Privacy & Security
In the wake of an onslaught of cyberattacks, the agency is reminding providers that HIPAA requires organizations to have a plan to keep patient data protected.
Wlaschin also says HHS cybersecurity efforts are not as dire at they might appear.
Christopher Wlaschin is stepping down at the end of March for family reasons, but his departure comes amid controversy surrounding the abrupt removal of two cybersecurity leaders.
Cohen, Bergman, Klepper, Romano MDs left a database open to the public, containing backup data of 3 million clinical notes.
Several employee emails were breached exposing a range of patient data from Medicaid details to Social Security numbers.
The Arizona health system is cooperating with the investigation but expects to receive negative findings and a potential fine.
A roundup of big ideas from experts on interoperability, patient engagement, security, cloud computing, innovation, policy and more during HIMSS18.
By May 25, U.S. providers caring for EU patients will need to brush up on consent forms, data sharing and privacy monitoring because the General Data Protection Regulation is tougher than HIPAA.
The group says privacy can still be maintained while giving care providers secure access to relevant substance abuse data and calls on Congress to allow HHS to pursue patient ID strategies.
Cybersecurity experts offer valuable advice on dealing with third parties because while a third party may be responsible for a breach, it's the healthcare organization that is accountable.