News & Analysis as of

Security and Privacy Controls Protected Health Information

Fenwick & West LLP

Cyber Resilience After the Change Healthcare Breach

Fenwick & West LLP on

More than two months after the February 2024 Change Healthcare cyber-ransom attack, the healthcare industry continues to grapple with the fallout, creating significant challenges, disruptions, and outages to the healthcare...more

Benesch

Annual Report to Congress on Breaches of Unsecured Protected Health Information

Benesch on

The U.S. Department of Health and Human Services (HHS), Office for Civil Rights (OCR) recently published an executive summary (Report) outlining key enforcement activities of the Health Insurance Portability and...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

California’s Privacy Laws: Financial and Medical Data, Website Usage, Children’s Data, Data Brokers, and Customer Records

California has a long history of protecting privacy rights. Article I, Section 1, of the California Constitution expressly provides a right of privacy. Recently, the focus has been on compliance with the California Consumer...more

BakerHostetler

HHS OCR Announces Largest Civil Monetary Penalty Imposed Since 2021 for Snooping Incident

BakerHostetler on

Nearly two months after settlement was reached, the Department of Health and Human Services Office for Civil Rights (HHS OCR) announced on Feb. 6 that it obtained a resolution agreement with Montefiore Medical Center over...more

Nutter McClennen & Fish LLP

Code Blue: Cybersecurity Vulnerabilities for Medical Device Makers Require Urgent Care

Q: How is the shift of medical devices moving to the Internet of Things affecting the health care industry? A: Connected medical devices routinely record sensitive health information about a patient. This critical...more

White and Williams LLP

A Yelp From Posting on Yelp®

White and Williams LLP on

Are your employees instructed on the proper (and improper) use of social media? Does your organization have policies and provide training on the appropriate handling of sensitive information? A recent United States Department...more

Harris Beach PLLC

Data Exposure is a Communicable Disease

Harris Beach PLLC on

While hospitals remain focused on restoring health to their patients, they must not let their defenses down when it comes to robust cybersecurity practice that safeguards their patients' information....more

Robinson+Cole Data Privacy + Security Insider

HHS Information Security Program Deemed ‘Not Effective’

There was unfortunately some bleak news out of the Department of Health & Human Services, (HHS) Office of the Inspector General (OIG) recently. The OIG recently released the results of a performance audit of the HHS’...more

Williams Mullen

Patient Privacy Breach...All in a Day’s Work?

Williams Mullen on

It is a health care provider’s nightmare – despite extensive HIPAA training and best efforts to hire the right people, one of your staff members has gone rogue with a patient’s information. Whether a receptionist loudly...more

Sands Anderson PC

New Cybersecurity Threat Identification and Prevention Guidance from HHS

Sands Anderson PC on

As a result of ongoing efforts under the Cybersecurity Act of 2015, the Department of Health and Human Services (HHS) has partnered with public and private sector entities to develop guidance for healthcare entities seeking...more

Poyner Spruill LLP

12 Attorneys General Sue for 2015 Breach in First Case of Its Kind

Poyner Spruill LLP on

North Carolina joined Attorneys General from a dozen states in suing Indiana based Medical Informatics Engineering (MIE) and affiliates. The complaint alleges that the companies failed to undertake reasonable measures to...more

Burns & Levinson LLP

The Continuing Challenge of Cybersecurity Hygiene in Digital Health and Life Sciences

Burns & Levinson LLP on

A recent issue of MIT’s Technology Review magazine is titled, “Look how far precision medicine has come.“ At least part of the premise is that personalized medicine or precision medicine is not perceived as having made the...more

Poyner Spruill LLP

OCR Reminds Us about a Fundamental Aspect of Physical Security for PHI

Poyner Spruill LLP on

In its monthly Cybersecurity Newsletter at the end of May, the Office of Civil Rights (OCR) of the United States Department of Health and Human Services pointedly reminds us of the need to be conscious of some fundamental...more

Mintz - Health Care Viewpoints

OCR Highlights Importance of Physical Safeguards to Protect PHI

The May 2018 cyber security newsletter from the U.S. Department of Health and Human Services Office for Civil Rights (OCR) focused on a topic often overlooked by covered entities and their business associates: physical...more

Williams Mullen

Another Key to HIPAA Compliance – Have Policies and Procedures and Implement Them, Too

Williams Mullen on

On this blog, we have discussed the criticality of risk analyses – the assessment required by the Security Rule of the “risks and vulnerabilities” that an organization faces with respect to all of its electronic protected...more

Jackson Lewis P.C.

HHS Issues Cloud Computing Guidance Which Is Helpful To All Users of Cloud Services

Jackson Lewis P.C. on

Last week, the Department of Health and Human Services’ Office for Civil Rights (OCR) provided guidance for HIPAA covered entities and business associates that use or want to use cloud computing services involving protected...more

BCLP

How to Develop a HIPAA Incident Response Team

BCLP on

Covered entities and business associates are required to identify and report breaches of unsecured protected health information (“PHI”) and security incidents. “Breach” is defined as the acquisition, access, use, or...more

Tucker Arensberg, P.C.

OCR Announces HIPAA Security Settlement with Cancer Care Group, P.C.

Tucker Arensberg, P.C. on

In September, 2015, OCR and HHS issued a press release announcing a Resolution Agreement with the Cancer Care Group, P.C., which included entry into the agreement, the adoption of a robust compliance plan, and the payment of...more

McGuireWoods LLP

Stolen Laptop Bag Leads to $750,000 Fine for Oncology Group

McGuireWoods LLP on

On September 2, 2015, the U.S. Department of Health and Human Services Office for Civil Rights (OCR) announced a substantial settlement with an Indiana-based oncology group, Cancer Care Group, P.C. (CCG). Under the terms of...more

K&L Gates LLP

The Devil in the “Cyber” Insurance Details

K&L Gates LLP on

There’s a tempest amidst the recent spring shower of “cyber” insurance cases. It isn’t the Recall Total case reported the week before last, or the Travelers v. Federal Recovery Services case reported the week before. While...more

Obermayer Rebmann Maxwell & Hippel LLP

Revised Guidance for Privacy and Security of Electronic Health Information Released by Government

The Office of the National Coordinator for Health Information Technology (“ONC”) has released a revised Guide to Privacy and Security of Electronic Health Information (the “Guide”), which is intended to be a resource for...more

Snell & Wilmer

HIPAA “Phase 2” Audits: Are You Ready?

Snell & Wilmer on

The Civil Rights Office of the Department of Health and Human Services announced a “Phase 2” audit program in the Fall of 2014. That audit program was delayed due to funding issues, but appears to be back on schedule for...more

McGuireWoods LLP

Data Privacy and Security Considerations in M&A Transactions

McGuireWoods LLP on

By some estimates, cybercrime costs the global economy $445 billion annually. If cybercrime were a single country, this dollar amount would place it within the world’s top 30 countries in terms of gross domestic product, and...more

Troutman Pepper

Beyond HIPAA: Connected Health Care and the Internet of Things

Troutman Pepper on

The U.S. Federal Trade Commission (FTC) Staff Report titled "Internet of Things: Privacy & Security in a Connected World," released in January 2015, continues to generate interest and questions about the regulation of health...more

Akerman LLP - Health Law Rx

A Quick Look at Healthcare Issues Expected to Make News in 2015

As we look into our crystal balls, we do not expect a lot of new issues in 2015. Rather, we believe that most of the significant issues will be a continuation of issues that arose in 2014 or earlier. ...more

27 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide