Compliance is not Security

HIPAA requires covered entities – and now business associates – to comply with the HIPAA Security Rule. However, compliance with these requirements is not the same as effective security. This fact can be illustrated in the case of business associates offering...

Long Delayed HIPAA Omnibus Rule released

After years of waiting, the Federal Department of Health and Human Services released last week what has come to be called the HIPAA Omnibus Rule. “The new rule will help protect patient privacy and safeguard patients’ health information in an ever...

Determining Probabilities in the Risk Analysis

The HITECH Act, in particular the meaningful use incentive program for physicians and hospitals, has placed the computer security risk analysis in the spotlight. Meaningful use requires a risk analysis, also called a risk assessment, as per the HIPAA Security rules in...

Meaningful Use Audits Underway

CMS has announced that providers – hospitals and physicians – who received meaningful use incentive payments are now being audited. CMS has outsourced this function to the New York audit contractor Figliozzi & Company.  Providers who fail to produce documentation...

Pin It on Pinterest