Avoid becoming a statistic: Conduct a HIPAA risk assessment

| 1 Min Read

Two health care organizations are paying $4.8 million to settle charges that they violated the Health Insurance Portability and Accountability Act (HIPAA) – the largest HIPAA settlement to date. Avoid becoming a HIPAA statistic and make sure your practice is compliant with privacy and security rules.

The payment will settle problems that began in 2010, when the health records of 6,800 patients of New York and Presbyterian Hospital and Columbia University, two separate entities that operate a shared data network, ended up online. The data, which included patients’ vital signs, medications and lab results, were fully searchable, according to U.S. Department of Health & Human Services (HHS) press release.

According to HHS resolution agreements, one of the first issues HHS uncovered in its investigations at both organizations was that neither conducted a risk analysis, the main way a health care organization can prevent breaches of electronic protected health information.

Learn how to complete an effective risk assessment with an audiocast produced by the AMA and the Healthcare Information and Management Systems Society (HIMSS).

Additional HIPAA resources and training are available from the AMA Store.

FEATURED STORIES

Columns of the U.S. Supreme Court at top of steps

8 wins for doctors, patients in latest federal budget deal

| 4 Min Read
Wooden blocks and figures accompany an up arrow

Do physicians need to switch jobs to climb the career ladder?

| 5 Min Read
Physician walking down a hallway

Women physicians face heavier burdens and higher burnout risk

| 9 Min Read
Adhesive bandage applied to upper arm of smiling young patient

Pediatric vaccines: Questions parents will ask—and how to answer

| 8 Min Read