HIPAA

FTC Mandates Vendors Notify Patients of Breaches in Health Information - 11/07/2024

The Federal Trade Commission has amended its Health Breach Notification Rule to require vendors of personal health records and related entities not covered by HIPAA to notify individuals, the FTC, and, at times, the media, when a breach in protected health information occurs. The change will take effect July 29.


Physicians Can Delegate Breach Notifications to Change Healthcare Following Cyberattack - 06/26/2024

The U.S. Department of Health and Human Services’ Office of Civil Rights announced  May 31 that covered entities – such as health plans, health care clearinghouses, and physicians – affected by privacy breaches stemming from the February cyberattack on Change Healthcare and its parent corporation UnitedHealth Group may delegate breach notifications to both companies.


HIPAA and Medical Power of Attorney - 03/20/2024

Does the HIPAA Privacy Rule change the way in which a person can grant another person medical power of attorney?


Stop Paying to Get Paid - 02/28/2024

Did you know you don’t have to accept health plan payment via virtual credit card? You have a right to request direct deposit.


Feds Update HIPAA Security Risk Assessment Tool - 11/01/2023

To aid small- and medium-sized practices in complying with the HIPAA Security Rule, federal officials have updated their risk assessment tool designed to help practices identify areas where electronic  protected health information (ePHI) is at risk.


New Texas Law Shortens Data Breach Notification Period - 08/21/2023

Texas physician practices and other health care facilities soon will be required to give more timely and public notice of any breaches of computerized data, including electronic health records and billing information.


HIPAA Security Rule: Move It to Top of Mind - 08/07/2023

Problems with HIPAA Security Rule safeguards, both administrative and technical, continue to fall among the top five HIPAA security issues the U.S. Department of Health and Human Services identifies each year.


Security Risk Analysis for HIPAA — and Medicare/Medicaid? - 08/07/2023

Do you need to conduct a security risk analysis or review of your practice in the next 72 days?


Your Photocopier May Be a Security Risk - 08/07/2023

Don’t let this happen to you! A health plan paid a huge fine after it returned leased copiers that held protected health information.


20 Everyday HIPAA Tips - 10/13/2021

 The goal of HIPAA is to make sure the protected health information you are responsible for or come into contact with remains confidential, secure, and available when you need it. Here are basic steps every practice can take to help make this happen.  


20 Everyday HIPAA Tips to Help You Stay Compliant - 10/13/2021

The goal of HIPAA is to make sure the protected health information you are responsible for or come into contact with remains confidential, secure, and available when you need it. Here are basic steps every practice can take to help make this happen.


Patient Privacy’s New Frontier: AMA Aims to Keep Apps Honest With Personal Health Data - 12/01/2020

In the evolving world of health information technology, some vendors that store and transmit health information – such as the tech minds behind certain mobile apps – are getting their hands on patient data without any HIPAA leash to rein in their use of it. Now, organized medicine is doing its part to preserve patients’ privacy when their health information finds its way outside of HIPAA-covered organizations.


Upgraded Free Tool Helps With HIPAA Compliance - 10/12/2020

If you participate in the Medicare Merit-Based Incentive Payment System (MIPS), you must complete your security risk assessment by Dec. 31. An upgraded tool from the U.S. Department of Health and Human Services might make the assessment easier.


Is Your Patients’ HIPAA-Protected Information Secure? - 05/13/2020

A guide from TMA-endorsed DocbookMD helps smaller practices understand the risks of using mobile devices and how to stay HIPAA-secure.


Taking Privacy to a New Level: Texas Lowers Reporting Threshold for Security Breaches - 01/27/2020

Federal requirements have not changed, but starting Jan. 1, breach notification requirements will become even more stringent for Texas physicians or medical entities. The Texas Legislature dropped the threshold for breach reporting from 500 patients to 250. House Bill 4390 also requires medical entities to report breaches to the Texas attorney general’s office within 60 days of the breach.


Laptop Encryption Helps You Stay HIPAA Compliant - 12/19/2019

If you or your practice store financial or patient information on laptop computers, you could face hefty fines if those devices are lost or stolen. Thankfully, one important step toward protecting patient data, and yourself, is simple thanks to widely available encryption tools.


Don’t Let it Happen to You: Practice Fined Over Social Media - 12/09/2019

As more people go online to research products and services, online reputation management has become increasingly relevant for physicians.Because of the HIPAA Privacy Rule, physicians cannot respond to online reviews in any way that reveals PHI. Even if a patient discloses their own personal information in a review, physicians cannot respond with the same level of disclosure.


What Are HIPAA Transaction and Code Sets Standards? - 10/29/2019

Learn about the HIPAA Transactions and Code Sets Rule that standardizes electronic data interchange (EDI) transactions for submitting, processing, and paying claims. Has your practice met the required standards?


Don’t Try This at Work: Security Risk Analysis Is Not a Do-It-Yourself Project - 08/02/2019

Medicare’s Merit-Based Incentive Payment System (MIPS) requires practices to conduct a security risk analysis at least once a year. HIPAA requires at least one analysis, and annual check-ups are considered a best practice. Many physicians find out through these reports that their practices have a lot of work to do to keep patient records safe.


Windows XP Support Ending Soon - 05/30/2019

Are you a Microsoft Windows XP user? If so, it’s probably time to upgrade. Your PC won’t be secure after April 8, 2014


Why Strong Passwords Are Important - 05/30/2019

Passwords are an early line of defense in protecting your patient data and an easy fix to strengthening your protections.


Understanding HIPAA: Working From Home - 05/30/2019

Can an employee work from home under HIPAA? The answer is yes, as long as you implement the appropriate security to protect data accessed from the employee’s home.


Protect Your Practice’s Social Media Accounts - 05/30/2019

Social media is a terrific way to reach out and stay in contact with your patients. However, the risks created by social media cannot be ignored. Controlling access to your social media accounts is just the first step in ensuring their security.


Security Alert: Are Your Browsers Vulnerable to POODLE? - 05/30/2019

Many of us take for granted that if we’re diligent about keeping our systems current with the latest security updates, we’re protected from threats. Unfortunately, this isn’t the case.


Phishing: Popular Sport of Cyber Attackers - 05/30/2019

…And they are out to catch you. Here’s how to identify malicious emails you need to guard against.