What Are the 3 Rules of HIPAA? A Plain-English Guide
A small dermatology practice in Connecticut thought they had HIPAA covered. They had a privacy notice on their website and a shredder in the back
A collection of 24 posts
A small dermatology practice in Connecticut thought they had HIPAA covered. They had a privacy notice on their website and a shredder in the back
A Stolen Laptop, a Missing Exception, and a $3 Million Problem In 2018, the University of Texas MD Anderson Cancer Center lost an unencrypted laptop
A Hospital Waited 101 Days. It Cost Them $4.8 Million. In 2019, Presence Health agreed to a $475,000 settlement with the Office for
In 2023 alone, OCR settled or imposed civil money penalties in cases totaling over $4 million — and the majority involved failures that any organization with
When OCR announced a $4.8 million settlement with New York-Presbyterian Hospital and Columbia University in 2014, the enforcement action underscored a regulatory landscape that
In October 2023, OCR settled with a healthcare system in Louisiana for $480,000 after a phishing attack compromised the protected health information of over
When OCR levied a $4.3 million settlement against MD Anderson Cancer Center in 2018 for unencrypted devices containing protected health information, the enforcement authority
In February 2011, Cignet Health of Prince George's County, Maryland, received a $4.3 million civil money penalty from the Office for Civil
In 2023, OCR settled with a dental practice for $350,000 after investigators discovered the organization had no written security policies, no risk analysis, and
In February 2023, OCR settled with a healthcare provider for $1.25 million after investigators found failures spanning all three HIPAA rules — inadequate safeguards for
In February 2023, OCR settled with Banner Health for $1.25 million after a breach affecting nearly 3 million individuals exposed failures across multiple HIPAA
In 2023, OCR settled with Banner Health for $1.25 million after a breach affecting nearly 3 million individuals revealed failures across multiple HIPAA requirements
Join healthcare organizations that trust HIPAA Certify for their workforce training and compliance tracking.