Privacy/Security

LSU Health Notifies Patients of Data Breach

May 20, 2013     Rajiv Leventhal
news
Siemens Healthcare, a Malvern, Penn.-based company that prints and mails doctors’ bills on behalf of LSU Health Shreveport, and LSU Health Shreveport are notifying patients of a computer issue which resulted in an unintentional disclosure of personal health information.

A Pair of Providers Announce Breaches

May 14, 2013     Gabriel Perna
news
The healthcare world continues to be plagued by data breaches. Two providers, Indiana University Health Arnett, Inc. in Lafayette, Ind. and the Regional Medical Center in Memphis, Tenn., both announced incidents, separately, this past week.

Vendor Scam Results in Data Breach Involving 17k Patients

May 10, 2013     Rajiv Leventhal
news
North Carolina-based Raleigh Orthopaedic Clinic has notified approximately 17,300 patients that x-ray films belonging to them and taken prior to 2008 may have been provided to a third-party vendor, which sold the films to an Ohio-based recycling company that harvested the silver from the X-rays.

Healthcare Organizations Move to Streamline Third-Party Assessment Process

May 8, 2013     John DeGaspari
news
The Frisco, Texas-based Health Information Trust Alliance (HITRUST) has announced that several healthcare organizations will require their business associates to participate in the HITRUST Common Security Framework (CSF) Assurance Program and submit CSF assessment reports as part of their information protection programs.

URMC Reports Breach Involving 537 Patients

May 6, 2013     Rajiv Leventhal
news
The University of Rochester Medical Center has sent letters to a group of 537 former orthopaedic patients, alerting them that a resident physician misplaced a USB computer flash drive that carried protected health information.

Hope Hospice Notifies More Than 800 Patients of Data Breach

April 30, 2013     Rajiv Leventhal
news
Officials at the New Braunfels, Tx.-based Hope Hospice have notified 818 patients that through a routine internal compliance audit on February 25, 2013, it discovered a potential security breach after finding an employee had e-mailed a report of recent referral and admission activity to themselves via an unsecured channel on December 27, 2012 and February 22, 2013.

Washington Debrief: CMS, ONC to Hold Listening Session on EHR Upcoding

April 30, 2013     Jeff Smith, Director of Public Policy at CHIME
article
The Centers for Medicare & Medicaid Services (CMS) and the Office for the National Coordinator of Health IT (ONC) will host a listening session on May 3 to discuss the increase in code levels billed for some Medicare services, and appropriate coding in an increasingly electronic environment.

A Pair of Hospitals Facing Lawsuits for Breaches

April 22, 2013     Gabriel Perna
news
Two providers, Florida Hospital, part of the Altamonte Springs, Fla.-based Adventist Health System, and Glen Falls Hospital, a 410-bed not-for-profit community hospital, are facing separate lawsuits for breaching their patients’ data.

HITRUST Releases New Guidance for Healthcare Organizations to Assess Cybersecurity Preparedness

April 10, 2013     John DeGaspari
news
In response to heightened awareness and concerns about cyber threats, attacks and incidents, the Health Information Trust Alliance (HITRUST) announced today new guidance for healthcare organizations wanting to assess the state of their cybersecurity preparedness. The guidance identifies an appropriate subset of controls within the HITRUST Common Security Framework (CSF) that are most directly related to detecting and thwarting cyber-related breaches and allows organizations to assess against the cyber-specific controls and receive a snapshot of their cyber capabilities and readiness.

Massachusetts EMR Firm Reports Data Breach

March 18, 2013     Rajiv Leventhal
news
Lawrence Melrose Medical Electronic Record Inc. (LMMER), a Melose, Mass.-based electronic medical record (EMR) firm, has sent a letter to the New Hampshire Attorney General’s office notifying authorities of a data breach involving its EMR software.

University of Connecticut Health Center Privacy Breach Affects 1,400 Patients

March 11, 2013     Rajiv Leventhal
news
The University of Connecticut Health Center has acknowledged that a former employee inappropriately accessed records of approximately 1,400 patients, which included names, addresses, dates of birth, and in some cases, Social Security numbers. The Health Center became aware of the privacy breach on January 7, 2013.

A Breath of Fresh Air at HIMSS

March 6, 2013     Gabriel Perna
blog
At events like HIMSS, Mac McMillan, co-founder and CEO of the consulting firm CynergisTek, and chair of the HIMSS Privacy & Security Policy Task Force, can truly be a breath of fresh air. While a good chunk of the people at this event are giving you a structured, manufactured set of thoughts on a particular topic in health IT, a guy like Mac is simply telling it like it is.
Page
of 13Next