First OCR HIPAA Audits Underway

Adam Greene, JD, MPH, a former regulator in HHS, recently shared details about the random audit program begun by the HHS Office of Civil Rights (OCR). The audit targets are selected using stratified random samples based on a database of covered entities created by OCR...

Common Wireless Feature, WPS, Readily Hacked

An industry-standard feature on wireless routers marketed to consumers and small businesses, Wi Fi Protected Setup (WPS), is vulnerable to a simple “brute force” attack. Free tools are already available to gain access to these routers. Making matters...

New HIPAA Obligations for EHR vendors and VARs are Coming

EHR Authors and Value Added Resellers (VARs) will soon have their own HIPAA obligations. At present, EHR Authors and VARs are contractually obligated by the terms of any HIPAA Business Associate Agreements (BAAs) they have signed. Soon, EHR Authors and VARs (and all...

HIPAA and Facebook

Facebook, and other Social Media including Twitter, Google+, LinkedIn, and others are a reality of mainstream society. Employers in general, including HIPAA covered entities, are grappling with this new reality. On the one hand, social media have been proven to be a...

JCAHO Weighs in: “No texting of physician orders”

The Joint Commission (JCAHO) weighed in recently regarding the issue of physicians using text messages to transmit orders. They didn’t explicitly state that their opinion was related to the HIPAA regulations, but we infer that HIPAA was part of the thought...

Random HIPAA Compliance Audits Begin

The random HIPAA compliance audits mandated under the HITECH Act will begin this month. Yesterday, the HHS Office of Civil Rights (OCR) announced that every covered entity and business associate is eligible for an audit. To guide future audit efforts, a wide range of...

OCR Details HIPAA Audit plans for 2011-2012

On August 11, 2011, the HHS Office of Civil Rights, the agency responsible for enforcement of the HIPAA regulations, delivered its first annual report on HIPAA Compliance and Enforcement to Congress. OCR shed a little light on the subject of random compliance audits...

Pin It on Pinterest