Most Popular Stories
- Healthcare jobs will grow the fastest of all industries
- Hospitals criticized for patient data-mining
- Young docs fuel palliative medicine, reveal generational differences
- New Jersey a hotbed for hospital consolidation
- Feds investigate Beth Israel for overbilling
- Health attorney: Google's new privacy policy does not violate HIPAA
Featured Jobs
-
Epic Ambulatory Beacon Consultant
Meditology Services - NC -
ICD-10 Revenue Cycle, Manager
Meditology Services - Atlanta, GA -
Electronic Health Records Application Support Manager RN-New Year New Career
Avanti on behalf of Respected Health System - San Francisco, CA
Events
- IHI's Breakthrough Series College
April 11-13, 2012 — Cambridge, MA - From IHI: The Patient Experience Seminar
March 27-28 — Boston, MA - AHIP's Institute 2012
June 20-22 — Salt Lake City, UT - CIO Healthcare Summit
March 11-14 — Scottsdale, AZ
Paid Research Reports
- Electronic health records: getting it right first time
- Cloud Computing Adoption In The APAC Life Sciences Industry
- Stakeholder Opinions: Ophthalmology - Leading brands under threat
- Genomics, Proteomics and Metabolomics in Diagnostics: Market landscape, innovative technologies and future outlook
- Healthcare Regulatory Update: The United Arab Emirates
- Point of Care Testing: Evaluating the return to evidence based medicine, novel technologies and the competitive landscape
Latest News
Free Newsletter
FierceHealthIT is the leading source of Healthcare IT news with a special focus on CPOE, EMR adoption, HIPAA compliance and other critical areas. Join 44,00 healthcare industry insiders who get FierceHealthIT via daily email for their must know IT news. Sign up today!
About | View Sample | Privacy
Top Tags
Whitepapers
- WakeMed found a trusted advisor who has our back
- Enterprise Security for the Healthcare Industry - Assuring Regulatory Compliance, ePHI Protection and Secure Healthcare Delivery
- Healthcare Megatrends: The Future of Healthcare Financing and Delivery
- Open Source and Healthcare IT
- An Option for the Ages: The FHA/HUD Hospital Mortgage Insurance Program
- Meeting Naming Challenges in Hospitals
HIT administrators in for rough ride under tough new HIPAA rules
The coming months will be a difficult time for HIT administrators. Even those with good security policies in place will doubtless be forced to perform a hard-nosed reassessment of their technical and administrative strategies, take a tough look at how they work with partners and subject any vendors hosting HIT applications to a rigorous security check-up.
As you know, federal data breach notification rules for entities covered by HIPAA kicked off last week. The move significantly expands the exposure those entities face when personal health information gets loose, and ups the ante considerably in extending coverage to "business associates" of HIPAA-covered entities. That term can cover a very wide range of contacts, including HIE partners, third-party administrators, claims processors, attorneys, accountants and software providers.
Under the rules, HIPAA-covered entities such as hospitals, doctors and health plans have to inform victims of unauthorized releases of their private data that their PHI has been compromised. The new rules also allow for criminal and civil penalties, effectively giving HIPAA's existing sanctions a shot of steroids.
The rules do leave room for some loopholes. For example, if the breached data is encrypted, making it unreadable, unusable or indecipherable, covered entities don't need to notify anyone. Another, far broader exception allows providers to skip the notification process if the breach doesn't pose a major risk of financial or other harm to an individual--and lets the provider decide whether the possible harm meets the disclosure standard.
To learn more about these rules:
- read this Federal Computer Week piece
- read the HHS rules
Related Articles:
Stimulus bill sets new HIPAA rules, but will it make a difference?
HIPAA privacy rules not enough, IOM says
Providers, states still struggle with HIPAA
Related Stories
- Privacy bill requires consent for collection of personal health info
- HHS proposes stronger privacy protections under HIPAA
- NIST awards EHR testing contract, ONC seeks to re-identify HIPAA data
- HIPAA 5010 transition big challenge for hospitals
- Clinical IT leads to security neglect at hospitals
- HHS plans surprise HIPAA audits
- Report: Data breaches from unencrypted devices up 525% in 2011
- Allscripts contest aims to create EHR-agnostic CDS tool
- Collegiate contest offers $10K prize for best mobile health app
- Professionalism of your hospital's info security staff vital to data protection
Home
| Subscribe | Advertise | Mobile Edition | RSS |
Privacy
| Site Map
| Editors | List in Marketplace | Supplier in MarketplaceTHE FIERCEMARKETS NETWORKFierceEnergy | FierceSmartGrid | FierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceEMR | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceGovernment | FierceHomelandSecurity | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceEnterpriseCommunications | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2011 FierceMarkets. All rights reserved. |
![]() |
