Recent Articles

  • Healthcare Data Breaches in February 2025: Over 1.2 Million Patients Affected

    Published On: March 25th, 2025

    In yet another alarming month for healthcare cybersecurity, 1,238,201 patients had their personal and medical information exposed due to 46 data breaches in February 2025. The numbers [...]

  • OCR Settles 5th Case Under Risk Analysis Initiative

    Published On: March 24th, 2025

    On March 21, 2025, the Department of Health and Human Services (HHS) Office for Civil Rights (OCR) announced a settlement with Health Fitness Corporation. OCR was investigating [...]

  • What Every Compliance Officer Should Know About Healthcare Audits

    Published On: March 19th, 2025

    Governmental agencies and certain private entities are authorized to conduct healthcare audits of healthcare entities. Broadly speaking, an audit is a review or investigation of an entity’s [...]

  • HHS Policy Statement Limits Public Participation in Rulemaking

    Published On: March 13th, 2025

    On Friday, February 28, 2025, the Department of Health and Human Services issued a policy statement stating that it would limit the extent to which members of [...]

  • Combating Penalties for Noncompliance With Reimbursement Practices

    Published On: March 12th, 2025

    Penalties for noncompliance with reimbursement practices may be issued against healthcare organizations. A healthcare organization that does not follow proper methods of obtaining reimbursement from federal payor [...]

  • HHS Imposes $200,000 HIPAA Right of Access Civil Monetary Penalty Against OHSU

    Published On: March 7th, 2025

    In early March of 2025, the Department of Health and Human Services’ (HHS) Office for Civil Rights (OCR) announced that it had imposed a $200,000 civil monetary [...]

Blog Categories

  • 42 CFR Part 2

    42 CFR Part 2 dictates rules for the confidentiality of substance abuse records. Find out when providers are permitted to share records and when they are not.

  • Healthcare Compliance

    Healthcare compliance is complex, especially when you have to meet multiple compliance standards. Learn how to navigate HIPAA, OSHA, and SOC 2 requirements.

  • Healthcare Data Breach Report

    Each month, we review what caused healthcare data breaches and how they could have been prevented. Learn how to protect your business from breaches and fines.

  • HIPAA Compliance

    Whether you’re a healthcare provider, health plan, or healthcare vendor, you must meet HIPAA standards. Learn what’s required for HIPAA compliance and how to implement a successful program.

  • HIPAA News

    Keep up to date on HIPAA news by checking in with us. We will provide you with information on changes to HIPAA law, healthcare breaches, HIPAA violations, and OCR fines.

  • HIPAA Violation Fines

    Healthcare organizations that fail to meet HIPAA Privacy, Security, or Breach Notification Rules can face HIPAA violation fines. Find out who has been fined and how they could have prevented penalties.

  • MACRA MIPS

    To be eligible for reimbursement under the Merit-based Incentive Payment System (MIPS), you must meet Medicare Access and CHIP Reauthorization Act (MACRA) standards.

  • OCR Enforcement

    The Office for Civil Rights (OCR) is the enforcing body of HIPAA. The OCR conducts investigations into potential HIPAA violations, issuing judgments that can result in settlements.

  • OIG Compliance

    The Office of Inspector General (OIG) released guidance, referred to as the seven elements of compliance. Find out how to implement an effective compliance program.

  • OSHA Healthcare Compliance

    OSHA healthcare compliance ensures a safe and healthy environment for patients and staff. Find out how to meet various OSHA standards specific to healthcare.

  • Right of Access

    The HIPAA Right of Access standard requires healthcare providers to comply with patient record requests. This standard is the most cited in HIPAA settlements. Learn the rules.

  • SOC 2 Compliance

    The American Institute of Certified Public Accountants (AICPA) created a cybersecurity framework called Service Organization Control Type 2 (SOC 2). Learn how about SOC 2 compliance.