Recent Articles

  • 103,576 Impacted by Sound Generations Breach

    Published On: December 22nd, 2021

    A nonprofit organization in Washington state, Sound Generations, reported a pair of data breaches potentially impacting 103,576 clients to the Office for Civil Rights (OCR) data breach [...]

  • New Jersey State Attorney General Settles HIPAA Claims Against Printing Companies

    Published On: December 21st, 2021

    In November of 2021, the New Jersey State Attorney General’s (AG) Office, Division of Consumer Affairs, settled 2 HIPAA claims, one HIPAA claim against Command Marketing Innovations [...]

  • Telehealth Security Concerns in Mental Health Uncovered in Patient Survey

    Published On: December 20th, 2021

    A recent survey uncovered security gaps in over a third of telehealth appointments by mental health providers. The survey, conducted by Propeller Insights on behalf of Dr. First, asked [...]

  • The Fines They Are A’Changin’: Lessons from 2021 HIPAA Fines

    Published On: December 17th, 2021

    This year, the Department of Health and Human Services’ Office for Civil Rights (OCR) resolved 14 enforcement actions it had filed against healthcare providers, health plans, and clinical labs. [...]

  • Is Microsoft Lync HIPAA Compliant?

    Published On: December 16th, 2021

    With videoconferencing virtually everywhere and telehealth growing in popularity, finding a telecommunication application or provider that is HIPAA compliant is vital to your business. One of the earliest widespread [...]

  • Government Agencies Warn of the Most Dangerous Exploits Ever Discovered, the RCE Vulnerability

    Published On: December 15th, 2021

    On December 14, 2021, the HHS Office for Civil Rights (OCR) issued a warning regarding a severe vulnerability in Java logging libraries that allows unauthenticated remote code [...]

Blog Categories

  • 42 CFR Part 2

    42 CFR Part 2 dictates rules for the confidentiality of substance abuse records. Find out when providers are permitted to share records and when they are not.

  • Healthcare Compliance

    Healthcare compliance is complex, especially when you have to meet multiple compliance standards. Learn how to navigate HIPAA, OSHA, and SOC 2 requirements.

  • Healthcare Data Breach Report

    Each month, we review what caused healthcare data breaches and how they could have been prevented. Learn how to protect your business from breaches and fines.

  • HIPAA Compliance

    Whether you’re a healthcare provider, health plan, or healthcare vendor, you must meet HIPAA standards. Learn what’s required for HIPAA compliance and how to implement a successful program.

  • HIPAA News

    Keep up to date on HIPAA news by checking in with us. We will provide you with information on changes to HIPAA law, healthcare breaches, HIPAA violations, and OCR fines.

  • HIPAA Violation Fines

    Healthcare organizations that fail to meet HIPAA Privacy, Security, or Breach Notification Rules can face HIPAA violation fines. Find out who has been fined and how they could have prevented penalties.

  • MACRA MIPS

    To be eligible for reimbursement under the Merit-based Incentive Payment System (MIPS), you must meet Medicare Access and CHIP Reauthorization Act (MACRA) standards.

  • OCR Enforcement

    The Office for Civil Rights (OCR) is the enforcing body of HIPAA. The OCR conducts investigations into potential HIPAA violations, issuing judgments that can result in settlements.

  • OIG Compliance

    The Office of Inspector General (OIG) released guidance, referred to as the seven elements of compliance. Find out how to implement an effective compliance program.

  • OSHA Healthcare Compliance

    OSHA healthcare compliance ensures a safe and healthy environment for patients and staff. Find out how to meet various OSHA standards specific to healthcare.

  • Right of Access

    The HIPAA Right of Access standard requires healthcare providers to comply with patient record requests. This standard is the most cited in HIPAA settlements. Learn the rules.

  • SOC 2 Compliance

    The American Institute of Certified Public Accountants (AICPA) created a cybersecurity framework called Service Organization Control Type 2 (SOC 2). Learn how about SOC 2 compliance.