HIPAA

HIPAA Settlement on Repeat

By Matt Fisher – Stop if you’ve heard this story before: a dental practice was unhappy with patient reviews left on Yelp, so responded. In responding, the practice disclosed patient information including names and diagnoses. That is the basic outline of the latest settlement announced by the OCR to resolve an alleged HIPAA violation.


End of Year SRA

By Art Gross – A security risk assessment must be conducted to maintain HIPAA compliance per the Security Rule. A security risk assessment is also referred to as an SRA. It is a requirement for government plans such as Medicare, Obamacare, and Medicaid.


HHS OCR Issues HIPAA Requirements Bulletin

The OCR at the U.S. Department of Health and Human Services issued a bulletin to highlight the obligations of HIPAA on covered entities and business associates under the HIPAA Privacy, Security, and Breach Notification Rules when using online tracking technologies.





HIPAA Right of Access Goes to the Dentist

By Matt Fisher – Covered entities as defined by HIPAA come in various types and shapes. It is not just a physician’s office or a hospital. Any entity that provides healthcare services and bills insurance (very gross oversimplification) can and likely does qualify as a covered entity.