Need a new search?

If you didn't find what you were looking for, try a new search!

Innovative Risk Assessment Tools for Healthcare: Safeguarding Safety & Compliance

The safety of patients and the security of their data have become vital in the fast-paced healthcare landscape. With cutting-edge technological advancements and a growing dependence on electronic health records (EHRs), healthcare organizations find themselves vulnerable to numerous threats that can jeopardize patient well-being and confidential information alike. To combat these risks head-on, healthcare providers seek refuge in specialized risk assessment tools tailor-made for their unique [...]

2023-11-01T10:42:59-04:00October 31st, 2023|

OCR Cybersecurity Newsletter Offers Guidance Against Common Cyberattacks

Each quarter the Department of Health and Human Services’ Office for Civil Rights issues a cybersecurity newsletter. The newsletter highlights cybersecurity trends affecting the healthcare industry. As the March 2022 OCR Cybersecurity Newsletter notes, the number of hacking and IT incidents affecting electronic protected health information (ePHI) has shot up, and rather quickly at that. In fact, there has been a 45% increase in the number [...]

2023-07-27T10:17:53-04:00March 25th, 2022|

HIPAA SRA Requirements: Conduct Ongoing, Continuous Risk Analyses

The question is asked of HIPAA subject matter experts with an almost maddening frequency: “How often do I need to conduct a HIPAA Security Risk Analysis (SRA)?” In 2010, the Department of Health and Human Services’ Office for Civil Rights issued guidance on the topic. The guidance did not spell out how often the analysis is to be performed. Yet, the guidance [...]

2023-12-14T15:38:32-05:00March 1st, 2022|

Risks of Mobile Health Apps: Are Health Apps Putting PHI at Risk?

A recent study concluded that many popular mobile health apps pose a risk to protected health information (PHI) security. The study analyzed the security of 30 health apps that allow healthcare providers to review patient charts and schedules, and found that all of them are vulnerable to API cyberattacks. More details on the risks of mobile healthcare apps are discussed. Risks of Mobile Health Apps: What Did the [...]

2023-07-31T11:53:03-04:00February 16th, 2021|

Medicaid Data Breach Risks Patient Data

For seven years Florida Healthy Kids Corporation, a Medicaid health plan provider, left its online application platform unprotected, unbeknownst to them. More details on the Medicaid data breach are discussed. Florida Healthy Kids Medicaid Data Breach Florida Healthy Kids contracted a third-party web hosting provider, Jelly Bean Communications Design, LLC., to manage their website. On December 9, 2020, Jelly Bean Communications notified Florida [...]

2023-07-31T12:02:13-04:00February 5th, 2021|

HIPAA Security Risk Assessments: 5 Things to Know

HIPAA Security Risk Assessments: 5 Things to Know The Health Insurance Portability and Accountability Act (HIPAA) mandates that healthcare organizations complete an annual security risk assessment (SRA). An SRA allows organizations to identify areas in which their security practices may be lacking. Completing an SRA enables organizations to develop remediation plans, specific to their organization, to ensure that protected health information (PHI) is properly protected.  Security Risk Assessments (SRAs) [...]

2023-04-06T14:49:28-04:00August 19th, 2019|

OCR Did the Math, 200K Patients Exposed Equals a $100K Fine

Boo! On Halloween, HHS’ Office for Civil Rights (OCR) announced a settlement with a Massachusetts business associate (BA) for $100,000. This is the first ransomware agreement OCR has reached. The Attack and the Settlement After filing a breach report with OCR in 2019 reporting a ransomware attack that compromised the protected health information (PHI) of 206,695 patients, the OCR launched an investigation [...]

2023-11-01T10:42:59-04:00November 1st, 2023|

Healthcare Data Compliance: Security, Privacy & Compliance

Healthcare organizations face numerous challenges in protecting sensitive patient information. With the increasing use of electronic health records (EHRs) and the reliance on technology for data storage and transmission, healthcare data security, privacy, and compliance have become critical. We will review the importance of healthcare data compliance and its role in safeguarding patient information. Understanding Healthcare Data Security, Privacy, and Compliance Data [...]

2023-09-21T17:22:55-04:00September 22nd, 2023|

Eye Care Cyberattack Affects 500K Patients

Wolfe Eye Clinic, based in Iowa, suffered a cyberattack that gave hackers access to their patient files. The eye care cyberattack potentially affected 500,000 patients that had been treated by the clinic. More details are discussed below. How Did the Eye Care Cyberattack Occur? It was recently announced that, on February 8, 2021, Wolfe Eye Clinic discovered that an unauthorized party had [...]

2023-07-28T09:41:34-04:00June 29th, 2021|

Unpacking the Critical Benefits of Cybersecurity in Healthcare

Over the past several decades, healthcare organizations have wholeheartedly adopted a range of technology. While expediting administrative and healthcare delivery tasks, digital innovation has come with its share of risk. The vast cyber risk landscape has made it vital that healthcare IT leaders find ways to manage a treasure trove of sensitive data, from protected health information to financial records, making them prime targets [...]

2024-05-16T11:18:05-04:00May 16th, 2024|