HIPAA

“What we need is more regulation . . .”

By David Harlow – We are awash in digital health data. And we are awash in multiple regulatory schemas designed to protect privacy, security and appropriate access to all this data. Some data is “traditional” health care data governed by the familiar patchwork of federal and state statutes and regulations (rhymes with “HIPAA”).


Best and Top Lists in our List this Week

Who doesn’t like a good list? Whether you are on it, know someone on it, or aspire to be on it, you always want to read the list. Here are some interesting lists I think deserve sharing, top #HIT100, best hospitals, Most Wired Hospitals, best value Dual MBA & Health Management Degrees, best places to work, best work perks.


HIPAA and Ransomware: OCR Guidance

By Matt Fisher – After promising to provide guidance and insight for a breaking issue, the OCR came out with ransomware guidance under HIPAA. One major issue for debate was whether a ransomware attack constitutes a HIPAA breach. The guidance provides insight into where OCR is coming from and what it expects the industry to do in response to a ransomware attack.



ONC Explains Who Isn’t Covered by HIPAA

By William A. Hyman – Discussions of HIPAA and HIPAA violations are common in these pages, and are of course important for those subject to the requirements and wrath of HIPAA. I have also heard that “What about HIPAA?” is a question that can kill an app developer’s bid for funding.



$2.2 Million OCR Settlement for Egregious Disclosure of PHI

By Bob Grant – The HHS Office for Civil Rights announced that NY Presbyterian Hospital would be required to pay a $2.2M settlement after the “egregious disclosure” of two patients’ protected health information. NYP allowed an ABC film crew and staff from the show “NY Med” to film two patients, one of whom was dying, and another experiencing serious distress.