article thumbnail

Washington Hospital Pays $240,000 HIPAA Penalty After Security Guards Access Medical Records

HIPAA Journal

The HHS’ Office for Civil Rights (OCR) investigates all reported breaches of the protected health information of 500 or more individuals and some smaller breaches to determine if the breach was caused by the failure to comply with the HIPAA Rules.

HIPAA 90
article thumbnail

DOJ Settles Civil Cyber Fraud Initiative Case with CHS and Imposes a $930,000 Penalty

HIPAA Journal

This is the first settlement to be reached under the DOJ Civil Cyber Fraud Initiative, which was launched in 2021. CHS staff scanned medical records for the EMR system but saved scanned copies of some of the records on an internal network drive, which could be accessed by non-clinical staff, including Iraqi nationals employed at the site.

Fraud 98
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

2 DOJ Cyber Fraud Initiative Cases Net Almost $10 Million

Compliancy Group

Department of Justice’s (DOJ) Civil Cyber Fraud Initiative (CCFI). Details of DOJ Cyber Fraud Initiative Settlements. Let’s Simplify Compliance Do you need help with HIPAA? × Automated HIPAA Compliance. DOJ Cyber Fraud Initiative and the HIPAA Connection. Compliancy Group can help! Learn More! ×

Fraud 52
article thumbnail

Editoirial: Benefits of HIPAA for Patients

HIPAA Journal

This is the third article in the ‘Benefits of HIPAA’ series, this time around exploring how the Health Insurance Portability and Accountability Act (HIPAA) and its subsequent amendments have benefited patients. A World of Change for Patients It has now been 27 years since HIPAA was signed into law by President Clinton.

HIPAA 92
article thumbnail

U.S. Healthcare Compliance Frameworks: A Guide for International Vendors

Compliancy Group

When unauthorized parties gain access to this information, identity theft, fraud, and diminished care often result. Prevent fraud: All parties must comply with laws that prevent fraud and misconduct, such as ordering necessary tests or treatments or billing for services not provided. patients’ protected health information (PHI).

article thumbnail

First Choice Community Healthcare and Arlington Skin Notify Patients About Cyberattacks

HIPAA Journal

Arlington Skin Notifies 17,468 Patients About Electronic Medical Record Data Breach. VPN Solutions managed the electronic medical records of patients of Arlington Skin via the Allscripts practice management solution and electronic medical records platform. Dr. Michelle A.

article thumbnail

CommonSpirit Health Facing Class Action Lawsuit over Ransomware Attack and Data Breach

HIPAA Journal

The attack forced the shutdown of its electronic medical record system and caused considerable disruption over several weeks, with the catholic health system having to cancel many appointments. Lawsuits often fail when they are based solely on an elevated risk of identity theft and fraud.