article thumbnail

Is Your Data Supply Chain Ethical? Don’t Restrict Due Diligence to Physical Operations.

C&M Health Law

Health Insurance Portability and Accountability Act (HIPAA) can present several areas of exposure. What’s more, core human rights due diligence principles, such as the United Nations Guiding Principles on Business and Human Rights (UNGPs), further influence how businesses should navigate these risks.

article thumbnail

What’s the Civil Penalty for Unknowingly Violating HIPAA?

Compliancy Group

When a covered entity or business associate makes the HIPAA Wall of Shame for a significant breach or violation, it often results in huge fines. In some cases, the breaches and resulting fines resulted from organizations knowingly violating HIPAA regulations and just hoping they wouldn’t get caught.

HIPAA 52
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

HIPAA Compliant Environment or a Culture of Compliance?

Compliancy Group

One of the trendy marketing terms being used by equipment and service providers in the security space is “HIPAA Compliant Environment.” Here are the things to consider to help evolve beyond a HIPAA Compliant Environment and create a Culture of Compliance that adds value to your organization. × Simplified HIPAA Compliance.

HIPAA 52
article thumbnail

Settlement Agreed with Florida Children’s Health Insurance Website Contractor to Resolve False Claims Act Allegations

HIPAA Journal

The United States Department of Justice has agreed to settle alleged False Claims Act violations with Jelly Bean Communications Design LLC and manager Jeremy Spinks related to the failure to protect HIPAA-covered data. Attorney’s Office for the Middle District of Florida, with assistance provided by HHS-OIG.

article thumbnail

Médecins Sans Frontières/Doctors Without Borders Deploys Celo Health Secure Messaging Solution to Support its Humanitarian Efforts in 87 Countries

HIPAA Journal

Securely sharing patient information is vital in the United States where healthcare organizations and their business associates are required to comply with the Health Insurance Portability and Accountability Act (HIPAA) and state laws governing health information privacy.

Doctors 80
article thumbnail

Another Resolution by DOJ Pursuant to its Civil Cyber-Fraud Initiative Highlights Continued Efforts to Hold Companies Accountable for Ensuring Data are Secured

Health Care Law Brief

Government contractors, such as Jelly Bean, are expected “to do the due diligence to keep software applications updated and secure” to ensure the “safeguarding [of] patients’ medical and other personal information.” FHKC shut down its website’s application portal shortly thereafter.

Fraud 52
article thumbnail

Mitigating Healthcare Cyber Risk Through Vendor Management

HIT Consultant

Department of Health and Human Services (HHS) Office for Civil Rights (OCR) is exercising its enforcement discretion to not impose penalties for noncompliance with HIPAA and the HITECH Act as it relates to “good faith” implementations of remote technologies used to provide telehealth. While the U.S. – Ongoing risk-based monitoring.