Data Breach Results in $4.8 Million HIPAA Settlements
| Targeted News Service |
Two health care organizations have agreed to settle charges that they potentially violated the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy and Security Rules by failing to secure thousands of patients' electronic protected health information (ePHI) held on their network. The monetary payments of
NYP and CU are separate covered entities that participate in a joint arrangement in which CU faculty members serve as attending physicians at NYP. The entities generally refer to their affiliation as "
The investigation revealed that the breach was caused when a physician employed by CU who developed applications for both NYP and CU attempted to deactivate a personally-owned computer server on the network containing NYP patient ePHI. Because of a lack of technical safeguards, deactivation of the server resulted in ePHI being accessible on internet search engines. The entities learned of the breach after receiving a complaint by an individual who found the ePHI of the individual's deceased partner, a former patient of NYP, on the internet.
In addition to the impermissible disclosure of ePHI on the internet, OCR's investigation found that neither NYP nor CU made efforts prior to the breach to assure that the server was secure and that it contained appropriate software protections. Moreover, OCR determined that neither entity had conducted an accurate and thorough risk analysis that identified all systems that access NYP ePHI. As a result, neither entity had developed an adequate risk management plan that addressed the potential threats and hazards to the security of ePHI. Lastly, NYP failed to implement appropriate policies and procedures for authorizing access to its databases and failed to comply with its own policies on information access management.
"When entities participate in joint compliance arrangements, they share the burden of addressing the risks to protected health information," said
NYP has paid OCR a monetary settlement of
For information about the basics of HIPAA Security Risk Analysis and Risk Management, as well as other compliance tips, visit: http://www.hhs.gov/ocr/privacy/hipaa/understanding/training
The
The
To learn more about non-discrimination and health information privacy laws, your civil rights and privacy rights in health care and human service settings, and to find information on filing a complaint, visit us at www.HHS.gov/OCR
TNS 30VianaGem - 140508-4728962 30VianaGem
| Copyright: | (c) 2014 Targeted News Service |
| Wordcount: | 583 |



King Proposes Eliminating Tax on Health Insurance
Advisor News
- How to listen to what your client isn’t saying
- Strong underwriting: what it means for insurers and advisors
- Retirement is increasingly defined by a secure income stream
- Addressing the ‘menopause tax:’ A guide for advisors with female clients
- Alternative investments in 401(k)s: What advisors must know
More Advisor NewsAnnuity News
- MassMutual turns 175, Marking Generations of Delivering on its Commitments
- ALIRT Insurance Research: U.S. Life Insurance Industry In Transition
- My Annuity Store Launches a Free AI Annuity Research Assistant Trained on 146 Carrier Brochures and Live Annuity Rates
- Ameritas settles with Navy vet in lawsuit over disputed annuity sale
- NAIC annuity guidance updates divide insurance and advisory groups
More Annuity NewsHealth/Employee Benefits News
- Reports Outline Clinical Trial Research Study Results from Imperial College London (Multimorbidity, health service use, and health insurance by socioeconomic groups in 31 countries: A multi-cohort study): Clinical Trial Research
- Findings from Brown University School of Public Health Broaden Understanding of Managed Care (Federal Enforcement Actions Against Medicare Advantage Plans): Managed Care
- Researchers at Brown University Warren Alpert Medical School Target Managed Care (The Aging World of Spinal Deformity Surgery: Epidemiological Trends Over A 12-Year Period): Managed Care
- NC parents and doctors push for insurance coverage for a medical test they say saves lives
- Georgia woman works through injuries as health insurance costs soar
More Health/Employee Benefits NewsLife Insurance News
- AM Best Affirms Credit Ratings of Berkshire Hathaway Life Insurance Company of Nebraska and First Berkshire Hathaway Life Insurance Company
- Generational expectations: A challenge for the industry
- Greg Lindberg asks NC judge for no jail time in bribery, fraud cases
- National Life Group Names Brenda Betts to Its Board of Directors
- Ask Tim a Question? Business, Finances, Money, or Taxes
More Life Insurance News