NEW: A Better Approach to HIPAA Training
View HIPAA Courses
NEW: A Better Approach to HIPAA Training
View HIPAA Courses

The HIPAA Journal is the leading provider of HIPAA training, news, regulatory updates, and independent compliance advice.

Steve Alder

Steve Alder is the editor-in-chief of The HIPAA Journal. Steve is responsible for editorial policy regarding the topics covered in The HIPAA Journal. He is a specialist on healthcare industry legal and regulatory affairs, and has 10 years of experience writing about HIPAA and other related legal topics. Steve has developed a deep understanding of regulatory issues surrounding the use of information technology in the healthcare industry and has written hundreds of articles on HIPAA-related topics. Steve shapes the editorial policy of The HIPAA Journal, ensuring its comprehensive coverage of critical topics. Steve Alder is considered an authority in the healthcare industry on HIPAA. The HIPAA Journal has evolved into the leading independent authority on HIPAA under Steve’s editorial leadership. Steve manages a team of writers and is responsible for the factual and legal accuracy of all content published on The HIPAA Journal. Steve holds a Bachelor’s of Science degree from the University of Liverpool. You can connect with Steve via LinkedIn or email via stevealder(at)hipaajournal.com

Communication Tools in Nursing
Apr21

Communication Tools in Nursing

There are several communication tools for nurses that can be used to improve interactions with patients, communicate more effectively with physicians, and ensure smooth handovers to colleagues. The use of these communication tools in nursing can help to improve patient outcomes, patient satisfaction, and reduce the potential for errors. Effective Communication is Essential in Nursing Effective communication is essential in nursing. Complex information must be conveyed between a nurse and a patient, the patient’s family members, and other members of the care team, often at times of great stress. Good communication between nurses and patients is critical for providing high quality, individualized care. The attitude of medical staff and their ability to communicate effectively are two of the most important factors that contribute to a good patient experience and high levels of patient satisfaction. However, when there are breakdowns in communication in nursing the consequences can be grave. Most nurses will have a good baseline level of communication and interpersonal skills, but...

Read More
Fairview Health Services Sues Change Healthcare After Incurring $7 Million in Losses
Apr21

Fairview Health Services Sues Change Healthcare After Incurring $7 Million in Losses

Change Healthcare is facing another class action lawsuit over its February 2024 ransomware attack. The latest lawsuit was filed by a healthcare provider to recover losses incurred due to the prolonged outage of Change Healthcare’s claims processing and payment functions. The ransomware attack was conducted by an affiliate of the BlackCat (ALPHV) ransomware group in February 2024. According to the latest estimate from Change Healthcare, the protected health information of 190 million individuals was stolen in the attack. Many class action lawsuits have already been filed against Change Healthcare over the breach, and they have been consolidated into a single lawsuit, which Change Healthcare is currently attempting to have dismissed. More than two dozen healthcare providers have also sued Change Healthcare to recover losses incurred due to the attack and the massive disruption to its clearinghouse services that followed. The latest lawsuit was filed by Fairview Health Services, a Minneapolis, MN-based integrated healthcare system that operates 10 hospitals and medical centers,...

Read More
Business Associate Sued By HIPAA-Covered Entity over Alleged HIPAA Security Rule Failures
Apr21

Business Associate Sued By HIPAA-Covered Entity over Alleged HIPAA Security Rule Failures

A HIPAA-covered entity is suing one of its business associates over an alleged failure to comply with the terms of its business associate agreement (BAA), including not implementing appropriate HIPAA Security Rule safeguards. Molecular Testing Labs (MTL), a Vancouver, Washington-based laboratory specializing in precision laboratory diagnostics, discovered on March 12, 2025, that patient data had been compromised in a cyberattack on its managed service provider business associate, Ntirety. According to MTL’s investigation, a cybercriminal group, potentially of Russian origin, breached Ntirety’s network in a ransomware attack. MTL conducted a forensic investigation and determined that there were “significant deficiencies, shortcomings, and omissions” in Ntirety’s security practices and procedures, which were exploited by the threat actor to access its computer systems and sensitive MTL data. Further, as a result of the ransomware attack, Ntirety was unable to provide material support to MTL for several weeks, and when support was provided, it was conducted “slowly and incompetently.”...

Read More
Healthcare Organizations Struggling to Shift from Reactive to Proactive Cybersecurity
Apr21

Healthcare Organizations Struggling to Shift from Reactive to Proactive Cybersecurity

Healthcare organizations are still taking a reactive approach to cybersecurity rather than proactively taking steps to reduce risk, according to the findings of a 2025 Healthcare Cybersecurity Benchmarking Study. The study was conducted by KLAS Research in collaboration with Censinet, Health-ISAC, the Scottsdale Institute, the American Hospital Association, and the Healthcare & Public Health Sector Coordinating Councils Public-Private partnership. Many healthcare organizations are proactively reducing cybersecurity risks by adopting cybersecurity frameworks and best practices, including the NIST Cybersecurity Framework 2.0, Health Industry Cybersecurity Practices (HCIP), NIST AI Risk Management Framework (NIST AI RMF) and, a new addition for this year, the Department of Health and Human Services (HHS) Healthcare and Public Health Sector Cybersecurity Performance Goals (HPH CPGs). The study looked at self-reported coverage within these frameworks and gaps that persist around areas such as third-party risk management and asset management. This year, 69 healthcare and payer...

Read More
Email Accounts Breached at San Francisco Campus for Jewish Living & Altior Healthcare
Apr21

Email Accounts Breached at San Francisco Campus for Jewish Living & Altior Healthcare

Email account breaches have been announced by the San Francisco Campus for Jewish Living and Altior Healthcare in California, and Bassett Healthcare Network has confirmed the unauthorized acquisition of patient data by a former Bassett Healthcare Network physician. San Francisco Campus for Jewish Living Hebrew Home for Aged Disabled, doing business as San Francisco Campus for Jewish Living in California, has notified 2,568 individuals about the exposure of some of their protected health information in an email security incident. The substitute breach notice does not state when the email account breach was compromised, only that the unauthorized access was detected on December 27, 2024. The email account was immediately secured to prevent further access, and an investigation was launched to confirm the nature and scope of the unauthorized activity. The forensic investigation confirmed that the breach was limited to a single email account, with no other systems compromised. The account contained names, dates of birth, medical record numbers, dates of services, admission/discharge...

Read More
x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist