10 most common HIPAA breaches

Often when hospitals or health systems violate HIPAA rules, they are required to pay hefty fines.

Advertisement

Recently, Medical Informatics Engineering, a medical records service provider, paid $100,000 to settle a HIPAA violation that exposed the protected health information of nearly 3.5 million patients.

Below are the 10 most common HIPAA violations, according to the HIPAA Journal.

  1. Snooping on healthcare records.
  2. Failure to perform an organization-wide risk analysis.
  3. Failure to manage security risks/Lack of a risk management process.
  4. Failure to enter into a HIPAA-compliant business associate agreement.
  5. Insufficient ePHI access controls.
  6. Failure to use encryption or an equivalent measure to safeguard ePHI on portable devices.
  7. Exceeding the 60-day deadline for issuing breach notifications.
  8. Impermissible disclosure of protected health information.
  9. Improper disposal of PHI.
  10. Denying patient access to health records/exceeding timescale for providing access.

More articles on cybersecurity:

Oregon State Hospital alerts patients of phishing attack
Memorial Hermann employee ‘improperly’ used patients’ credit card info
First cybercrime hotline unveiled in Rhode Island

At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.

Advertisement

Next Up in Cybersecurity

Advertisement

Comments are closed.