Recent Articles

  • NY HIPAA Legislation to Improve Breach Notification and PHI Security

    Published On: June 21st, 2016

    Pending data breach legislation in New York would redefine unsecured PHI as personal information, affecting breach notification and data security measures across the state. Bill A10475 has [...]

  • Phase 2 HIPAA Compliance Audits to Target Behavioral Health Specialists

    Published On: June 17th, 2016

    Earlier in 2016, the Department of Health and Human Services (HHS) Office for Civil Rights (OCR) released new guidance to support their recently implemented Phase 2 HIPAA Compliance Audits. [...]

  • Data Privacy, Information Security, and How to Prevent Breaches: Q&A with Health Care and Data Privacy Attorney William J. Roberts

    Published On: June 10th, 2016

    We sat down with data privacy and security expert William J. Roberts of Shipman & Goodwin LLP to discuss the proliferation of data breaches across the healthcare industry in recent [...]

  • HIPAA Compliance Audits Prioritized in 2017 Fiscal Budget

    Published On: May 26th, 2016

    Earlier this year, the Obama administration submitted its budget proposal for fiscal-year 2017. The OCR Budget in Brief details the increased budget--$1.15 trillion of which is allotted for the Department [...]

  • May’s HIPAA Chat Recording

    Published On: May 25th, 2016

    Listen to Marc Haskelson and Bob Grant on the May 2016 edition of HIPAA Chat

  • Lessons Learned from Failures in Healthcare Data Security

    Published On: May 20th, 2016

    The Brookings Institution’s Center for Technology Innovation recently released a paper by Fellow Niam Yaraghi examining the current state of major healthcare data security across the [...]

Blog Categories

  • 42 CFR Part 2

    42 CFR Part 2 dictates rules for the confidentiality of substance abuse records. Find out when providers are permitted to share records and when they are not.

  • Healthcare Compliance

    Healthcare compliance is complex, especially when you have to meet multiple compliance standards. Learn how to navigate HIPAA, OSHA, and SOC 2 requirements.

  • Healthcare Data Breach Report

    Each month, we review what caused healthcare data breaches and how they could have been prevented. Learn how to protect your business from breaches and fines.

  • HIPAA Compliance

    Whether you’re a healthcare provider, health plan, or healthcare vendor, you must meet HIPAA standards. Learn what’s required for HIPAA compliance and how to implement a successful program.

  • HIPAA News

    Keep up to date on HIPAA news by checking in with us. We will provide you with information on changes to HIPAA law, healthcare breaches, HIPAA violations, and OCR fines.

  • HIPAA Violation Fines

    Healthcare organizations that fail to meet HIPAA Privacy, Security, or Breach Notification Rules can face HIPAA violation fines. Find out who has been fined and how they could have prevented penalties.

  • MACRA MIPS

    To be eligible for reimbursement under the Merit-based Incentive Payment System (MIPS), you must meet Medicare Access and CHIP Reauthorization Act (MACRA) standards.

  • OCR Enforcement

    The Office for Civil Rights (OCR) is the enforcing body of HIPAA. The OCR conducts investigations into potential HIPAA violations, issuing judgments that can result in settlements.

  • OIG Compliance

    The Office of Inspector General (OIG) released guidance, referred to as the seven elements of compliance. Find out how to implement an effective compliance program.

  • OSHA Healthcare Compliance

    OSHA healthcare compliance ensures a safe and healthy environment for patients and staff. Find out how to meet various OSHA standards specific to healthcare.

  • Right of Access

    The HIPAA Right of Access standard requires healthcare providers to comply with patient record requests. This standard is the most cited in HIPAA settlements. Learn the rules.

  • SOC 2 Compliance

    The American Institute of Certified Public Accountants (AICPA) created a cybersecurity framework called Service Organization Control Type 2 (SOC 2). Learn how about SOC 2 compliance.