OCR Cloud Computing Guidance

Everything you wanted to know about the OCR Cloud Computing Guidance but were afraid to ask What exactly is the cloud? The cloud is a network of servers used to share resources, software, and information via a network. Each server has a different function. Some servers run applications and some deliver a service. The information […]

No Phishing Allowed

No one can deny that technology has been a boon to the healthcare sector enabling better care for patients and convenience for providers. Smart devices of all types connect with medical record and billing systems and various applications through cloud computing. Unfortunately, all this interconnectedness has created opportunities for hacking and other illegal activity. A […]

HIPAA PHASE II On-Site Audits Imminent!

The Phase II Audits from the Office of Civil Rights (OCR) are right around the corner! The program, announced by Health & Human Services (HHS) in 2016, was created to take a “snapshot” of HIPAA compliance in the healthcare industry. HHS wants to know how well the guidelines are understood by covered entities and where […]

International Ransomware Campaign

ransomeware attack

In May, Great Britain’s National Health Service (NHS) was hit by a large-scale cyber-attack. Some hospitals and practices across England and Scotland were unable to access patient data, after their computers were locked by a ransomware attack demanding payment in virtual currency, Bitcoin. However, there was no evidence that patient data had been compromised. The […]

HIPAA Breach Notification Part 1

When you have a breach of Protected Health Information (PHI) the practice will have to notify the affected patients, Health and Human Services (HHS) and potentially other parties. The timing is critical. This month we will review notification requirements. Patient Notification You must provide notice to each affected patient in written form by first-class mail, […]

Information Security and Vendors

The very sad truth is the world is full of criminals and you have something they want: information and materials. You may have all technical safeguards in place to protect yourself from computer hackers and break-ins; however,  what are you doing about the stream of people who walk in your office for business purposes?  One […]

Phase Two HIPAA Audits Enter Round Three for Business Associates

The HHS Office for Civil Rights (OCR) is tasked with monitoring and enforcing the HIPAA regulations. While they have always conducted investigations and inspections as a result of breach incidents they plan to also pursue random audits.  To start this process they initiated 115 random audits of Covered Entities in 2011 and 2012 to test […]

The Cost of Record Snooping

In the early hours of June 12, 2016 news broke of a horrific attack, and mass killing of patrons inside an Orlando night club. All told, there were a total of 49 people who were killed, and another 56 who were injured, but would survive. The victims were taken to two separate hospitals in the […]

HIPAA Enforcement Update

healthcare HIPAA enforcement update

This year, the healthcare sector has seen a dramatic rise in HIPAA enforcement, settlement agreements and the resumption of the OCR Audit Protocol. The number of healthcare records that were breached in 2015 (113 million) was almost triple the total number of records breached between 2009 and 2014 (41 million).  That, along with the unprecedented […]

The e Stands for Electronic

TMC wants to help you be OSHA and HIPAA compliant in a way that works best for your practice. As you know, we offer different compliance packages according to your practice’s needs. We are putting the spotlight on our eCompliance package which is a self-guided compliance program that lets you keep TMC in your back […]