OCR Issues Cyberattack Response Checklist and Infographic

The United States Department of Health and Human Services’ Office for Civil Rights has just issued a checklist and infographic to aid healthcare organizations and their vendors in quickly responding to cyberattacks in compliance with HIPAA requirements.

Are Smaller Healthcare Practices Required to Report a #Ransomware or Potential Data Breach?

Does the HIPAA Breach Notification Rule apply to all Covered Entities and Business Associates, Even Smaller Ones? To many of you reading this post this question seems ridiculous. You know the answer. However, I get asked this question so frequently that I decided to answer it with a blog post to save time next time …

Why is Healthcare Data So Valuable to Cyber Criminals?

Healthcare data is one of the most desirable forms of data for cyber criminals to steal because its value on the cyber black market — the Dark Web — is much higher than most other forms of data. While there are several reasons for this, the recent study Your Life, Repackaged and Resold: The Deep …

Does Data Security Have Your Healthcare Practice “On the Hook”?

I recently had the pleasure of presenting in a webinar series titled Is Your Practice “On the Hook?” to members of the Texas Dental Association and the Oklahoma Dental Association. Key points of the presentation, which focused on cyber security and data breaches in the healthcare industry, explained why protected health information (PHI) and electronic healthcare …

Why do cyber criminals want your healthcare data?

During a recent presentation a member of the audience asked me why cyber criminals would want to steal a person’s healthcare data. It is easy to understand why they would want to steal payment card data — but healthcare data — not so obvious. Here is a great answer: A crook would love [healthcare data] because, “in the world …

Upcoming Webinar: Anatomy of a Data Breach

I am looking forward to presenting a (free) webinar for healthcare professionals on “Anatomy of a Data Breach.” The webinar is free because it is being brought to you by the great folks at SmartTraining, LLC. You can learn more about the topics that will be covered on this page. It will be from 12:00 PM …

What do the penalties look like for a HIPAA violation?

Here you go — they are rising and here is where they currently stand. As you can see, data breach is serious business and serious for your business. VIOLATION TYPE EACH VIOLATION REPEAT VIOLATIONS/YR Did Not Know $100 – $50,000 $1,500,000 Reasonable Cause $1,000 – $50,000 $1,500,000 Willful Neglect – Corrected $10,000 – $50,000 $1,500,000 …

Holy Cow – Do You Think This Is A HIPAA Privacy Violation?

Here is the best way I can frame this up: if you were the patient that had to go to the emergency room for constipation, would you want that information displayed publicly? Here is why I ask … It is Saturday morning and I am blogging on my iphone from a semi-private room in the …