Skip to main content

Posts

Showing posts with the label HIPAA compliance officers

NIST guidance on managing IoT(Internet of Things) cybersecurity and privacy

Compliance Key  -  HIPAA  Webinar in United States Overview To date the only specific requirement relating to the National Institute of Standards and Technology ("NIST") Standards in the Security Rule does not require compliance with any NIST Standard but rather exempts covered entities from having to report breaches if they meet either of two NIST standards-the encryption standard or the disposal standard. The Security Breach Notification Rule only requires reporting of breaches of "unsecured" PHI. 45 C.F.R.  164.400-414. If data is encrypted or disposed of consistent with those two standards, it is secured, and, hence, unreportable With the increasing number of cybersecurity breaches since HIPAA became law, DHHS recognized that more attention needed to be paid to improving cybersecurity and focused on the NIST Framework for Improving Critical Infrastructure Cybersecurity (the Cybersecurity Framework) and developed a crosswalk between it and the HIPAA Se...

How to Handle HIPAA and HITECH Act Breaches, Complaints and Investigations: Everything You Need to Know

Compliance Key INC  -  HIPAA Compliance Training Jonathan P. Tomes , J.D.,  is Keynote Speaker at Compliance key Inc . He  is a health care attorney practicing in the greater Kansas City. He is a nationally recognized authority and expert witness on the legal requirements for health information.  Seminar Id:  IJ2018S5  06:00 AM PT | 09:00 AM ET  03/05/2018  Duration: 1 Day Overview Every covered entity and the business associate will experience one or more security incidents every year. Such incidents range from an employee forgetting to log off with no harm done because you caught it before any unauthorized person accessed the computer to a ransomware attack in which you must pay a six-figure ransom to access your data. Serious breaches require the covered entity to report the matter to the Department of Health and Human Services (DHHS) who will post the breach on the so-called "wall of shame". Not on...