Most Popular Stories
Featured Jobs
-
Epic Ambulatory Beacon Consultant
Meditology Services - NC -
Electronic Health Records Application Support Manager RN-New Year New Career
Avanti on behalf of Respected Health System - San Francisco, CA -
ICD-10 Revenue Cycle, Manager
Meditology Services - Atlanta, GA
Events
- IHI's Transforming the Primary Care Practice
May 1-3, 2012 — San Diego, CA - 3rd Healthcare IT Innovation Asia
Mar 14-15 2012 — Singapore - ICD-10 Reality Check - Breakfast Panel at HiMSS 2012!
February 22, 2012 - Wharton Health Care Business Conference
Feb 16-17 — Philadelphia, PA
Paid Research Reports
- Electronic health records: getting it right first time
- Cloud Computing Adoption In The APAC Life Sciences Industry
- Stakeholder Opinions: Ophthalmology - Leading brands under threat
- Genomics, Proteomics and Metabolomics in Diagnostics: Market landscape, innovative technologies and future outlook
- Healthcare Regulatory Update: The United Arab Emirates
- Point of Care Testing: Evaluating the return to evidence based medicine, novel technologies and the competitive landscape
Latest News
Free Newsletter
FierceHealthIT is the leading source of Healthcare IT news with a special focus on CPOE, EMR adoption, HIPAA compliance and other critical areas. Join 44,00 healthcare industry insiders who get FierceHealthIT via daily email for their must know IT news. Sign up today!
About | View Sample | Privacy
Top Tags
Whitepapers
- Information Security in Health Care- Four Critical Errors
- Meeting Naming Challenges in Hospitals
- Will ACOs Keep Hospitals and Insurers Out of Critical Care?
- Open Source and Healthcare IT
- Building Teams in Primary Care: Lessons from 15 Case Studies
- Executive Summary Report: Health Plan Communication Channels with Members
HHS blasts CMS's HIPAA enforcement program
A new report from the HHS Inspector General's has ripped into CMS for doing a bad job of enforcing the HIPAA security rule. In its own investigation, the IG found that when it conducted its own audits of hospital security systems, it found many significant vulnerabilities that could put patient data "at risk high."
Ordinarily, CMS is supposed to be conducting such audits itself, the IG noted. In fact, CMS hasn't done a single security audit since the rule went into effect on Feb. 16, 2006, the IG said.
The IG concedes that CMS has done a good job of setting up mechanisms to receive complaints from the public about security issues, and has also followed up effectively to address the problems brought up in the complaints. But that method alone doesn't do much to protect the nation's health consumers. After all, to date, CMS has received a grand total of 200 complaints since it began accepting them, an infinitesimal number given the number of facilities being regulated.
It seems likely that CMS will have to ramp up its HIPAA security enforcement efforts substantially over the next 12 months. Otherwise, I think that this report could trigger some very unfavorable scrutiny in Congress, particularly once a new administration is in place and everyone's trying to prove they're on top of things.
To learn more about the report:
- read this Modern Healthcare report
Related Articles:
Providers, states still struggle with HIPAA
HIPAA compliance nears adolescence
HIPAA standards move forward
Seattle system will pay $100K HIPAA fine after repeated breaches
Related Stories
- Majority of Americans want personal control of health information
- Easily preventable privacy breaches cost hospitals millions
- HIMSS: Health organizations not prepared for new HIPAA rules
- NJ flunks Medicaid data security audit
- NIH security breach includes data on U.S. Rep
- UCLA staff accused of viewing Britney Spears' records
- UCLA staff accused of viewing Britney Spears' records
- California expands health data breach rules
- Group to create health data security protection standard
- GAO warns of widespread ID security breaches
Home
| Subscribe | Advertise | Mobile Edition | RSS |
Privacy
| Site Map
| Editors | List in Marketplace | Supplier in MarketplaceTHE FIERCEMARKETS NETWORKFierceEnergy | FierceSmartGrid | FierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceEMR | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceGovernment | FierceHomelandSecurity | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceEnterpriseCommunications | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2011 FierceMarkets. All rights reserved. |
![]() |
