News & Analysis as of

Office of Civil Rights Compliance Hospitals

Health Care Compliance Association (HCCA)

From $5,000 to $800,000: Days Apart, OCR Security Settlements Show Puzzling Math

A single incident that may have started as a personal vendetta or an extortion threat seven years ago has cost a Florida health care system $800,000, and comes on the heels of an unrelated breach suffered by a different...more

Saul Ewing LLP

OCR Imposes $200,000 Civil Money Penalty Against HIPAA-Covered Entity

Saul Ewing LLP on

On March 6, 2025, the U.S. Department of Health and Human Services (“HHS”) Office for Civil Rights (“OCR”) announced a civil money penalty (“CMP”) of $200,000 against Oregon Health & Science University (“OHSU”) for failing to...more

Health Care Compliance Association (HCCA)

We’ll Take the Fine: OCR’s ‘Unwarranted,’ Costly Demands Prompted Hospital’s $538K Payment

The saga that led Children’s Hospital Colorado to accept a fine of more than $500,000 imposed by the HHS Office for Civil Rights (OCR) began on July 11, 2017, when a physician’s email account containing details on 3,300...more

Lippes Mathias LLP

Hospital Administrators – Is Your Hospital Cyber-Secure?

Lippes Mathias LLP on

On October 2, 2024, New York adopted new regulations requiring general hospitals to implement heightened cybersecurity safeguards. General hospitals, as defined in Article 28 of the NY Public Health Law, generally must begin...more

Williams Mullen

Ransomware Hat Trick: OCR Scores Three Major Enforcement Actions in 2024

Williams Mullen on

Ransomware attacks are a growing threat in the health care sector due to the value of personal health information (PHI). In addition to being expensive, these attacks can cripple health care operations, delay patient care,...more

Health Care Compliance Association (HCCA)

HHS Abandons Appeal in Public Website Pixel Case, But CEs and BAs Should Expect Continued Scrutiny

The HHS Office for Civil Rights (OCR) has abandoned its appeal of a federal judge’s ruling overturning OCR’s guidance prohibiting covered entities (CEs) and business associates (BAs) from using the web-tracking technologies...more

NAVEX

Addressing Cybersecurity Expectations in Healthcare

NAVEX on

2024 is shaping up to be a very active year for regulatory and enforcement developments in the healthcare industry – developments that concern not just hospitals and nursing facilities, but many non-healthcare companies as...more

NAVEX

Healthcare Compliance Enforcement Trends to Watch in 2024

NAVEX on

2024 is shaping up to be a very active year for regulatory and enforcement developments in the healthcare industry – developments that concern not just hospitals and nursing facilities, but many non-healthcare companies as...more

Dorsey & Whitney LLP

HIPAA on the Horizon in the New Year: Important Lessons from an Active 2023 and Regulatory Initiatives to Watch for in 2024

Dorsey & Whitney LLP on

2023 marked 20 years since the first compliance deadline under the Health Insurance Portability and Accountability Act’s (“HIPAA”) privacy rule. Despite the two decades of experience with HIPAA, compliance continues to remain...more

Health Care Compliance Association (HCCA)

Privacy Briefs: November 2023

Report on Patient Privacy 23, no. 11 (November, 2023) The American Hospital Association (AHA) is urging federal lawmakers to intervene with the HHS Office for Civil Rights (OCR) so that hospitals and health systems can...more

Health Care Compliance Association (HCCA)

[Event] Regional Healthcare Compliance Conference - September 8th, Waltham, MA

Looking for compliance education and networking in your area? HCCA’s Regional Healthcare Compliance Conferences offer practitioners convenient, local compliance education that covers a wide variety of current and emerging...more

Health Care Compliance Association (HCCA)

[Virtual Event] Indianapolis & Pittsburgh Regional Healthcare Compliance Conference - October 7th, 8:25 am - 4:30 pm EDT

General and specialty compliance training from the comfort of your home or office! HCCA’s Regional Healthcare Compliance Conferences provide practitioners with virtual compliance training that includes updates on the...more

Health Care Compliance Association (HCCA)

[Event] Regional Healthcare Compliance Conference - July 22nd, Seattle, WA

Looking for compliance training and networking in your area? HCCA’s Regional Healthcare Compliance Conferences offer practitioners convenient, local compliance training, including updates on the latest news in regulatory...more

Health Care Compliance Association (HCCA)

[Event] Boston Regional Healthcare Compliance Conference - September 10th, Newton, MA

Our one-day Regional Compliance Conferences provide attendees with a forum to interact with local compliance professionals, share information about your compliance successes and challenges, and create educational...more

Health Care Compliance Association (HCCA)

[Virtual Event] 2021 25th Annual Compliance Institute - April 19th - 22nd, 9:30 am - 4:35 pm CDT

The Compliance Institute is celebrating 25 years! Join us for the Compliance Institute's 25th anniversary, April 19-22, 2021. This year, HCCA is excited to celebrate over two decades of compliance excellence with our...more

Health Care Compliance Association (HCCA)

Report on Medicare Compliance Volume 30, Number 2. News Briefs: January 2021 #2

Report on Medicare Compliance 30, no. 2 (January 18, 2021) - Recovery audit contractors (RACs) may soon be auditing positron emission tomography (PET) for initial treatment strategy in oncologic conditions for compliance...more

Health Care Compliance Association (HCCA)

Report on Medicare Compliance Volume 29, Number 13. News Briefs: April 2020

Report on Medicare Compliance 29, no. 13 (April 6, 2020) - During the coronavirus pandemic, the HHS Office of Inspector General (OIG) is “trying to minimize the burdens on providers,” said Christi Grimm, principal deputy...more

Health Care Compliance Association (HCCA)

'Misinterpretation' of Breach Rule, Lack of Internal BAA Cost Hospital Group $2.1M

Report on Patient Privacy 19, no. 12 (December 2019) - Sentara Hospitals, a nonprofit group of 12 medical centers in Virginia and North Carolina, will implement a fairly minimal two-year corrective action plan (CAP) and...more

K&L Gates LLP

HHS Proposes Rules for Nondiscrimination in Health Care

K&L Gates LLP on

On September 8, 2015, the U.S. Department of Health and Human Services (“HHS”) proposed new regulations implementing Section 1557 of the Patient Protection and Affordable Care Act (“ACA”). Section 1557 prohibits...more

Akerman LLP - Health Law Rx

Recent HHS Settlement Highlights Risks of Electronically-Sharing Protected Health Information

On July 10, 2015, the United States Department of Health and Human Services Office for Civil Rights (OCR) announced its second settlement of the year for violations of the Health Insurance Portability and Accountability Act...more

McDermott Will & Emery

OCR Enforcement Trends

On April 27, 2015, the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) announced a resolution agreement with Cornell Prescription Pharmacy (CPP) pursuant to which CPP paid a $125,000...more

The Volkov Law Group

Hospitals Need To Focus On Data Privacy And Security

The Volkov Law Group on

To restate the obvious, hospitals operate in a risky environment. They face a variety of risks and a blanket of government regulations. You have to admire the Chief Compliance Officer at a hospital. They learn to live with...more

The Volkov Law Group

Hospitals Need To Focus On Data Privacy And Security

The Volkov Law Group on

To restate the obvious, hospitals operate in a risky environment. They face a variety of risks and a blanket of government regulations. You have to admire the Chief Compliance Officer at a hospital. They learn to live with...more

23 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide