Posts tagged 'HITECH'

January 17, 2013
70 view(s)

HIPAA/HITECH Final Rule Published

The U.S. Department of Health and Human Services (HHS) moved forward today to strengthen the privacy and security protections for health information established under the Health Insurance Portability and Accountability Act of 1996 (HIPAA).  The final omnibus rule, published today in the Federal Register, greatly enhances a patient’s privacy protections, provides individuals new right...
September 7, 2011
52 view(s)

OCR Makes Annual Report on HIPAA Privacy and Security Rule Compliance

In its annual report to Congress, the Office for Civil Rights (OCR) said it is developing audit protocol to conduct audits of up to 145 covered entities in an ongoing effort to enforce the privacy and security rules of HIPAA. The Office for Civil Rights of the Department of Health and Human Services (HHS) is charged with enforcing the security and privacy rules of the Health Insurance Portabili...
July 20, 2011
49 view(s)

HHS Proposes Expansion of Individuals' Right to 'Access Reports' on Their Medical Data

The Department of Health and Human Services (HHS) is currently receiving public commentary on a proposed rule to expand the right of individuals to demand and receive "access reports" identifying who accessed their protected health information and why. Under the Health Insurance Accountability and Portability Act (HIPAA) of 1996, individuals currently have a right to obtain such infor...
May 12, 2011
55 view(s)

HHS to Release Final HIPAA Privacy, Security Rules by Year-End

The Department of Health and Human Services (HHS) is aiming to release its long-awaited (and consolidated) Final Rule on the HIPAA privacy and security rules by the end of 2011, it was announced by Susan McAndrew, deputy director in the HHS Office for Civil Rights (OCR). The revamped regulations for the privacy and security rules were mandated by the Health Information Technology for Economic a...
April 13, 2011
42 view(s)

Data Breaches Impact 10M Americans

The Office of Civil Rights (OCR), the unit of the Department of Health and Human Services (HHS) responsible for monitoring health information breaches, recently reported that the total number of Americans affected by large data breaches has surpassed 10 million individuals. With the enactment of the Health Information Technology for Economic and Clinical Health Act (HITECH) and its Breach Notif...
February 11, 2011
59 view(s)

HHS Sends Disclosure Rule to OMB for Review, Expands Patients' Rights

The Department of Health and Human Services (HHS), despite a health industry outcry, has forwarded to the Office of Management and Budget (OMB) a proposed rule allowing patients to request information about the disclosure of their protected health information (PHI). An OMB review can take anywhere from one to 90 days to complete. After that, the rule generally takes effect in 30 to 60 days. The...
August 31, 2010
52 view(s)

Suspended Breach Notification Rule Remains in Effect

Though on Aug. 4 it withdrew its Interim Final Rule regarding HIPAA security breach notifications, the Department of Health and Human Services (HHS) has since clarified on its Web site that the suspended rule of Sept. 23, 2009, remains in effect. "This is a complex issue and the Administration is committed to ensuring that individuals’ health information is secured to the extent poss...
August 3, 2010
60 view(s)

HHS Suspends Breach Rule for Further Review

Coming under criticism for allowing covered entities (in this case, those health care providers and others who maintain health records) to police themselves in matters of maintaining the privacy of Protected Health Information (PHI), the Department of Health and Human Services (HHS) has withdrawn its breach rule of September 2009. The already-in-effect interim final rule, called for under terms...
March 3, 2010
40 view(s)

More Clarity on HITECH Provisions Promised Soon

Though HITECH (the Health Information Technology for Economic and Clinical Health act) took full effect this past Feb. 17, provisions regarding business associates were still vague, as we noted at the time. Now, the Office of Civil Rights (OCR) in the Department of Health and Human Services (HHS), the law's oversight agency, is promising to issue proposed rules soon, which typically would be fo...
February 24, 2010
49 view(s)

HHS Begins Listing Medical Record Breaches on Web

As required by law, the Department of Health and Human Services (HHS) has begun publicly listing breaches of private health information (PHI), generally in medical records, when the breach totals 500 or more individuals. Though breach notification rules under HITECH (Health Information Technology for Economic and Clinical Health Act) went into effect in September 2009, a grace period provi...