HHS Takes Action Ensuring Individual HIPAA Access to Health Information

According to OCR recent studies and enforcement experience, individuals face obstacles to accessing their health information. To ensure individuals have timely access to their health information, HHS has released a fact sheet and Frequently Asked Questions (FAQs) to further clarify individuals’ core right under HIPAA to access and obtain a copy of their health information.
Continue reading

$750,000 HIPAA Settlement Highlights the Need for Organization-wide Risk Analysis

The University of Washington Medicine (UWM) has agreed to settle charges that it violated the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Security Rule. The U.S. Department of Health and Human Services Office for Civil Rights (OCR) initiated its investigation of the UWM following receipt of a breach report on November 27, 2013, which indicated that the electronic protected health information (e-PHI) of approximately 90,000 individuals was accessed after an employee downloaded an email attachment that contained malicious malware.  

Continue reading