Much is being written about “remote work” – is it productive, will demand for it continue or be curtailed in a recession, is cybersecurity compromised, does it inhibit workplace culture, collaboration, etc. Lots of questions, few clear answers. Read more at our Workplace Privacy, Data Management & Security Report.
Seven Things Healthcare Employers Should Expect in 2023
- Medical Residents and Interns Unionizing. Yes, you read that right. 2022 saw organizing among these groups on both coasts. This is happening as we see a resurgence in organizing among graduate students and even undergraduate student
FDA Names First Acting Director of Medical Device Cybersecurity
The U.S. Food and Drug Administration (FDA) named University of Michigan Associate Professor Kevin Fu Acting Director of Medical Device Security in its Center for Devices and Radiological Health. This is a newly created 12-month post in which Fu will “work to bridge the gap between medicine and computer science and help manufacturers protect…
OCR’s Relaxed Enforcement of HIPAA During COVID-19 Paves The Way For Increase in Telehealth Services
As the COVID-19 pandemic continues to spread across the country, doctors, dentists, therapists and other healthcare providers have turned to telehealth use with their patients by way of videoconferencing applications such as Zoom, Skype and WebEx. The Office of Civil Rights and the Department of Health and Human Services (“OCR”) defines telehealth as “the use…
OCR HIPAA Guidance For Getting PHI of COVID-19 Exposed Individuals to First Responders
With first responders on the front lines of helping to fight the coronavirus, sharing information about potential exposure to COVID-19 is critical to protecting them and preventing further spread. In these situations, the information shared is most often “protected health information” (PHI) under the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy Rule.…
Coronavirus Raises Privacy Concerns for Healthcare Providers and their Workers
The outbreak of a new coronavirus that is believed to have began in central Chinese city of Wuhan and now appears to be spreading to the United States is driving concerns for organizations around preparedness regarding their operations, their customers, and their employees. In the healthcare sector, as with prior contagious disease outbreaks, fears about…
Healthcare Organizations, Is Your Patient Portal Secure?
While healthcare organizations are embracing new technologies such as patient portals, a recent report shows that organizations’ cybersecurity measures for these technologies are behind the times. A patient portal is a secure online website that allows patients to access their Electronic Health Record from any device with an Internet connection. Many patient portals also allow…
HIPAA Penalties Change Under HHS Notice of Enforcement Discretion
Today, the Department of Health and Human Services (HHS) issued a notification of enforcement discretion changing its interpretation of the Health Information Technology for Economic and Clinical Health (HITECH) Act of 2009 resulting in a reduction in the amount of the cumulative annual penalty limit for violations of HIPAA. Our colleagues in the Privacy, Data…
Small Michigan Medical Practice to Close Following Ransomware Attack
Small and midsized enterprises (SMEs) continue to be targeted by ransomware, phishing and other cyberattacks; the consequences of which could be devastating. Those consequences include putting SMEs out of business, which is unfortunately the case for one small medical practice in Battle Creek, Michigan, as reported by HIPAAJournal. Our colleagues in the Privacy, Data…
Is your e-PHI Secure? ONC and OCR Update HIPAA Security Risk Assessment Tool
October 2018 marks the 15th annual National Cyber Security Awareness Month. In honor of this occasion, the Office of the National Coordinator for Health Information Technology (ONC) and the HHS Office for Civil Rights (OCR) have jointly launched an updated HIPAA Security Risk Assessment (SRA) Tool to help covered entities and business associates comply…