TMC Expert On HIPAA 2.0

HIPAA 2.0

Nancy Ware, HIPAA Compliance Specialist at Total Medical Compliance, recently joined the ComTech Network Solutions podcast to cut through the noise surrounding “HIPAA 2.0.” With so much speculation about upcoming changes to the HIPAA Security Rule, Nancy provides clear, practical insight into what’s actually proposed—and what it means for healthcare providers. While no final rule […]

Understanding When Patient Authorization is Required Under HIPAA

Patient Authorization under HIPAA

Under the HIPAA Privacy Rule, covered entities are required to protect the confidentiality and integrity of individuals’ Protected Health Information (PHI). One of the most frequently asked questions is whether a provider needs a patient’s authorization to disclose PHI. The answer depends on the purpose of the disclosure. When Authorization Is Not Required The HIPAA […]

Respecting Patient Privacy: A Reminder About Proper Access to Records

patient privacy and snooping

As your HIPAA compliance partner, we want to remind all staff that unauthorized access to patient records—also known as “snooping”—is a serious HIPAA violation. Even in small, tight-knit practices, patient privacy must always be respected. Curiosity is not a valid reason to look at someone’s protected health information (PHI), and doing so can lead to […]

Misinformation Surrounding the HIPAA Security Rule Notice of Proposed Rule Making

In December 2024, the Department of Health and Human Services (HHS) released a Notice of Proposed Rule Making (NPRM) regarding potential changes to the HIPAA Security Rule. This notice opened for a period of public comments, allowing healthcare professionals, organizations, and other stakeholders to voice their opinions on the proposed updates. The comment period closed […]

HIPAA Compliance Starts With You: Avoiding Common Data Breach Mistakes

In today’s digital healthcare environment, protecting patient information is not just the responsibility of IT or compliance officers—it is a shared duty among all employees. Data breaches can occur anywhere, from large hospitals to small clinics, and human error is often the primary cause. A single mistake, such as sending an email to the wrong […]

The Role of Every Staff Member in Maintaining HIPAA Compliance

staff roles in HIPAA compliance

HIPAA is a cornerstone of patient privacy in healthcare, but ensuring compliance is not just the responsibility of IT or the compliance team. Every staff member, from receptionists to clinicians to administrative personnel, plays a vital role in safeguarding Protected Health Information (PHI). Here’s an overview of the responsibilities different roles have in maintaining HIPAA […]

It’s Your Call – February 2025

OSHA: Why is OSHA Ending The COVID-19 Healthcare Rulemaking? A: OSHA has decided to focus on creating a broader Infectious Disease Standard instead of a COVID-19-specific rule for healthcare workers. This approach was always intended to replace the temporary COVID-19 rule and allows OSHA to protect workers from a wide range of infectious diseases, not […]

The Right of Access Initiative

right of access initiative

The Right of Access Initiative under HIPAA represents a crucial step toward empowering individuals with control over their health information. Launched in 2019 by the Office for Civil Rights (OCR) of the Department of Health and Human Services (HHS), this initiative aims to ensure that covered entities, including healthcare providers and health plans, comply with […]

It’s Your Call – January 2025

it's your call article

OSHA/Infection Control: What are the three ways to sterilize instruments used on patients? Sterilization of instruments achieves destruction of all forms of microbial life either by physical or chemical methods. There are different ways available to sterilize critical and semi-critical instruments/items utilizing either high or low temperature methods. Most instruments are heat stable and therefore […]

It’s Your Call – December 2024

it's your call article

HIPAA: Does the new reproductive health care ruling require a change to the Notice of Privacy Practices? A: Yes, the new ruling does require changes to the Notice of Privacy Practices. However, due to the second ruling concerning Substance Use Disorder Treatment records, the Department of Health and Human Services (HHS) has extended the compliance […]