The HIPAA Journal is the leading provider of news, updates, and independent advice for HIPAA compliance

HIPAA Compliance News

Our HIPAA compliance news section keeps you up to date with HIPAA breaches, OCR updates and HITECH and GDPR compliance issues. Make sure you remain up to date with the latest HIPAA compliance news by subscribing to our newsletter or follow us on Twitter @HIPAAJournal.

March 2024 Healthcare Data Breach Report

March 2023 healthcare data breach report

March was a particularly bad month for healthcare data breaches with 93 branches of 500 or more records reported to...

New Jersey Nursing Facility to Pay $100,000 CMP to Resolve HIPAA Right of Access Violation

The HHS’ Office for Civil Rights has announced another financial penalty has been imposed for a violation of the HIPAA...

HHS Issues Guidance to Teaching Hospitals and Medical Schools on Informed Consent Requirements

The Department of Health and Human Services (HHS) has written to the nation’s teaching hospitals and medical schools to clarify...

Healthcare Cyber Security Summit June 12-13 with 20% Discount

healthcare data breaches

The HealthSec: Cyber Security for Healthcare Summit returns for its 2nd edition in Boston, Massachusetts on June 12th – 13th!...

February 2024 Healthcare Data Breach Report

There has been a fall in the number of reported healthcare data breaches for the second consecutive month, with 59...

OCR Updates Guidance on the Use of Online Tracking Technologies by HIPAA Regulated Entities

The Department of Health and Human Services’ Office for Civil Rights (OCR) has issued updated guidance for entities regulated by...

News Categories

Notices

OCR Opens HIPAA Compliance Investigation of Change Healthcare

The HHS’ Office for Civil Rights has opened an investigation of Change Healthcare following its February 21, 2024, cyberattack, just...

How to Make Microsoft Office 365 HIPAA Compliant

Microsoft Office 365 HIPAA Compliant

Microsoft Office is not HIPAA compliant by default and it is not sufficient to simply agree to the terms of...

Indiana Attorney General Files Lawsuit Against Apria Healthcare Alleging HIPAA Violations

Indiana Attorney General Todd Rokita has filed a lawsuit against Apria Healthcare alleging violations of the Health Insurance Portability and...

OCR Reports to Congress on HIPAA Compliance and Data Breaches

The Department of Health and Human Services (HHS) Office for Civil Rights has submitted its annual reports to Congress on...

Ransomware Attack on Maryland Psychotherapy Provider Results in HIPAA Penalty

2023 cost of a healthcare data breach

The Department of Health and Human Services (HHS) Office for Civil Rights (OCR) has settled alleged violations of the Health...

CMS Updates Policy to Allow Texting Patient Information and Patient Orders

The Centers for Medicare and Medicaid Services (CMS) at the Department of Health and Human Services (HHS) has updated its...

New HIPAA Regulations in 2023-2024

There are multiple new HIPAA regulations currently under consideration, and while some may be introduced as individual regulations, many could...

Is Google Slides HIPAA Compliant?

Google Slides is HIPAA compliant and can be used to create slides and presentations containing Protected Health Information provided the...

How to File a HIPAA Complaint

HIPAA gives individuals the right to file a HIPAA complaint against Covered Entities and Business Associates if they believe their...

What are HIPAA Covered Entities?

The term HIPAA Covered Entities is most often defined as health plans, healthcare clearinghouses, and healthcare providers that create, receive,...

Is iCloud HIPAA Compliant?

iCloud is not HIPAA compliant and cannot be used to store, sync, or share media containing Protected Health Information (PHI)...

What is a HIPAA Subpoena?

A HIPAA subpoena is a legal document that compels HIPAA-regulated entities to release information such as patient medical records that...

Is Trello HIPAA compliant?

Trello is not HIPAA compliant and the platform cannot be used to receive, store, or share Protected Health Information due...

Is Dropbox HIPAA Compliant?

Dropbox is HIPAA compliant and can be used to store, sync, and share Protected Health Information provided organizations subscribe to...

Is Google Keep HIPAA Compliant?

Google Keep is HIPAA compliant and can be used to create notes containing Protected Health Information and share them via...

Is AWS HIPAA Compliant?

AWS supports HIPAA compliance for customers required to comply with the Health Insurance Portability and Accountability Act and will enter...

HIPAA for Therapists

When discussing HIPAA for therapists, it is important to be aware that a therapist can be a solo Covered Entity,...

Is doxy.me HIPAA Compliant?

On paper, doxy.me is HIPAA compliant and – subject to an organization subscribing to a business plan that supports HIPAA...

Is WebEx HIPAA Compliant?

Webex is HIPAA compliant and, provided policies relating to disclosures are complied with, can be used to disclose PHI during...

When Was HIPAA Enacted?

HIPAA was enacted at various stages following the passage of the Health Insurance Portability and Accountability Act in 1996, with...

What Does PHI Stand For?

PHI stands for Protected Health Information – a term is commonly referred to in connection with the Health Insurance Portability...

Is Evernote HIPAA Compliant?

Evernote is not HIPAA compliant and cannot be used to save, store, sync, or share documents and images containing Protected...

What Does HIPAA Cover?

HIPAA – via the Administrative Simplification Regulations – covers the privacy of individually identifiable health information when it is created,...

What is a HIPAA Violation?

A HIPAA violation refers to the failure to comply with HIPAA rules, which can include unauthorized access, use, or disclosure...

What is the Purpose of HIPAA?

The purpose of HIPAA was originally to ensure more employees could continue to receive health insurance coverage when they were...

What is Protected Health Information?

Protected Health Information is an individual’s health, treatment, or payment for treatment information – and any information maintained in the...

What is Considered PHI Under HIPAA?

Under HIPAA PHI is considered to be an individual’s health, treatment, and payment information, and any further information maintained in...

HIPAA Policies and Procedures

HIPAA policies and procedures are comprehensive guidelines that healthcare organizations must implement and regularly update to ensure the confidentiality, integrity,...

Can HIPAA be Waived?

Although HIPAA cannot be waived in its entirety, some provisions of the Privacy Rule can be waived in certain circumstances...

What is a HIPAA Security Incident?

Misunderstandings can sometimes exist with the distinction between a HIPAA security incident and the definition of a HIPAA breach. Although...

What is Medical Identity Theft?

Medical identity theft is the theft or misuse of an individual’s health information to fraudulently obtain treatment, prescription drugs, or...

When Can PHI be Disclosed?

Most sources of information answering the question when can PHI be disclosed refer to the standards of the HIPAA Privacy...

What Federal Department Regulates HIPAA?

Healthcare providers, health plans, healthcare clearinghouses, and business associates of those organizations must comply with the Health Insurance Portability and...

What Does HIPAA Mean?

HIPAA stands for the Health Insurance Portability and Accountability Act – an Act passed by Congress in 1996 with the...

Is Cloud Computing HIPAA Compliant?

Cloud computing has revolutionized the way healthcare organizations operate, but ensuring cloud computing is HIPAA compliant can be a challenge....

HIPAA Enforcement Rule

The HIPAA Enforcement Rule of 2006 – and subsequent amendments attributable to the passage of HITECH – details the procedures...

What is Protected by HIPAA?

The Health Insurance Portability and Accountability Act of 1996 (HIPAA) is an important legislative Act that requires healthcare organizations that...

Is HIPAA a Federal Law?

Although the answer to the question is HIPAA is federal law is yes, there are occasions when HIPAA is pre-empted...

x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist