<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.fiercehealthit.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>data security</title>
 <link>http://www.fiercehealthit.com/tags/data-security</link>
 <description></description>
 <language>en</language>
<item>
 <title>Firm offers data breach insurance</title>
 <link>http://www.fiercehealthit.com/story/firm-offers-data-breach-insurance/2008-08-17?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>&lt;p&gt;A unit of hospital purchasing alliance Premier Inc.&amp;nbsp;has begun offering insurance designed to protect members against the cost of data breaches. We&#039;re guessing that HIT leaders and their colleagues are starting to realize just how expensive a malicious data breach can be. Those numbers are extremely steep--in fact, most incidents are estimated to cost nearly $200 per record and $6.3 million per incident. To address these concerns, the Premier unit&#039;s Premier Insurance Management Services of Charlotte, N.C., is offering data privacy and network risk liability insurance to members. It&#039;s working in partnership with Media/Professional Insurance of Kansas City, MO.&lt;br /&gt;&lt;br /&gt;The insurance covers a bundle of &quot;soft&quot; costs relating from the breach, including expenses, fines and penalties arising from government and regulatory investigations into how the hospitals managed personal data. It also covers crisis management, public relations and customer notification. Policyholders also get access to data security risk management and planning help, consultation, and educational assistance from law firm Sonnenschein, Nath &amp;amp; Roshenthal LLP.&lt;br /&gt;&lt;br /&gt;To learn more about this insurance:&lt;br /&gt;- read this &lt;em&gt;Health Data Management&lt;/em&gt; &lt;a href=&quot;http://www.healthdatamanagement.com/news/security26787-1.html&quot;&gt;article&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Related Articles:&lt;/strong&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercehealthit.com/story/u.s.-hospitals-have-security-blind-spot-/2008-04-14&quot;&gt;U.S. hospitals have security &#039;blind spot&#039;&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercehealthit.com/story/more-hospital-data-security-breaches/2006-11-06&quot;&gt;More hospital data security breaches&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercehealthit.com/story/johns-hopkins-loses-patient-employee-data/2007-02-12&quot;&gt;Johns Hopkins loses patient, employee data&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercehealthit.com/story/it-staffer-fired-after-data-theft-sues-hospital/2007-09-10&quot;&gt;IT staffer fired after data theft, sues hospital&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.fiercehealthit.com/story/firm-offers-data-breach-insurance/2008-08-17#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/crisis-management">Crisis Management</category>
 <category domain="http://www.fiercehealthit.com/tags/customer-notification">Customer Notification</category>
 <category domain="http://www.fiercehealthit.com/tags/data-breach">Data Breach</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/nath-roshenthal">Nath &amp;amp; Roshenthal</category>
 <category domain="http://www.fiercehealthit.com/tags/premier-inc-0">Premier Inc.</category>
 <category domain="http://www.fiercehealthit.com/tags/professional-insurance">Professional Insurance</category>
 <category domain="http://www.fiercehealthit.com/tags/sonnenschein">Sonnenschein</category>
 <pubDate>Sun, 17 Aug 2008 08:02:29 -0400</pubDate>
 <dc:creator>Anne Zieger</dc:creator>
 <guid isPermaLink="false">8049 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>Seattle system will pay $100K HIPAA fine after repeated breaches</title>
 <link>http://www.fiercehealthit.com/story/seattle-system-will-pay-100k-hipaa-fine-after-repeated-breaches/2008-07-19?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>&lt;p&gt;A Seattle-based health system has agreed to pay a $100,000 HIPAA&amp;nbsp;fine to HHS--as well as improve its medical data security--after failing to properly secure data backup tapes, disks and laptops. This marks the first time HHS has agreed to a Resolution Agreement. During 2005 and 2006, medical data was stolen from Providence Health &amp;amp; Services several times, with backup tapes, optical disks&amp;nbsp;and laptops being lost or stolen repeatedly. All told, the unencrypted personal health information of more than 386,000 patients was compromised.&lt;br /&gt;&lt;br /&gt;In light of these incidents, the health system will now revise its policy on transporting patient records outside of company buildings, and&amp;nbsp;it will improve employee training. It will also undergo security monitoring by the feds, and turn in report on data security measures for three years.&lt;br /&gt;&lt;br /&gt;The fine that will be paid by Providence is actually fairly unusual, as very few HIPAA fines have actually been imposed to date. However, its security issues are also unique. While many health organizations have lost a single laptop or backup tape to theft or disorganization in recent years, I haven&#039;t encountered any that have actually had to report multiple losses. That might explain why federal monitors took a particular&amp;nbsp;interest in this organization&#039;s troubles.&lt;br /&gt;&lt;br /&gt;To learn more about the HIPAA settlement:&lt;br /&gt;- read this &lt;em&gt;Seattle Post-Intelligencer&lt;/em&gt; &lt;a href=&quot;http://seattlepi.nwsource.com/local/6420ap_wa_providence_hippa_fine.html&quot;&gt;piece&lt;/a&gt;&lt;br /&gt;- read this &lt;em&gt;Briefings on HIPAA&lt;/em&gt; &lt;a href=&quot;http://www.healthleadersmedia.com/content/215412/topic/WS_HLM2_TEC/HHS-Providence-Health-Services-reach-Resolution-Agreement.html&quot;&gt;article&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Related Articles:&lt;/strong&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercehealthit.com/story/it-staffer-fired-after-data-theft-sues-hospital/2007-09-10&quot;&gt;IT staffer fired after data theft, sues hospital&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercehealthit.com/story/tenet-warns-of-potential-data-theft/2008-02-19&quot;&gt;Tenet warns of potential data theft&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercehealthcare.com/story/va-pledges-better-data-security/2006-06-28&quot;&gt;VA pledges better data security&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercehealthit.com/story/johns-hopkins-investigates-data-breach/2007-09-10&quot;&gt;Johns Hopkins investigates data breach&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.fiercehealthit.com/story/seattle-system-will-pay-100k-hipaa-fine-after-repeated-breaches/2008-07-19#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/backup-tape">Backup Tape</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/hipaa">HIPAA</category>
 <category domain="http://www.fiercehealthit.com/tags/hipaa-fine">HIPAA fine</category>
 <category domain="http://www.fiercehealthit.com/tags/medical-data">medical data</category>
 <category domain="http://www.fiercehealthit.com/tags/providence-health">Providence Health</category>
 <category domain="http://www.fiercehealthit.com/tags/security-issues-0">security</category>
 <pubDate>Sat, 19 Jul 2008 22:56:35 -0400</pubDate>
 <dc:creator>Anne Zieger</dc:creator>
 <guid isPermaLink="false">8016 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>UnitedHealthcare breach leads to UC Irvine identity thefts</title>
 <link>http://www.fiercehealthit.com/story/unitedhealthcare-breach-leads-to-uc-irvine-identity-thefts/2008-06-09?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>
&lt;P&gt;After months of investigation, it looks like a data breach at health plan UnitedHealthcare Services may be behind a large-scale rash of identity theft taking place at the University of California, Irvine. As of last week, it appeared that more than 155 graduate and medical students at UC Irvine had been hit by the identity thieves, who filed false tax returns in the victim&#039;s names and collected their tax refunds. The breach could potentially affect 1,132 graduate students enrolled with the university&#039;s graduate student health insurance program in the 2006-07 school year, officials said. The IRS notes that identity thieves have been particularly aggressive this year, as they may be able to collect not only refunds, but also the pending stimulus checks being handed out to families and individuals.&lt;BR /&gt;&lt;BR /&gt;To learn more about the break-in:&lt;BR /&gt;- read this &lt;EM&gt;Computeworld&lt;/em&gt; &lt;A href=&quot;http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;articleId=9092978&amp;intsrc=industry_list&quot;&gt;piece&lt;/a&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Related Articles:&lt;/strong&gt;&lt;BR /&gt;&lt;A href=&quot;http://www.fiercehealthcare.com/story/trend-identity-thieves-get-better-at-stealing-medical-records/2008-05-07&quot;&gt;Trend: Identity thieves get better at stealing medical records&lt;/a&gt;&lt;BR /&gt;&lt;A href=&quot;http://www.fiercehealthcare.com/story/the-growing-problem-of-medical-identity-theft/2006-09-25&quot;&gt;The growing problem of medical identity theft&lt;/a&gt;&lt;BR /&gt;&lt;A href=&quot;http://www.fiercehealthcare.com/story/ny-hospital-worker-charged-with-massive-file-theft/2008-04-14&quot;&gt;NY hospital worker charges with massive file theft&lt;/a&gt;&lt;BR /&gt;&lt;A href=&quot;http://www.fiercehealthit.com/story/california-expands-health-data-breach-rules/2008-01-07&quot;&gt;California expands health data breach rules&lt;/a&gt;&lt;/p&gt;

</description>
 <comments>http://www.fiercehealthit.com/story/unitedhealthcare-breach-leads-to-uc-irvine-identity-thefts/2008-06-09#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/data-breach">Data Breach</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/health-plan-0">health plan</category>
 <category domain="http://www.fiercehealthit.com/tags/health-insurers-0">Insurers</category>
 <category domain="http://www.fiercehealthit.com/tags/irs-0">irs</category>
 <category domain="http://www.fiercehealthit.com/tags/medical-records">medical records</category>
 <category domain="http://www.fiercehealthit.com/tags/security-breaches-0">security breaches</category>
 <pubDate>Mon, 09 Jun 2008 06:59:58 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">7971 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>NJ flunks Medicaid data security audit</title>
 <link>http://www.fiercehealthit.com/story/nj-flunks-medicaid-data-security-audit/2008-05-05?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>
&lt;P&gt;A new audit has concluded that New Jersey has not put adequate security measures in place to protect sensitive Medicaid program data. The review, conducted by the New Jersey Office of the State Auditor, concluded that the program isn&#039;t monitoring access to data such as Social Security and tax identification numbers, DEA numbers and birth dates. This information could be used against, not only the more than one million patients covered by the New Jersey Medicaid program, but also physicians who participate in the program. Officials with the state Department of Human Services, which runs the Medicaid program, told New Jersey legislators that employees can only access areas in which they work, which limits the systems&#039; vulnerability. However, they admitted that they don&#039;t know which records employees view.&lt;BR /&gt;&lt;BR /&gt;To learn more about the audit:&lt;BR /&gt;- read this &lt;EM&gt;Philadelphia Inquirer&lt;/em&gt; &lt;A href=&quot;http://www.philly.com/philly/news/local/18479964.html&quot;&gt;article&lt;/a&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Related Articles:&lt;/strong&gt;&lt;BR /&gt;&lt;A href=&quot;http://www.fiercehealthit.com/story/cms-security-holes-expose-patient-data/2006-10-09&quot;&gt;CMS security holes expose patient data&lt;/a&gt;&lt;BR /&gt;&lt;A href=&quot;http://www.fiercehealthit.com/story/maine-struggles-with-medicaid-billing-system/2006-11-27&quot;&gt;Maine struggles with Medicaid billing system&lt;/a&gt;&lt;/p&gt;

</description>
 <comments>http://www.fiercehealthit.com/story/nj-flunks-medicaid-data-security-audit/2008-05-05#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/billing-system-0">billing system</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/medicaid-0">Medicaid</category>
 <category domain="http://www.fiercehealthit.com/tags/patient-data">patient data</category>
 <category domain="http://www.fiercehealthit.com/tags/security-holes-0">security holes</category>
 <category domain="http://www.fiercehealthit.com/tags/vulnerability-0">vulnerabilities</category>
 <pubDate>Mon, 05 May 2008 06:59:58 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">7931 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>U of Miami loses data on 2.1 million patients</title>
 <link>http://www.fiercehealthit.com/story/u-of-miami-loses-data-on-2.1-million-patients/2008-04-28?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>&lt;p&gt;
While they contend that the data is unreadable--and therefore poses no risks--officials with the University of Miami School of Medicine have gone public with the news that someone stole back-up tapes holding health and financial information on about 2.1 million patients. The data, which contains information on patients going back through 1999, was stolen from a storage company contracted to hold the records. The data includes names, addresses, Social Security numbers and, in some cases, health and financial information. The university plans to directly notify 47,000 patients whose data could have included credit card or other payment information. 
&lt;/p&gt;
&lt;p&gt;
However, officials say that since the data is stored in a &amp;quot;complex and proprietary format,&amp;quot; the thieves won&#039;t be able to access it. According to an analysis by computer security consulting firm Terremark Worldwide, which analyzed a similar set of back-up tapes, the nature of how the data was compressed and encoded should make it extremely difficult for thieves to access it.&lt;br /&gt;
&lt;br /&gt;
To find out more about U of M&#039;s data theft problem:&lt;br /&gt;
- read this &lt;em&gt;Florida Healthflash&lt;/em&gt; &lt;a href=&quot;http://www.healthleadersmedia.com/content/209936/topic/WS_HLM2_TEC/Health-Records-Personal-Data-Of-21-Million-UM-Patients-Stolen.html&quot;&gt;item&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Related Articles:&lt;/strong&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/nih-security-breach-includes-data-on-u.s.-rep/2008-04-07&quot;&gt;NHI security breach includes data on U.S. rep&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/california-expands-health-data-breach-rules/2008-01-07&quot;&gt;California expands health data breach rules&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/johns-hopkins-investigates-data-breach/2007-09-10&quot;&gt;Johns Hopkins investigates data breach&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthcare.com/story/va-pledges-better-data-security/2006-06-28&quot;&gt;VA pledges better data security&lt;/a&gt;
&lt;/p&gt;
</description>
 <comments>http://www.fiercehealthit.com/story/u-of-miami-loses-data-on-2.1-million-patients/2008-04-28#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/data-breach">Data Breach</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/security-breach-0">security breach</category>
 <category domain="http://www.fiercehealthit.com/tags/security-breaches-0">security breaches</category>
 <category domain="http://www.fiercehealthit.com/tags/security-holes-0">security holes</category>
 <category domain="http://www.fiercehealthit.com/tags/university-miami-school-medicine">University Of Miami School Of Medicine</category>
 <pubDate>Mon, 28 Apr 2008 06:59:58 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">7923 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>WellPoint data may have been compromised</title>
 <link>http://www.fiercehealthit.com/story/wellpoint-data-may-have-been-compromised/2008-04-21?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>&lt;p&gt;
While it&#039;s not clear what happened, it looks as though clinical and personal data on 130,000-odd WellPoint beneficiaries may have been accessed through the web. WellPoint has announced that during the past year, two servers operated by a vendor weren&#039;t properly secured, leaving pharmacy records, Social Security numbers, claims information and more exposed to the public. To date, WellPoint has not become aware of any identity thefts resulting from access to that data (though patients potentially could have suffered identity theft and failed to connect it to the breach). In response, WellPoint is offering potentially affected beneficiaries one year of free credit-monitoring services. It&#039;s also tightened up its security measure with help from an outside consultant.&lt;br /&gt;
&lt;br /&gt;
To learn more about the breach:&lt;br /&gt;
- read this &lt;em&gt;Chicago Tribune&lt;/em&gt; &lt;a href=&quot;http://www.chicagotribune.com/business/chi-wellpoint-data-breach-apr15,0,1068483.story&quot;&gt;piece&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Related Articles:&lt;/strong&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/johns-hopkins-investigates-data-breach/2007-09-10&quot;&gt;Johns Hopkins investigates data breach&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/massive-data-loss-at-hca/2006-08-21&quot;&gt;Massive data loss at HCA&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthcare.com/story/va-pledges-better-data-security/2006-06-28&quot;&gt;VA pledges better data security&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/allina-suffers-patient-data-theft/2006-10-23&quot;&gt;Allina suffers patient data theft&lt;/a&gt;
&lt;/p&gt;
</description>
 <comments>http://www.fiercehealthit.com/story/wellpoint-data-may-have-been-compromised/2008-04-21#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/allina-0">allina</category>
 <category domain="http://www.fiercehealthit.com/tags/claims-information">claims information</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/hca-0">HCA</category>
 <category domain="http://www.fiercehealthit.com/tags/identity-theft-0">identity theft</category>
 <category domain="http://www.fiercehealthit.com/tags/massive-data-0">massive data</category>
 <category domain="http://www.fiercehealthit.com/tags/patient-data">patient data</category>
 <category domain="http://www.fiercehealthit.com/tags/pharmacy-records">pharmacy records</category>
 <category domain="http://www.fiercehealthit.com/tags/security-breaches-0">security breaches</category>
 <category domain="http://www.fiercehealthit.com/tags/security-holes-0">security holes</category>
 <category domain="http://www.fiercehealthit.com/tags/social-security-nmbers">Social Security nmbers</category>
 <category domain="http://www.fiercehealthit.com/tags/wellpoint-1">WellPoint</category>
 <pubDate>Mon, 21 Apr 2008 06:59:57 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">7914 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>U.S. hospitals have security &#039;blind spot&#039;</title>
 <link>http://www.fiercehealthit.com/story/u.s.-hospitals-have-security-blind-spot-/2008-04-14?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>&lt;p&gt;
A new study confirms what many health IT administrators already know--that hospitals aren&#039;t doing a great job when it comes to investing in security. The study, which was commissioned by risk consulting firm Kroll Fraud Solutions and published by HIMSS, concluded that hospitals&#039; focus on medical privacy and compliance has distracted them from the threat of patient identity theft and other data breaches. While HIT administrators are very familiar with HIPAA, and eager to meet its privacy provisions, their HIPAA compliance measures won&#039;t do much to prevent fraud or malicious hacking, the study noted.&lt;br /&gt;
&lt;br /&gt;
In addition, hospitals aren&#039;t being reminded as often as they should be that their peers are having security problems that could affect them, too. The HIMSS study noted that many data breaches don&#039;t get reported, given that there&#039;s no firm rules in place requiring such disclosures.&lt;br /&gt;
&lt;br /&gt;
Even worse, HIT leaders and their peers may be ignorant as to just how expensive a malicious data breach can be--despite the fact that the average cost of such a breach generally is estimated at nearly $200 per record and $6.3 million per incident.&lt;br /&gt;
&lt;br /&gt;
To learn more about the study:&lt;br /&gt;
- read this &lt;em&gt;Healthcare IT News&lt;/em&gt; &lt;a href=&quot;http://www.healthcareitnews.com/story.cms?id=9053&amp;amp;page=2&quot;&gt;piece&lt;/a&gt;&lt;br /&gt;
- register and download the original &lt;a href=&quot;http://www.krollfraudsolutions.com/about-kroll/HIMSS-Patient-Data-Security-Study.aspx&quot;&gt;report&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Related Articles:&lt;/strong&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/more-hospital-data-security-breaches/2006-11-06?utm_medium=nl&amp;amp;utm_source=internal&quot;&gt;More hospital data security breaches&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/spotlight-hospitals-face-id-security-holes/2007-11-12?utm_medium=nl&amp;amp;utm_source=internal&quot;&gt;Hospitals face ID security holes&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fiercehealthit.com/story/himss08-it-execs-ready-to-lock-down-security/2008-02-25?utm_medium=nl&amp;amp;utm_source=internal&quot;&gt;HIMSS08: IT execs ready to lock down security&lt;/a&gt;
&lt;/p&gt;
</description>
 <comments>http://www.fiercehealthit.com/story/u.s.-hospitals-have-security-blind-spot-/2008-04-14#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/himss">HIMSS</category>
 <category domain="http://www.fiercehealthit.com/tags/hipaa">HIPAA</category>
 <category domain="http://www.fiercehealthit.com/channel/hipaa-compliance">HIPAA Compliance</category>
 <category domain="http://www.fiercehealthit.com/tags/hospitals">hospitals</category>
 <category domain="http://www.fiercehealthit.com/tags/security-issues-0">security</category>
 <category domain="http://www.fiercehealthit.com/tags/security-breaches-0">security breaches</category>
 <category domain="http://www.fiercehealthit.com/tags/security-holes-0">security holes</category>
 <pubDate>Mon, 14 Apr 2008 06:59:57 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">7906 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>NIH security breach includes data on U.S. Rep</title>
 <link>http://www.fiercehealthit.com/story/nih-security-breach-includes-data-on-u.s.-rep/2008-04-07?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>&lt;p&gt;
Now &lt;em&gt;this&lt;/em&gt; must be a little embarrassing for officials at NIH. As it turns out, Rep. Joe Barton (R-TX) was one of 3,000 patients involved in a cardiac MRI study whose records were possibly lost when a laptop computer was stolen from the agency. Not only is the loss of records on a U.S. Representative a faux pas, Barton happens to be a founder of the Congressional Privacy Caucus, which focuses on educating other Congressional offices and staff members on individual privacy issues. Though the laptop was stolen in February, Barton learned of the breach a couple of weeks ago, and didn&#039;t know his data might be involved until late March. Now Barton and colleagues are asking HHS&#039;s Inspector General to investigate why the data wasn&#039;t encrypted on the laptop, and why the agency didn&#039;t notify people sooner of the breach.&lt;br /&gt;
&lt;br /&gt;
To learn more about the data theft:&lt;br /&gt;
- read this &lt;em&gt;Modern Healthcare&lt;/em&gt; &lt;a href=&quot;http://modernhealthcare.com/apps/pbcs.dll/article?AID=/20080404/REG/658342696&quot;&gt;piece&lt;/a&gt; (reg. req.)&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Related Articles:&lt;/strong&gt;&lt;br /&gt;
California expands health data breach rules. &lt;a href=&quot;http://www.fiercehealthit.com/story/california-expands-health-data-breach-rules/2008-01-07&quot;&gt;Report&lt;/a&gt;&lt;br /&gt;
Johns Hopkins investigates data breach. &lt;a href=&quot;http://www.fiercehealthit.com/story/johns-hopkins-investigates-data-breach/2007-09-10&quot;&gt;Report&lt;/a&gt;&lt;br /&gt;
Massive data loss at HCA. &lt;a href=&quot;http://www.fiercehealthit.com/story/massive-data-loss-at-hca/2006-08-21&quot;&gt;Article&lt;/a&gt;&lt;br /&gt;
Allina suffers patient data theft. &lt;a href=&quot;http://www.fiercehealthit.com/story/allina-suffers-patient-data-theft/2006-10-23&quot;&gt;Report&lt;/a&gt;&lt;br /&gt;
VA pledges better data security. &lt;a href=&quot;http://www.fiercehealthcare.com/story/va-pledges-better-data-security/2006-06-28&quot;&gt;Report&lt;/a&gt;
&lt;/p&gt;
</description>
 <comments>http://www.fiercehealthit.com/story/nih-security-breach-includes-data-on-u.s.-rep/2008-04-07#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/allina-0">allina</category>
 <category domain="http://www.fiercehealthit.com/tags/data-breach">Data Breach</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/hhs">Department of Health and Human Services (HHS)</category>
 <category domain="http://www.fiercehealthit.com/tags/hca-0">HCA</category>
 <category domain="http://www.fiercehealthit.com/tags/joe-barton-1">Joe Barton</category>
 <category domain="http://www.fiercehealthit.com/tags/massive-data-0">massive data</category>
 <category domain="http://www.fiercehealthit.com/tags/mri-study">MRI study</category>
 <category domain="http://www.fiercehealthit.com/tags/nih-0">nih</category>
 <category domain="http://www.fiercehealthit.com/tags/patient-data">patient data</category>
 <category domain="http://www.fiercehealthit.com/tags/patient-privacy-0">privacy</category>
 <category domain="http://www.fiercehealthit.com/tags/security-issues-0">security</category>
 <pubDate>Mon, 07 Apr 2008 06:59:58 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">7898 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>UCLA staff accused of viewing Britney Spears&#039; records</title>
 <link>http://www.fiercehealthit.com/story/ucla-staff-accused-viewing-britney-spears-records/2008-03-24?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>&lt;p&gt;
In what is unfortunately an all-too-predictable episode, UCLA Medical Center executives have said that they&#039;re investigating 13 staff members who seem to have accessed Britney Spears&#039; medical records without authorization. The staff members are accused of viewing her non-medical records during her psychiatric stay in January. &lt;em&gt;The Los Angeles Times &lt;/em&gt;reported that none of the staff members involved in the incident were physicians, but that they would be fired and that 12 others--including some doctors--would be disciplined. This incident follows on another, taking place in mid-2007, when two dozen employees at a New Jersey hospital were suspended without pay after viewing the medical records of actor George Clooney without authorization.&lt;br /&gt;
&lt;br /&gt;
To learn more about the episode:&lt;br /&gt;
- read this &lt;a href=&quot;http://www.healthcareitnews.com/story.cms?id=8904&quot;&gt;article&lt;/a&gt; from &lt;em&gt;Healthcare IT News&lt;br /&gt;
&lt;br /&gt;
&lt;/em&gt;&lt;strong&gt;Related Articles:&lt;/strong&gt;&lt;br /&gt;
Union fights suspensions for workers viewing star&#039;s records. &lt;a href=&quot;http://www.fiercehealthcare.com/story/union-fights-suspensions-workers-viewing-stars-records/2007-10-12&quot;&gt;Report&lt;/a&gt;&lt;br /&gt;
California expands health data breach rules. &lt;a href=&quot;http://www.fiercehealthit.com/story/california-expands-health-data-breach-rules/2008-01-07&quot;&gt;Report&lt;/a&gt;&lt;br /&gt;
Johns Hopkins investigates data breach. &lt;a href=&quot;http://www.fiercehealthit.com/story/johns-hopkins-investigates-data-breach/2007-09-10&quot;&gt;Report&lt;/a&gt;&lt;br /&gt;
Massive data loss at HCA. &lt;a href=&quot;http://www.fiercehealthit.com/story/massive-data-loss-at-hca/2006-08-21&quot;&gt;Article&lt;/a&gt;&lt;br /&gt;
Allina suffers patient data theft. &lt;a href=&quot;http://www.fiercehealthit.com/story/allina-suffers-patient-data-theft/2006-10-23&quot;&gt;Report&lt;/a&gt;&lt;br /&gt;
VA pledges better data security. &lt;a href=&quot;http://www.fiercehealthcare.com/story/va-pledges-better-data-security/2006-06-28&quot;&gt;Report&lt;/a&gt;
&lt;/p&gt;
</description>
 <comments>http://www.fiercehealthit.com/story/ucla-staff-accused-viewing-britney-spears-records/2008-03-24#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/allina-0">allina</category>
 <category domain="http://www.fiercehealthit.com/tags/britney-spears">Britney Spears</category>
 <category domain="http://www.fiercehealthit.com/tags/data-breach">Data Breach</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/doctors">doctors</category>
 <category domain="http://www.fiercehealthit.com/tags/george-clooney">George Clooney</category>
 <category domain="http://www.fiercehealthit.com/tags/hca-0">HCA</category>
 <category domain="http://www.fiercehealthit.com/tags/massive-data-0">massive data</category>
 <category domain="http://www.fiercehealthit.com/tags/medical-records">medical records</category>
 <category domain="http://www.fiercehealthit.com/tags/patient-data">patient data</category>
 <category domain="http://www.fiercehealthit.com/tags/physicians">physicians</category>
 <category domain="http://www.fiercehealthit.com/tags/security-issues-0">security</category>
 <category domain="http://www.fiercehealthit.com/tags/suspensions">Suspensions</category>
 <category domain="http://www.fiercehealthit.com/tags/ucla-medical-center">UCLA Medical Center</category>
 <pubDate>Mon, 24 Mar 2008 07:59:56 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">7877 at http://www.fiercehealthit.com</guid>
</item>
<item>
 <title>UCLA staff accused of viewing Britney Spears&#039; records</title>
 <link>http://www.fiercehealthit.com/story/ucla-staff-accused-of-viewing-britney-spears-records/2008-03-24?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FHI0</link>
 <description>&lt;P&gt;In what is unfortunately an all-too-predictable episode, UCLA Medical Center executives have said that they&#039;re investigating 13 staff members who seem to have accessed Britney Spears&#039; medical records without authorization. The staff members are accused of viewing her non-medical records during her psychiatric stay in January.&amp;nbsp;&lt;EM&gt;The Los Angeles Times &lt;/em&gt;reported that none of the staff members involved in the incident were physicians, but that they would be fired and that 12 others--including some doctors--would be disciplined. This incident follows on another, taking place in mid-2007, when two dozen employees at a New Jersey hospital were suspended without pay after viewing the medical records of actor George Clooney without authorization.&lt;BR /&gt;&lt;BR /&gt;To learn more about the episode:&lt;BR /&gt;- read this &lt;A href=&quot;http://www.healthcareitnews.com/story.cms?id=8904&quot;&gt;article&lt;/a&gt;&amp;nbsp;from &lt;EM&gt;Healthcare IT News&lt;BR /&gt;&lt;BR /&gt;&lt;/em&gt;&lt;STRONG&gt;Related Articles:&lt;/strong&gt;&lt;BR /&gt;Union fights suspensions for workers viewing star&#039;s records. &lt;A href=&quot;http://www.fiercehealthcare.com/story/union-fights-suspensions-workers-viewing-stars-records/2007-10-12&quot;&gt;Report&lt;/a&gt;&lt;BR /&gt;California expands health data breach rules. &lt;A href=&quot;http://www.fiercehealthit.com/story/california-expands-health-data-breach-rules/2008-01-07&quot;&gt;Report&lt;/a&gt;&lt;BR /&gt;Johns Hopkins investigates data breach. &lt;A href=&quot;http://www.fiercehealthit.com/story/johns-hopkins-investigates-data-breach/2007-09-10&quot;&gt;Report&lt;/a&gt;&lt;BR /&gt;Massive data loss at HCA. &lt;A href=&quot;http://www.fiercehealthit.com/story/massive-data-loss-at-hca/2006-08-21&quot;&gt;Article&lt;/a&gt;&lt;BR /&gt;Allina suffers patient data theft. &lt;A href=&quot;http://www.fiercehealthit.com/story/allina-suffers-patient-data-theft/2006-10-23&quot;&gt;Report&lt;/a&gt;&lt;BR /&gt;VA pledges better data security. &lt;A href=&quot;http://www.fiercehealthcare.com/story/va-pledges-better-data-security/2006-06-28&quot;&gt;Report&lt;/a&gt;&lt;/p&gt;

</description>
 <comments>http://www.fiercehealthit.com/story/ucla-staff-accused-of-viewing-britney-spears-records/2008-03-24#comments</comments>
 <category domain="http://www.fiercehealthit.com/tags/allina-0">allina</category>
 <category domain="http://www.fiercehealthit.com/tags/britney-spears">Britney Spears</category>
 <category domain="http://www.fiercehealthit.com/tags/data-breach">Data Breach</category>
 <category domain="http://www.fiercehealthit.com/tags/data-security">data security</category>
 <category domain="http://www.fiercehealthit.com/tags/doctors">doctors</category>
 <category domain="http://www.fiercehealthit.com/tags/george-clooney">George Clooney</category>
 <category domain="http://www.fiercehealthit.com/tags/hca-0">HCA</category>
 <category domain="http://www.fiercehealthit.com/tags/massive-data-0">massive data</category>
 <category domain="http://www.fiercehealthit.com/tags/medical-records">medical records</category>
 <category domain="http://www.fiercehealthit.com/tags/patient-data">patient data</category>
 <category domain="http://www.fiercehealthit.com/tags/physicians">physicians</category>
 <category domain="http://www.fiercehealthit.com/tags/security-issues-0">security</category>
 <category domain="http://www.fiercehealthit.com/tags/suspensions">Suspensions</category>
 <category domain="http://www.fiercehealthit.com/tags/ucla-medical-center">UCLA Medical Center</category>
 <pubDate>Mon, 24 Mar 2008 07:59:56 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">7878 at http://www.fiercehealthit.com</guid>
</item>
</channel>
</rss>
