HIPAA for IT Professionals: What Your Team Must Know
In 2023, OCR settled with a healthcare system for $1.25 million after investigators discovered that an IT department had failed to implement adequate access
Content about HIPAA Security Rule safeguards and workforce training.
In 2023, OCR settled with a healthcare system for $1.25 million after investigators discovered that an IT department had failed to implement adequate access
In 2022, a small dental practice in North Carolina agreed to a $50,000 settlement with the Office for Civil Rights (OCR) after a patient
In 2023, OCR settled with a healthcare system for $1.3 million after investigators found that a former employee's HIPAA login credentials remained
In 2023, OCR settled with a covered entity for $40,000 after a former employee accessed patient records without authorization — months after leaving the organization.
In 2023, a small specialty clinic in the Southeast received a corrective action plan from OCR after a breach investigation revealed that their "policies
In 2023, OCR settled with a small health plan in Louisiana for $55,000 after an investigation revealed the organization had never designated a security
When OCR investigated Anchorage Community Mental Health Services in 2014, the resulting $150,000 settlement wasn't triggered by a sophisticated cyberattack. It was
In February 2024, OCR settled with a healthcare provider for $480,000 after investigators found the organization had never conducted a comprehensive risk analysis — a
In December 2023, HHS published a Notice of Proposed Rulemaking (NPRM) that represents the most significant update to the HIPAA Security Rule since its original
In February 2024, OCR settled with a healthcare system for $4.75 million after investigators found the organization had failed to encrypt protected health information
In 2023, a regional health system paid $850,000 to settle an OCR investigation that traced a data breach back to a single unsecured text
In 2023, OCR settled with a dental practice in New England for $50,000 — not because of a sophisticated cyberattack, but because the organization couldn&
Join healthcare organizations that trust HIPAA Certify for their workforce training and compliance tracking.