HIPAA Security Risk Analysis
The HIPAA Security Risk Analysis, also known as a security risk assessment, is a fundamental process required by the HIPAA Security Rule. Health care providers, payers, clearinghouses and Business Associates are all required to conduct a HIPAA SRA. A limited-scope SRA is also required by the Meaningful Use (Advancing Care Information) program. For Meaningful Use, the SRA is required on an annual basis.
by Gary Pritts | May 6, 2014 | HIPAA
Employee misbehavior using access privileges for the purpose of identity theft has led to yet another data breach. Notice was sent to more than 2,400 patients at UMass Memorial Medical Center (UMMMC) in Worcester, MA regarding potential identify theft. On March 6,... Read More
by Gary Pritts | May 5, 2014 | HIPAA
The Fourth Annual Patient Privacy and Data Security Survey, published in March, revealed new and expanded threats to the security and privacy of patient information in the U.S. healthcare system. The independent survey was completed by the Ponemon Institute and... Read More
by Gary Pritts | Apr 30, 2014 | HIPAA
The FBI recently issued two private industry notices (PINs) to the healthcare sector, warning that cyber-attacks against devices and systems in that industry are likely to increase. The notices were issued to a number of undisclosed and unidentified organizations in... Read More
by Gary Pritts | Apr 29, 2014 | HIPAA
Microsoft announced over the weekend that all versions of Internet Explorer have a “serious security hole” that hackers can use to take over a computer and hijack your computer. In their announcement, Microsoft stated that they are aware of limited, targeted attacks... Read More
by Gary Pritts | Apr 26, 2014 | HIPAA
Encryption is the single most essential technology to use for healthcare security breach prevention, according to Joy Pritts, chief privacy officer at the Office of the National Coordinator for Health IT. In an interview with Healthcare Info Security, Pritts states... Read More