From the Blog

HIPAA By The Numbers

National

28683400

Total Settlements In 2018

Total Complaints

211,109

Until June 2019

  • Open Complaints (2%)

  • Resolved Complaints (98%)

Total Investigations

38,843

Until June 2019

  • No Violation (30%)

  • Corrective Action (70%)

Total Cases 2018

32,770

Year : 2018

  • Complaints

  • Compliance Reviews

  • Technical Assistance

California

The enforcement resolutions pertaining to complaints received, for state of California

From April 14, 2003 through December 31, 2018.

6

No Violation

Investigated

69

After Intake & Review

Resolved

25

Corrective Action

Investigated

From The News

No Business Associate Agreement?

A $31000 Mistake!

The Center for Children’s Digestive Health (CCDH) has paid the U.S. Department of Health and Human Services (HHS) $31,000 to settle potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy Rule and agreed to implement a corrective action plan.

Florida contractor physicians group shares protected health information with unknown vendor 

Without a business associate agreement!

Advanced Care Hospitalists PL (ACH) has agreed to pay $500,000 to the Office for Civil Rights (OCR) of the U.S. Department of Health and Human Services (HHS) and to adopt a substantial corrective action plan to settle potential violations of the Health Insurance Portability and Accountability Act (HIPAA) Privacy and Security Rules.

Five breaches add up to millions in settlement costs

For entity that failed to heed HIPAA’s risk analysis and risk management rules

Fresenius Medical Care North America (FMCNA) has agreed to pay $3.5 million to the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR), and to adopt a comprehensive corrective action plan, in order to settle potential violations of the Health Insurance Portability and Accountability Act (HIPAA) Privacy and Security Rules.

$750,000 HIPAA settlement emphasizes the importance of risk analysis

And device and media control policies!

Cancer Care Group, P.C. has agreed to settle potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy and Security Rules with the U.S. Department of Health and Human Services (HHS), Office for Civil Rights (OCR). Cancer Care has paid $750,000 and will adopt a corrective action plan to correct deficiencies in its HIPAA compliance program.

Allergy practice pays $125,000

To settle doctor's disclosure of patient information to a reporter

Allergy Associates of Hartford, P.C. (Allergy Associates), has agreed to pay $125,000 to the Office for Civil Rights (OCR) at the U.S. Department of Health and Human Services (HHS) and to adopt a corrective action plan to settle potential violations of the Health Insurance Portability and Accountability Act (HIPAA) Privacy Rule.

Consequences for HIPAA violations don’t stop 

Even when a business closes!

A receiver appointed to liquidate the assets of Filefax, Inc. has agreed to pay $ 100,000 out of the receivership estate to the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) in order to settle potential violations of the Health Insurance Portability and Accountability Act (HIPAA) Privacy Rule. Filefax, located in Northbrook, Illinois, advertised that it provided for the storage, maintenance, and delivery of medical records for covered entities.

Useful Links

HHS Website

The home of HIPAA. Best place to find information about the HIPAA Rules and learn more...

The home of HIPAA. Best place to find information about the HIPAA Rules, guidance on compliance, and more...

Current Investigations

This page lists all breaches reported within the last 24 months that are currently under investigation...

Cases Currently Under Investigation. This page lists all breaches reported within the last 24 months...

OCR Website

OCR enforces federal civil rights laws and the Health Insurance Portability and Accountability Act...

Office for Civil Rights (OCR) enforces federal civil rights laws,the Health Insurance Portability and Accountability Act (HIPAA) ...

a
Health IT

Health information technology (health IT) involves the exchange of health information in an electronic environment...

Health information technology (health IT) involves the exchange of health information in an electronic environment...

Watch Our FREE Cyber Security Awareness Training Video

Security Awareness Training

Need more information? Get in touch today, we would be happy to help!