25% off all training courses Offer ends August 28, 2026
View HIPAA Courses
25% off all training courses
View HIPAA Courses
Offer ends August 28, 2026

The HIPAA Journal is the leading provider of HIPAA training, news, regulatory updates, and independent compliance advice.

Steve Alder

Steve Alder is the editor-in-chief of The HIPAA Journal. Steve is responsible for editorial policy regarding the topics covered in The HIPAA Journal. He is a specialist on healthcare industry legal and regulatory affairs, and has 10 years of experience writing about HIPAA and other related legal topics. Steve has developed a deep understanding of regulatory issues surrounding the use of information technology in the healthcare industry and has written hundreds of articles on HIPAA-related topics. Steve shapes the editorial policy of The HIPAA Journal, ensuring its comprehensive coverage of critical topics. Steve Alder is considered an authority in the healthcare industry on HIPAA. The HIPAA Journal has evolved into the leading independent authority on HIPAA under Steve’s editorial leadership. Steve manages a team of writers and is responsible for the factual and legal accuracy of all content published on The HIPAA Journal. Steve holds a Bachelor’s of Science degree from the University of Liverpool. You can connect with Steve via LinkedIn or email via stevealder(at)hipaajournal.com

Data Breaches Prompt Change in Florida Law
Oct14

Data Breaches Prompt Change in Florida Law

A new state law has been passed to give Florida residents greater protection by ensuring both private companies and government agencies store electronic data securely. The recent spate of cyber attacks and HIPAA breaches have highlighted the fact that consumers now face a very real threat and that their personal and confidential data could fall into the hands of criminals. The elevated risk has prompted Florida to draft new legislation to better protect its residents and in July of this year the Florida Information Protection Act of 2014 (FIPA) came into force. The new FIPA act is similar to the Health Insurance Portability and Accountability Act of 1996. The legislation has been introduced to protect the privacy of consumers and to hold offenders accountable for data breaches. The Attorney General’s Office also wants rapid action following a data breach to limit the harm, damage and loss caused. By sending notifications to victims promptly they are able to take action to protect their identities and prevent further loss or damage. Under FIPA, organizations must take...

Read More
HIPAA Breach Report: July 2014
Oct13

HIPAA Breach Report: July 2014

July 2014 HIPAA Breach Summary: The HIPAA Breach Notification Rule demands that Healthcare providers, health plans healthcare clearinghouses and BAs report data breaches involving more than 500 individuals to the Office for Civil Rights of the HHS within sixty days of discovery of the breach. This report contains a summary of the breaches reported to the OCR during the month of July, 2014. Major HIPAA Breaches in July 2014 A number of large scale HIPAA breaches were reported to the Office for Civil Rights in July, exposing more patient records than in any other month since January this year. The data breach at the Montana Department of Public Health and Human Services (MT) is the largest reported HIPAA breach of the year, exposing 1,062,509 records. This is almost as many records as were exposed in the HIPAA breaches at Horizon Healthcare Services, Inc., (January) and Sutherland Healthcare Solutions (May) combined. Human error was cited as the reason for a data breach at St. Vincent Hospital and Health Care Center, Inc. (IN) after 63,325 individuals received a mailing in which...

Read More
Community Health Systems HIPAA Breach Lawsuits Mount
Oct13

Community Health Systems HIPAA Breach Lawsuits Mount

The data breach at Community Health Systems which was reported in August was the second largest in history, with 4.5 million records potentially accessed by a suspected group of Chinese hackers. The successful attack and data theft has left millions of patients potentially exposed and at risk of identity theft and financial loss. The data accessed included personal information such as names, addresses, social security numbers and date of births; information the thieves can use to create fake documents and run up huge debts. The HIPAA breach has understandably resulted in legal action being taken against CHS by some of the victims, with at least two class action lawsuits now filed against the healthcare provider and operator of 206 nationwide hospitals.   A class action lawsuit has been filed by firms Slack & Davis and Branch Law Firm with Briana Brito named as the class representative. A second class action suit has been filed on behalf of 5 Alabama residents (and all others affected). Specific dollar amounts have not been stipulated and are being left to the courts to decide....

Read More
Leading Texas Hospice Embraces Secure Messaging
Oct08

Leading Texas Hospice Embraces Secure Messaging

The Solaris Hospice is one of the largest palliative care providers in the Southwest – operating from sixteen locations to provide care and support for more than four hundred patients each day. The hospice´s 150 physicians and nurses work in a vast rural area in which effective communication is a must in order to maintain the organization´s reputation as a healthcare leader among the communities it serves. One of the biggest issues experienced by the organization was maintaining the integrity of its client´s protected healthcare information (PHI) while its workforce was distributed throughout the community. Following the enactment of new regulations within the Health Insurance Portability and Accountability Act (HIPAA), all PHI now has to be encrypted and monitored when it is at rest or in transit. The new regulations mean that “traditional” methods of communicating patient data – such as SMS and email – are effectively outlawed, and this created an issue for community nurses who wanted to escalate patient concerns to the organization´s medical team or send images...

Read More
HIPAA Audits to Recommence in 2015
Oct06

HIPAA Audits to Recommence in 2015

Following on from a series of pilot HIPAA audits, the HHS Office for Civil Rights (OCR) is planning a second round of random audits to ensure healthcare organizations are fully compliant with current HIPAA regulations. The next round of audits will also carry severe financial penalties for any violations uncovered. The next round of HIPAA audits was planned to start in October 2014, although the date has now been pushed back until 2015. It was announced at the San Diego American Health Information Management Association (AHIMA) annual convention that a round of 350 audits would be conducted on healthcare organizations, with a further 50 audits to be conducted on business associates to ensure compliance. Insurers and clearinghouses will also be subjected to audits in 2015. The healthcare organizations due to be audited have already been selected, although entities have also been selected to ensure better coverage across the whole of the United States and to ensure that a good diversity of entities are assessed for HIPAA compliance.  This only gives healthcare organisations a few...

Read More
x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist