Each incident has affected 500 or more individuals. Fifty-five percent of those incidents involved a loss of unencrypted electronic devices or media.
The interim final version of the HIPAA breach notification rule requires healthcare organizations to notify those affected by breaches of any size. A final version of the rule, expected in the coming months, could further clarify exactly what types of incidents need to be reported.
Related Articles on HIPAA and Patient Privacy Violations:
Titus Regional Medical Center Nurse Fired Over HIPAA Violation
Staffing Agency Employee at Providence Holy Cross in California Allegedly Posts Patient’s Record on Facebook
CEO, CMO of Prime Hospital Share Patient’s Chart With California Newspaper Editor
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.