Slide 1 - HIPAA Cartoons

Download Report

Transcript Slide 1 - HIPAA Cartoons

PAGE 2
THE HIPAA HUB
COMPANY NAME

PRIVACY & DATA SECURITY NEWSLETTER

FEBRUARY 2013
IN THIS ISSUE
ARTICLES
• New HHS Rule Protects
Privacy,
Secures Health
Information
• HHS Announces First
HIPAA
Breach Settlement
Involving
Less Than 500
Patients
• Identity Theft Charges
Prompts
Tallahassee Memorial
HealthCare to Tighten
Policies
The
HIPAA FEATURES
Hub is published
REGULAR
monthly
by
HIPAASecurity
• Privacy the
& Data
Compliance team:
FAQs
Name
. . . . . .
Humor
.• .HIPAA
. . 916-888-1234
• Privacy & Data Security
Title
Name
. . . . . .
. . . . 916-888-1234
Title
Name
. . . . . .
. . . . 916-888-1234
Title
___________________
Resources
Company Logo can go here
Enhanced standards improve privacy
protections and
security safeguards for consumer health
ipsum dolor sit amet, data
consetetur sadipscing elitr,
Lorem
sed
diam nonumy eirmod tempor invidunt ut labore et dolore magna
aliquyam erat, sed diam voluptua. At vero eos et accusam et
justo duo dolores et ea rebum. Stet clita kasd gubergren, no sea
takimata sanctus est Lorem ipsum dolor sit amet. Lorem ipsum
dolor sit amet, consetetur sadipscing elitr, sed diam nonumy
eirmod tempor invidunt ut labore et dolore magna aliquyam erat,
sed diam voluptua. At vero eos et accusam et justo duo dolores
et ea rebum. Stet clita kasd gubergren, no sea takimata sanctus
est Lorem ipsum dolor sit amet. Lorem ipsum dolor sit amet,
consetetur sadipscing elitr, sed diam nonumy eirmod tempor
invidunt ut labore et dolore magna aliquyam erat, sed diam
voluptua. At vero eos et accusam et justo duo dolores et ea
rebum. Stet clita kasd gubergren, no sea takimata sanctus est
Lorem ipsum dolor sit amet.
Lorem ipsum dolor sit amet, consetetur sadipscing elitr, sed
diam nonumy eirmod tempor invidunt ut labore et dolore magna
aliquyam erat, sed diam voluptua. At vero eos et accusam et
justo duo dolores et ea rebum. Stet clita kasd gubergren, no sea
takimata sanctus est Lorem ipsum dolor sit amet. Lorem ipsum
dolor sit amet, consetetur sadipscing elitr, sed diam nonumy
eirmod tempor invidunt ut labore et dolore magna aliquyam erat,
sed diam voluptua. At vero eos et accusam et justo duo dolores
et ea rebum. Stet clita kasd gubergren, no sea takimata sanctus
est Lorem ipsum dolor sit amet. Lorem ipsum dolor sit amet,
consetetur sadipscing elitr, sed diam nonumy eirmod tempor
invidunt ut labore et dolore magna aliquyam erat, sed diam
voluptua. At vero eos et accusam et justo duo dolores et ea
rebum. Stet clita kasd gubergren, no sea takimata sanctus est
Lorem ipsum dolor sit amet.
Lorem ipsum dolor sit amet, consetetur sadipscing elitr, sed
diam nonumy eirmod tempor invidunt ut labore et dolore magna
aliquyam erat, sed diam voluptua. At vero eos et accusam et
justo duo dolores et ea rebum. Stet clita kasd gubergren, no sea
takimata sanctus est Lorem ipsum dolor sit amet. Lorem ipsum
dolor sit amet, consetetur sadipscing elitr, sed diam nonumy
eirmod tempor invidunt ut labore et dolore magna aliquyam erat,
sed diam voluptua. At vero eos et accusam et justo duo dolores
et ea rebum. Stet clita kasd gubergren, no sea takimata sanctus
est Lorem ipsum dolor sit amet. Lorem ipsum dolor sit amet,
consetetur sadipscing elitr, sed diam nonumy eirmod tempor
invidunt ut labore et dolore magna aliquyam erat, sed diam
voluptua. At vero eos et accusam et justo duo dolores et ea
rebum. Stet clita kasd gubergren, no sea takimata sanctus est
Lorem ipsum dolor sit amet.
Lorem ipsum dolor sit amet, consetetur sadipscing elitr, sed
diam nonumy eirmod tempor invidunt ut labore et dolore magna
aliquyam erat, sed diam voluptua. At vero eos et accusam et
justo duo dolores et ea rebum. Stet clita kasd gubergren, no sea
PAGE 2
Privacy & Data Security
Q: Does the HIPAA Privacy Rule
require covered entities to
keep patients’ medical records
for any period of time?
A: No, the HIPAA Privacy Rule
does not include medical
record retention requirements.
Rather, State laws generally
govern how long medical
records are to be retained.
However, the HIPAA Privacy
Rule does require that covered
entities apply appropriate
administrative, technical, and
physical safeguards to protect
the privacy of medical records
and other protected health
information (PHI) for whatever
period such information is
maintained by a covered
entity, including through
disposal. See 45 CFR
164.530(c).
nonumy eirmod tempor invidunt
ut labore et dolore magna
aliquyam erat, sed diam
voluptua. At vero eos et
accusam et justo duo dolores
et ea rebum. Stet clita kasd
gubergren, no sea takimata
sanctus est Lorem ipsum dolor
sit amet. Lorem ipsum dolor
sit amet, consetetur
sadipscing elitr, sed diam
nonumy eirmod tempor invidunt
ut labore et dolore magna
aliquyam
erat, sed
diam
HIPAA
HUMOR
voluptua. At vero eos et
accusam et justo duo dolores
et ea rebum. Stet clita kasd
gubergren, no sea takimata
sanctus est Lorem ipsum dolor
sit amet.------------------------------If you have privacy or data
Cartoon here
securityInsert
questions
you would
like to see published in the
newsletter, send them by email
to:
THE HIPAA HUB
HHS Announces First HIPAA
Breach Settlement
Involving Less Than 500
Patients
----------------------------------------The Hospice of North Idaho
(HONI) has agreed to pay the
U.S. Department of Health and
Human Services’ (HHS) $50,000
to settle potential violations
of the Health Insurance
Portability and Accountability
Act of 1996 (HIPAA) Security
Rule. This is the first
settlement involving a breach
of unprotected electronic
protected health information
(ePHI) affecting fewer than
500 individuals.
Identity Theft Charges
Prompts Tallahassee
Memorial HealthCare to
Tighten Policies
By Jennifer Portman,
Tallahassee Democrat Senior
Writer
-----------------------------------Lorem ipsum dolor sit amet,
consetetur sadipscing elitr,
sed diam nonumy eirmod tempor
invidunt ut labore et dolore
magna aliquyam erat, sed diam
voluptua. At vero eos et
accusam et justo duo dolores
et ea rebum. Stet clita kasd
gubergren, no sea takimata
sanctus est Lorem ipsum dolor
sit amet. Lorem ipsum dolor
sit amet, consetetur
The investigation conducted by sadipscing elitr, sed diam
nonumy eirmod tempor invidunt
the HHS Office for Civil
Rights (OCR) followed a breach ut labore et dolore magna
aliquyam erat, sed diam
report submitted by HONI as
voluptua. At vero eos et
required by the Health
accusam et justo duo dolores
Information Technology for
et ea rebum. Stet clita kasd
Economic and Clinical Health
gubergren, no sea takimata
(HITECH) Act reporting the
sanctus est Lorem ipsum dolor
theft of a laptop computer
sit amet. Lorem ipsum dolor
containing the electronic
sit amet, consetetur
protected health information
(ePHI) of 441 patients. Over sadipscing elitr, sed diam
nonumy eirmod tempor invidunt
the course of the
investigation, OCR discovered ut labore et dolore magna
that HONI had not conducted a aliquyam erat, sed diam
voluptua. At vero eos et
risk analysis to safeguard
accusam et justo duo dolores
ePHI. Further, HONI did not
et ea rebum. Stet clita kasd
have in place policies or
gubergren, no sea takimata
procedures to address mobile
device security as required by sanctus est Lorem ipsum dolor
sit amet.
the HIPAA Security Rule.
Since the June 2010 theft,
Lorem ipsum dolor sit amet,
HONI has taken extensive
consetetur sadipscing elitr,
additional steps to improve
sed diam nonumy eirmod tempor
their HIPAA Privacy and
invidunt ut labore et dolore
Security compliance program.
magna aliquyam erat, sed diam
A new educational initiative, voluptua. At vero eos et
accusam et justo duo dolores
Mobile Devices: Know the
RISKS. Take the STEPS. PROTECT et ea rebum. Stet clita kasd
and SECURE Health Information, gubergren, no sea takimata
sanctus est Lorem ipsum dolor
has been launched by OCR and
the HHS Office of the National sit amet. Lorem ipsum dolor
sit amet, consetetur
Coordinator for Health
sadipscing elitr, sed diam
Information Technology (ONC)
nonumy eirmod tempor invidunt
that offers health care
ut labore et dolore magna
providers and organizations
aliquyam erat, sed diam
practical tips on ways to
voluptua. At vero eos et
protect their patients’
accusam et justo duo dolores
protected health information
when using mobile devices such et ea rebum. Stet clita kasd
as laptops, tablets, and smart gubergren, no sea takimata