Latest Posts › OCR

Share:

Could Cookies and Other Tracking on Websites Violate HIPAA – HHS Warns Covered Entities About Tracking on Websites and Use of...

Earlier this month, the United States Department of Health and Human Services’ Office of Civil Rights (“OCR”), the organization that has jurisdiction over enforcement of the Health Insurance Portability and Accountability Act...more

HIPAA and COVID-19 – OCR Publishes Online Guidance on the Application of HIPAA

The Office of Civil Rights (“OCR”), which is the federal agency that enforces the health care privacy rules under the Health Insurance Portability and Accountability Act (“HIPAA”), recently published guidance covering various...more

Major Changes Proposed to HIPAA Privacy Rules

Late last week, the United States Department of Health and Human Services (HHS), Office for Civil Rights issued a Notice of Proposed Rulemaking (NPR) to make significant revisions to the Health Insurance Portability and...more

Special Restrictions Apply To Substance and Alcohol Rehabilitation Patient Records; Even In A Pandemic

The Office of Civil Rights’ “Notification of Enforcement Discretion” regarding COVID- 19 and remote telehealth communications do not apply to information protected under 42 CFR Part 2. These Part 2 regulations protect the...more

What HIPAA Policies are Required for a Health Care Provider?

We are often asked to advise clients regarding the scope and content of Health Insurance Portability and Accountability (HIPAA) policies and procedures that are required to be maintained. HIPAA clearly requires health care...more

When Does a HIPAA Breach Exist?

Conducting HIPAA Breach Risk Assessments - The HIPAA rules relating to assessment of potential patient confidentiality breaches were changed in 2013. Specifically, on January 17, 2013, the Office of Civil Rights released...more

OCR Settlement Lessons - Failing to Perform an Electronic Access Risk Analysis Before an Unauthorized Access Occurs

Failure to conduct a risk assessment before a hacking incident occurred resulted in a $400,000 settlement between the Office of Civil Rights (OCR) and a Federally Qualified Health Clinic (FQHC). The FQHC filed a breach...more

Lessons from OCR HIPAA Settlements - Mobile Device Security Standards

In the first known case involving a wireless provider, a cardiology service provider agreed to pay a $2.5 million settlement based on the impermissible disclosure of unsecured electronic protected health information (ePHI)....more

Lessons Learned from Recent OCR Settlements

We can learn some valuable lessons about compliance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA) from settlements that are announced by the U.S. Department of Health and Human Services, Office...more

9 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide