News & Analysis as of

Department of Health and Human Services (HHS) Compliance Penalties

Health Care Compliance Association (HCCA)

Former OCR Director Fontes Rainer Reflects On ‘Imperfect’ RSP Law, Urges Final Security Reg

In October, the HHS Office for Civil Rights (OCR) fined Providence Medical Institute (PMI) $240,000, an amount that reflected a 20% discount for having “recognized security practices” (RSPs) in place. But many more covered...more

Health Care Compliance Association (HCCA)

Disclosure of Full Record to Employer Results in $35K Fine, Broad CAP; Echoes of 2017 HIV Case

It’s not immediately obvious why someone would want to disclose a health care test result as part of a job application. But one such request spurred a Pennsylvania entity to provide a lot more than that: it sent her whole...more

Lippes Mathias LLP

Hospital Administrators – Is Your Hospital Cyber-Secure?

Lippes Mathias LLP on

On October 2, 2024, New York adopted new regulations requiring general hospitals to implement heightened cybersecurity safeguards. General hospitals, as defined in Article 28 of the NY Public Health Law, generally must begin...more

Snell & Wilmer

2024 End-of-Year Plan Sponsor “To Do” List (Part 1) Health and Welfare

Snell & Wilmer on

We are pleased to present our annual End of Year Plan Sponsor “To Do” Lists. This year, we present our “To Do” Lists in four separate SW Benefits Updates. This Part 1 covers year-end health and welfare plan issues. Parts 2,...more

Mintz - Health Care Viewpoints

HHS Health Care Cybersecurity Performance Goals: Proposed Incentives, Penalties and Compliance Standards

As promised in the U.S. Department of Health and Human Services (HHS) concept paper in December 2023, the agency published voluntary health care and public health cybersecurity performance goals (HPH CPGs) in January 2024 and...more

Harris Beach Murtha PLLC

HHS Office of Inspector General October 2023 Enforcement Activity

The following is a summary of selected federal Department of Health and Human Services’ Office of Inspector General (OIG) reports of fraud and abuse enforcement activity across the country. The enforcement actions reported...more

Foley & Lardner LLP

Ensuring Child Labor Law Compliance Amid Growing Scrutiny

Foley & Lardner LLP on

In February, the New York Times published an investigative report regarding alleged employment of underage migrants, many from Central America, at U.S. companies. While employment of certain minors is permitted under federal...more

Proskauer - Health Care Law Brief

OIG Issues Final Information Blocking Enforcement Rule and Highlights the Potential for Referrals to the FTC and FCA Liability

On June 27, 2023, the Office of Inspector General (“OIG”) for the U.S. Department of Health and Human Services (“HHS”) released its final rule (“Final Rule”) implementing penalties for information blocking....more

DarrowEverett LLP

A HIPAA Privacy Notice A Day Keeps The Doctor Away (And Out Of Trouble)

DarrowEverett LLP on

The start of 2023 has brought with it significant changes to data privacy – new state laws concerning data privacy came into effect January 1 (the California Privacy Rights Act and the Virginia Consumer Data Protection Act),...more

Foley & Lardner LLP

Compliance Officers Lookout! DOJ and OIG Tag Team Corporate Integrity Agreements

Foley & Lardner LLP on

The Office of Inspector General of the U.S. Department of the Health and Human Services (OIG) recently changed the language describing a compliance officer’s role in relation to other responsibilities he or she may have...more

Health Care Compliance Association (HCCA)

DAB Affirms OIG's $1.32M Penalty on Provider for Breaching CIA

Report on Medicare Compliance 29, no. 23 (June 22, 2020): The HHS Departmental Appeals Board (DAB) has upheld the largest stipulated penalty imposed by the HHS Office of Inspector General (OIG) in years. OIG fined...more

Wilson Sonsini Goodrich & Rosati

Cloud Storage Providers Storing Protected Health Information May Be Obligated to Comply with HIPAA Regulations

A recently issued government rule may unknowingly create significant liability and legal risk for many technology enterprises. The expanded definition of "business associates" and related interpretations by the Department of...more

Cozen O'Connor

Highlights of the Omnibus HIPAA/HITECH Final Rule

Cozen O'Connor on

On January 25, 2013, the Office of Civil Rights (OCR) of the Department of Health & Human Services (HHS) published the long-awaited omnibus final regulation governing health data privacy, security and enforcement (Omnibus...more

Womble Bond Dickinson

A Detailed Analysis of Changes to HIPAA and the Implications for Healthcare Providers and Others in the Healthcare Industry: HIPAA...

Womble Bond Dickinson on

Changes to the HIPAA Enforcement Rule - Background: On October 30, 2009, HHS issued an interim final rule revising the Enforcement Rule to incorporate provisions of the HITECH Act. The NPRM then proposed a number of...more

Mintz - Privacy & Cybersecurity Viewpoints

HITECH Omnibus Rule Basics

As we pore through the 562-page HITECH Omnibus Rule released by the Department of Health and Services late yesterday afternoon, here are some top line bullet points...more

BakerHostetler

The HIPAA/HITECH Final Rule Has Been Released

BakerHostetler on

The long awaited HIPAA/HITECH Final Rule is out. The final rule is effective March 26, 2013, but covered entities (CEs) and business associates (BAs) will have 180 days beyond the effective date to come into compliance....more

16 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide