HIPAA Business Associate Agreement: What You Must Get Right
A medical billing company in Tennessee exposed the records of 300,000 patients — and the hospital that hired them paid the price. Not because the
HIPAA requirements and training for business associates and third-party service providers
A medical billing company in Tennessee exposed the records of 300,000 patients — and the hospital that hired them paid the price. Not because the
A $5.1 Million Penalty That Started with a Simple Question In 2017, Memorial Healthcare System in Florida agreed to pay $5.1 million to
If you handle patient information for healthcare clients, HIPAA training isn't optional—it's legally required. But it's also your ticket into a lucrative, growing market that most VAs can't access.
In 2023, OCR settled with a dental practice in New England that had never conducted a risk analysis, never issued a Notice of Privacy Practices,
In February 2023, OCR settled with Banner Health for $1.25 million after a breach affecting over 2.81 million individuals exposed systemic failures in
In February 2024, OCR announced a $4.75 million settlement with a major healthcare system that failed to provide patients timely access to their medical
The Downstream Liability Most Business Associates Overlook In 2023, OCR settled with a medical transcription company for over $100,000 after a breach traced not
In 2023, OCR settled with a dental practice for $350,000 after investigators found the organization had been disclosing patient records to a third-party marketing
In 2024, OCR settled with a New England dermatology practice for $300,000 after discovering that protected health information had been disclosed to a vendor
In 2023, the Department of Justice recovered over $2.68 billion in healthcare fraud settlements and judgments — a significant portion tied to Anti-Kickback Statute (AKS)
In 2023, OCR settled with a dental practice in New England for $50,000 after it disclosed patient records to a third-party marketing firm without
In February 2023, OCR settled with a dental practice for $195,000 after investigators found the organization had no written policies implementing the HIPAA Privacy
Join healthcare organizations that trust HIPAA Certify for their workforce training and compliance tracking.