzanne Folsom & Christopher Burnham on Private Sector Lessons
Corporate Law Report: Workplace Romances, FMLA Changes, California Tax News, and More
Higher Education Oversight and Governance: Role of a College Board of Trustees
Corporate Law Report: Cybersecurity, CEO Social Media, New Workplace Laws, Healthcare Reform in 2013
The Eli Lilly FCPA Enforcement Action-Lessons Learned
Corporate Law Report: Mobile App Privacy, HR & the FCPA, Insider Trading, First Sale Doctrine, More
Mike Koehler on FCPA Enforcement
The New SEC Conflict Minerals Rule: Overcoming the Challenges of Compliance
First SEC whistleblower award-6 lessons learned
Not Prepared for Healthcare Reform? Three things employers need to focus on now.
As discussed in two prior HIPAA alerts, a final, 563-page Omnibus HIPAA Rule was released by the Department of Health and Human Services Office of Civil Rights to strengthen HIPAA’s security and privacy protections. The final...more
Changes to the HIPAA Enforcement Rule - Background: On October 30, 2009, HHS issued an interim final rule revising the Enforcement Rule to incorporate provisions of the HITECH Act. The NPRM then proposed a number of...more
On January 17, 2013, the Department of Health and Human Services issued a final rule amending the Health Insurance Portability and Accountability Act (HIPAA) privacy and security regulations and implementing the Health...more
The HIPAA Omnibus Regulation was publicly distributed by HHS last week with today, January 25, being the official publication date. The requirements are effective as of March 26, 2013 with a compliance deadline for almost...more
The Office of Civil Rights (“OCR”) of the Department of Health and Human Services (“HHS”) published today the much anticipated final omnibus rule implementing the Health Information Technology for Economic and Clinical Health...more
The wait is finally over. On January 17, 2013, the U.S. Department of Health & Human Services (HHS), Office for Civil Rights (OCR), issued the final “omnibus” rule modifying the HIPAA Privacy, Security, Breach Notification...more
Executive Summary - On January 25, 2013, the Federal Register will publish final omnibus rules written by the U.S. Department of Health and Human Services (HHS) to modify the HIPAA Privacy, Security, Breach...more
On Thursday, January 17, 2013, the Department of Health and Human Services Office for Civil Rights (“HHS”) released in pre-publication form the rule commonly known as the “HIPAA Omnibus Rule,” which we refer to below as the...more
On January 17, 2013, the U.S. Department of Health and Human Services (HHS) announced the release of the HIPAA final omnibus rule, which was years in the making. The final rule makes sweeping changes to the HIPAA compliance...more
The HHS Office for Civil Rights (OCR) started 2013 with a bang by announcing that it had reached "the first settlement involving a breach of unprotected electronic protected health information (ePHI) affecting fewer than 500...more
As we pore through the 562-page HITECH Omnibus Rule released by the Department of Health and Services late yesterday afternoon, here are some top line bullet points...more
The final regulations from Department of Health and Human Services Office of Civil Rights (OCR) containing modifications to the HIPAA Privacy, Security, Enforcement, and Breach Notification Rules (Omnibus Rule) have finally...more
The long awaited HIPAA/HITECH Final Rule is out. The final rule is effective March 26, 2013, but covered entities (CEs) and business associates (BAs) will have 180 days beyond the effective date to come into compliance....more
To restate the obvious, hospitals operate in a risky environment. They face a variety of risks and a blanket of government regulations. You have to admire the Chief Compliance Officer at a hospital. They learn to live with...more
On January 2, 2013, the U.S Department of Health and Human Services, Office of Civil Rights (OCR) announced its first HIPAA breach settlement involving less than 500 patients. OCR took action against a hospice provider in...more
On January 2, 2013, HHS announced that the Hospice of North Idaho (HONI) agreed to pay $50,000 and enter into a Corrective Action Plan (CAP) as part of a settlement involving a breach of unsecured electronic protected health...more
On January 2, 2013, the U.S. Department of Health and Human Services (HHS) announced a settlement with the Hospice of North Idaho (HONI) for potential HIPAA violations....more
Mobile device use is becoming more commonplace in health care. Health care professionals use text messaging to communicate with each other about patient status. Medical schools now provide residents tablets to use as...more
In what is best understood as a follow-up to both the recent settlement with MEEI and the release of its mobile device security guidance, HHS OCR recently released details of a settlement reached with the Hospice of Northern...more
Businesses subject to HIPAA rules should take note of recent penalties imposed by the U.S. Department of Health and Human Services (“HHS”). Penalties of more than $1 million each were leveled as a result of Security Rule...more
Office of Civil Rights has released additional guidance addressing the de-identification of protected health information in accordance with the HIPAA Privacy Rule. Covered entities should review their current...more
Originally published in Compliance Today on December 1, 2012. ..Covered entities are now subject to privacy and security audits by OCR. ..OCR published audit protocols regarding its standards for such...more
Just two and a half years after hosting a workshop on the HIPAA Privacy Rule's de-identification standard, OCR has issued its "Guidance Regarding Methods for De-identification of Protected Health Information in Accordance...more
One of the less well-known provisions of the Health Information Technology for Economic and Clinical Health (or "HITECH") Act[1] is the requirement that the U.S. Department of Health and Human Services ("HHS") periodically...more
JD Supra gets your content noticed, increases your visibility and makes your marketing efforts hassle free...
Learn More or Schedule a demo