Breach involving software upgrade to online application system leads to allegations of HIPAA privacy and security failures, and a $1.7 million settlement payment to HHS.
Continue Reading Wellpoint pays $1.7 Million to Settle Potential HIPAA Violations

Are you a “non-Exchange entity” with respect to the healthcare exchanges coming later this year? If so you may become subject to a one-hour breach notification mandate.
Continue Reading One Hour Breach Notification Mandate Proposed Regarding Obamacare Health Exchanges

The New York Times recently reported that hackers from China have resumed attacks on U.S. targets, despite efforts by the Obama Administration to curb these intrusions. According to the article and a report by a security company, Mandiant, hackers from China have been behind…

scores of thefts of intellectual property and government documents over the past five

University’s $400,000 payment to HHS to settle HIPAA compliance allegations highlights critical role of risk assessments, and need for security policies and procedures.
Continue Reading Idaho State University Investigated by HHS Following Report of Data Breach

Health care practices and businesses generally need to be more careful when responding to requests for medical and other sensitive personal information.
Continue Reading We have to disclose patient records in response to a subpoena/attorney letter, right?

Will NY’s highest court allow patients to sue medical practices for fiduciary duty breaches when their non-physician employees disclose confidential medical records?
Continue Reading New York’s Highest Court To Say Whether Medical Practice Can Be Sued For Wrongful Texts By Non-Physician Employee