HIPAA Privacy Risk Analysis: What Most Orgs Get Wrong
A $4.75 Million Fine That Started With One Missing Document In 2023, OCR settled with Lafourche Medical Group for $480,000 after a phishing
A collection of 7 posts
A $4.75 Million Fine That Started With One Missing Document In 2023, OCR settled with Lafourche Medical Group for $480,000 after a phishing
The Audit That Costs Less Than the Breach A hospital system in Oregon thought its annual checklist was enough. Internal IT signed off every year.
In February 2024, OCR settled with a healthcare provider for $480,000 after an investigation revealed systemic failures to comply with the HIPAA Privacy Rule
In 2023, a patient in Texas discovered her therapist had disclosed session notes to a family member without authorization. She hired an attorney, filed suit
In 2023, OCR settled with a New England dermatology practice for $300,640 after an investigation revealed the organization had disclosed protected health information to
In 2023, the Department of Justice recovered over $2.68 billion in judgments and settlements involving healthcare fraud — a significant portion tied to illegal referral
In December 2022, OCR issued a bulletin that sent shockwaves through the healthcare industry. The agency confirmed that common website tracking technologies — pixels, session replay
Join healthcare organizations that trust HIPAA Certify for their workforce training and compliance tracking.