HIPAA compliance (53)

digital business icons over a laptop screen for post Instances where the minimum necessary standard does not apply

1 min read

Instances where the minimum necessary standard does not apply

There are cases where full access to patient health is necessary, such as for diagnosis or public health purposes.The minimum necessary standard...

Read More
Image of someone typing for blog about Should direct care practices (DCPs) be HIPAA compliant? 

3 min read

Should direct care practices (DCPs) be HIPAA compliant? 

While not all DCPs are regulated by HIPAA, using HIPAA compliant email can help DCPs build patient trust through transparency and accountability. It...

Read More
law gavel on cash for post HHS reaches $90K settlement in first Risk Analysis Initiative enforcement

1 min read

HHS reaches $90K settlement in first Risk Analysis Initiative enforcement

The HHS has settled its first enforcement action in the OCR’s Risk Analysis Initiative in a settlement with the Bryan County Ambulance Authority.

Read More
Image of someone using a tap to pay machine for blog about Laredo lawsuit challenges Medicaid eligibility DSH payments

1 min read

Laredo lawsuit challenges Medicaid eligibility DSH payments

Laredo Medical Center (Laredo) is suing Xavier Becerra, the Secretary of the HHS, over a Medicare payment dispute concerning low-income patient care.

Read More
Image of red key lock for blog about FAQs: Access controls

2 min read

FAQs: Access controls

Access controls are the security protocols and measures that determine who can access specific resources, systems, or information within an...

Read More
Image of data for article about The difference between limited data sets and deidentified information

2 min read

The difference between limited data sets and deidentified information

While related, deidentification and limited data sets are distinct concepts under HIPAA with each serving a specific purpose in the healthcare...

Read More
FTC logo for post FTC and HIPAA Breach Notification Rules: What's the difference?

3 min read

FTC and HIPAA Breach Notification Rules: What's the difference?

Health data stakeholders must distinguish between the Federal Trade Commission's (FTC) Health Breach Notification Rule and the Health Insurance...

Read More
Image of shield for blog about Preparing for HIPAA security updates

2 min read

Preparing for HIPAA security updates

At the recent joint HHS and National Institute of Standards and Technology security conference, HHS OCR senior advisor for health information...

Read More
texas capitol building for post Texas doctor challenges HHS over reproductive health privacy rule

2 min read

Texas doctor challenges HHS over reproductive health privacy rule

A physician in Texas has initiated a lawsuit against the Department of Health and Human Services (HHS) in an effort to halt enforcement of a recently...

Read More
Image of two rings for article about HIPAA and divorce

3 min read

HIPAA and divorce

The Health Insurance Portability and Accountability Act (HIPAA) ensures the protection of protected health information (PHI) during divorce. It makes...

Read More
How to know if you’re a covered entity

3 min read

How to know if you’re a covered entity

HIPAA defines certain entities as covered entities and imposes specific responsibilities to ensure compliance. If you are involved in the healthcare...

Read More
Image of lock for article about when does the minimum necessary standard apply? 

1 min read

When does the minimum necessary standard apply? 

The Minimum Necessary Standard requires activities like billing, administration, and auditing to be limited to the minimum information reasonably...

Read More
Image of two people shaking hands for blog about Incidental PHI exposure and business associate agreements

2 min read

Incidental PHI exposure and business associate agreements

A business associate agreement (BAA) is not required for organizations or individuals, such as janitorial services, whose functions don’t involve...

Read More