What Does It Mean to Follow the Minimum Necessary Standard
In 2022, a specialty clinic in the Midwest disclosed an entire patient record — surgical history, psychiatric notes, billing details — to an employer conducting a routine
Expert guidance on HIPAA training, compliance best practices, and healthcare workforce management.
In 2022, a specialty clinic in the Midwest disclosed an entire patient record — surgical history, psychiatric notes, billing details — to an employer conducting a routine
In 2023, OCR settled with a health system for $1.3 million after investigators found systemic failures in safeguarding patient records — failures that traced back
In February 2024, OCR announced a $4.75 million settlement with Montefiore Medical Center after a former employee stole electronic protected health information (ePHI) of
In 2023, OCR settled with a health system for $40,000 after the organization failed to provide a patient timely access to her own medical
In February 2023, OCR settled with Banner Health for $1.25 million after a breach affecting over 2.81 million individuals exposed systemic failures in
A hospital's HR department shared an employee's sick leave records with a manager, and the employee filed a complaint with the
In 2023, OCR settled with a health system for $1.25 million after discovering that the organization had allowed a vendor to access protected health
In 2023, OCR settled with Banner Health for $1.25 million after a breach affecting nearly 3 million individuals exposed critical failures across multiple HIPAA
In February 2023, OCR settled with Banner Health for $1.25 million after a breach affected nearly 3 million patients — the result of insufficient access
In February 2011, a major health system paid $4.3 million to settle with the Office for Civil Rights after stolen laptops exposed the electronic
In 2023, the Office for Civil Rights (OCR) settled or imposed penalties in cases totaling over $4 million — all stemming from organizations that failed to
In 2024, Kaiser Permanente disclosed that a tracking technology breach potentially exposed the protected health information of 13.4 million individuals — one of the largest
Join healthcare organizations that trust HIPAA Certify for their workforce training and compliance tracking.