Business Associate HIPAA Compliance: What CEs Must Enforce
In June 2023, OCR settled with a business associate — a medical records management company — for $75,000 after a breach exposed the protected health information
Office for Civil Rights HIPAA enforcement actions, investigations, and compliance strategies
In June 2023, OCR settled with a business associate — a medical records management company — for $75,000 after a breach exposed the protected health information
In 2024, OCR settled with a New England dermatology practice for $300,000 after an investigation revealed it had allowed a business associate to access
In 2023, OCR settled with a business associate — a medical records management company — for $100,000 after an investigation revealed failures to safeguard protected health
Every month, patients contact OCR after discovering a hospital shared their medical records without authorization, a business associate lost a laptop containing thousands of patient
When OCR investigated a small dental practice in 2023 for an impermissible disclosure of protected health information, the first document they requested was proof of
In 2023, OCR settled with a covered entity for $1.3 million after investigators discovered that workforce members had never received adequate HIPAA training — despite
In 2023, a mid-sized hospital system paid $1.3 million to settle with OCR after a series of incidents that all traced back to the
In 2023, OCR settled with a healthcare provider for over $100,000 after an investigation revealed that staff routinely sent unencrypted emails containing protected health
In 2023, the Office for Civil Rights (OCR) received over 32,000 complaints alleging HIPAA violations — and resolved the vast majority through investigation, corrective action,
In 2023, a small dental practice in North Carolina paid $50,000 to settle a complaint with the Office for Civil Rights after a former
In 2023, OCR settled with a healthcare system for $1.3 million after an investigation revealed that a former employee had accessed over 2,700
In February 2023, OCR settled with Banner Health for $1.25 million after a breach affecting nearly 3 million individuals exposed systemic failures across multiple
Join healthcare organizations that trust HIPAA Certify for their workforce training and compliance tracking.