25% off all training courses Offer ends May 29, 2026
View HIPAA Courses
25% off all training courses
View HIPAA Courses
Offer ends May 29, 2026

The HIPAA Journal is the leading provider of HIPAA training, news, regulatory updates, and independent compliance advice.

Steve Alder

Steve Alder is the editor-in-chief of The HIPAA Journal. Steve is responsible for editorial policy regarding the topics covered in The HIPAA Journal. He is a specialist on healthcare industry legal and regulatory affairs, and has 10 years of experience writing about HIPAA and other related legal topics. Steve has developed a deep understanding of regulatory issues surrounding the use of information technology in the healthcare industry and has written hundreds of articles on HIPAA-related topics. Steve shapes the editorial policy of The HIPAA Journal, ensuring its comprehensive coverage of critical topics. Steve Alder is considered an authority in the healthcare industry on HIPAA. The HIPAA Journal has evolved into the leading independent authority on HIPAA under Steve’s editorial leadership. Steve manages a team of writers and is responsible for the factual and legal accuracy of all content published on The HIPAA Journal. Steve holds a Bachelor’s of Science degree from the University of Liverpool. You can connect with Steve via LinkedIn or email via stevealder(at)hipaajournal.com

OSHA Compliance for Dental Offices
Aug03

OSHA Compliance for Dental Offices

OSHA compliance for dental offices most often consists of compliance with all applicable common OSHA standards and compliance with any further OSHA standards specifically relevant to the business and the nature of services provided. Common OSHA standards for dental offices include: 22 General Requirements 25 Stairways 35 Means of Egress 38 Emergency Action Plan 95 Noise Exposure 1910 Subpart H Hazardous Materials 1910 Subpart I Personal Protective Equipment 1910 Subpart J General Environmental Controls 151 Medical and First Aid 1910 Subpart L Fire Protection 1910 Subpart O Machinery and Machine Guarding 303 General Electrical Requirements 1096 Ionization Radiation 1200 Hazard Communication 1910 Subpart Z Toxic and Hazardous Substances 29 USC 654 OSHA General Duty Clause 29 CFR 1904 OSHA Reporting Requirements Although there are no specific OSHA standards for dental offices, dental office employers with one or more employees must comply with the Occupational Safety and Health Act. The Act requires each employer: (1) to furnish each of his/her employees employment and a place of...

Read More
Is BitRaser HIPAA Compliant?
Aug02

Is BitRaser HIPAA Compliant?

BitRaser is a HIPAA-compliant vendor of data erasure products that support HIPAA compliance. BitRaser products can be used to securely and permanently erase electronic protected health information (ePHI) in accordance with the standards and implementations of the HIPAA Security Rule. What is BitRaser? BitRaser is a suite of data erasure & diagnostics software solutions developed by Stellar Data Recovery Inc., that can be used to permanently eradicate data from electronic storage devices to make reconstruction of the data impossible, without having to destroy the drives on which data are stored. Many data erasure products delete data but do not eliminate all data traces, which can allow some data to be recovered. Stellar Data Recovery is an Indian corporation with North American headquarters in Metuchen, New Jersey. Stellar Data Recovery provides data recovery, data erasure, mailbox conversion, and file repair software and services in more than 190 countries and has more than 3 million customers including government entities such as the U.S. Department of State, Department of...

Read More

95% of Patients are Worried About Medical Record Breaches

Given the number of healthcare data breaches that are now being reported it is no surprise that patients are concerned that their sensitive health information will be obtained by cybercriminals or leaked on the Internet. In the first half of 2023, 339 HIPAA data breaches of 500 or more records had been reported to the HHS’ Office for Civil Rights, and while that represents a year-over-year decline in data breach incidents, more than 41,450,000 healthcare records have been reported as breached in the first 6 months of the year – 10 million less than the number of breached records in all of 2022. The health information network and interoperability provider, Health Gorilla, recently conducted a study that explored patients’ views on health information privacy and data sharing. 1,213 patients were surveyed who had seen a physician at least once in the previous 12 months. 95% said they were concerned that their medical records would be stolen or leaked online, 70% of whom had extreme or moderate concerns about healthcare data breaches. More than half of respondents expressed concern...

Read More

Sutter Senior Care and Allegheny County Have Data Compromised in MOVEit Transfer Hacks

Allegheny County in Pennsylvania has recently confirmed that the protected health information of up to 689,686 individuals was compromised in a May 2023 hacking incident by the Clop threat group. Allegheny County was alerted about the breach on June 1, 2023, and it was confirmed that the group exfiltrated files containing sensitive data between May 28 and May 29, 2023. Allegheny County said it received assurances from the Clop group that the stolen data was deleted, per the group’s policy of only attacking and extorting money from businesses; however, affected individuals have been told to take steps to protect their personal information and to register for the complimentary credit monitoring and identity theft protection services that have been offered. County officials confirmed that the compromised information included names, Social Security numbers, birth dates, driver’s license/state identification numbers, taxpayer identification numbers, student identification numbers, and for certain individuals, medical information such as diagnoses, treatment information, and admission...

Read More

411,400 Patients Affected by Cyberattack on the Chattanooga Heart Institute

The Chattanooga Heart Institute (CHI) in Tennessee has recently announced that it identified a cyberattack on its network on April 17, 2023. Action was immediately taken to prevent further unauthorized access and a third-party forensics vendor was engaged to investigate the incident and determine the nature and scope of the attack. The forensic investigation confirmed that unauthorized individuals gained access to its network between March 8, 2023, and March 16, 2023, and on May 31, 2023, the investigation confirmed that files containing sensitive patient data had been copied by the attackers. CHI’s electronic medical record system was not compromised; however, the files removed from its system were found to contain names, mailing addresses, email addresses, phone numbers, birth dates, driver’s license numbers, Social Security numbers, account information, health insurance information, diagnosis/condition information, lab results, medications, and other clinical, demographic, or financial information. Notification letters will be sent to the affected individuals in the coming weeks...

Read More
x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist