We use cookies, including third-party cookies from Google to serve personalized ads through AdSense, to operate this site and understand how it is used. By continuing to browse, you accept this use. See our Privacy Policy and Terms of Use for details, including how to opt out of personalized advertising.
Accept
Health Works CollectiveHealth Works CollectiveHealth Works Collective
  • Health
    • Mental Health
  • Policy and Law
    • Global Healthcare
    • Medical Ethics
  • Medical Innovations
  • News
  • Wellness
  • Tech
Search
© 2023 HealthWorks Collective. All Rights Reserved.
Reading: Preventing a HIPAA Violation in 2012
Share
Notification Show More
Font ResizerAa
Health Works CollectiveHealth Works Collective
Font ResizerAa
Search
Follow US
  • About
  • Contact
  • Privacy
© 2023 HealthWorks Collective. All Rights Reserved.
Health Works Collective > Uncategorized > Preventing a HIPAA Violation in 2012
Uncategorized

Preventing a HIPAA Violation in 2012

onlinetech
onlinetech
Share
6 Min Read
SHARE

The government’s HIPAA Audit Program has been underway since November 2011, but it is scheduled to continue through the end of 2012. With more awareness and data breaches reported than ever, here are a few areas your company should be sure to evaluate this year in order to reduce your risk of a HIPAA violation.

The government’s HIPAA Audit Program has been underway since November 2011, but it is scheduled to continue through the end of 2012. With more awareness and data breaches reported than ever, here are a few areas your company should be sure to evaluate this year in order to reduce your risk of a HIPAA violation.

Mobile Device Security
The infamous Ponemon Institute study on data breaches reports that 81 percent of healthcare organizations use mobile devices to collect, store and transmit patient data. Yet 49 percent take no security precautions to ensure those devices and patient data are protected, and less than 24 percent use encryption.

Mobile Device Security

 

According to a Jackson & Coker report, four out of five physicians use smartphones, tablets and other mobile devices and apps in daily practice in order to collect patient data from patient exams and easily enter it into their digital EHR/EMR (electronic health or medical records) systems.

More Read

What Is the Penalty for a HIPAA Violation?
Tips to Keep Health Workers Safe in the Workplace
HIPAA Breaches By State
Understanding the Science Behind Growth and Recovery Research
Practice Pointers in the Wake of the Johns Hopkins Hospital Privacy Settlement

The top three healthcare specialties that use mobile devices most frequently include:

  • 40% Emergency department physicians
  • 33% Cardiologists
  • 31% Urologists and Nephrologists

However, the use of mobile devices can increase the potential for a HIPAA breach, especially if the device is lost and not protected by a PIN or encrypted – see our previous blog post on Mobile Security: How Safe is Your Data? for more information.

Another way to protect sensitive data is to have it removed from devices before being transferred from a healthcare facility. A combination of technical security and establishing proper policies and procedures is important to keep up with HIPAA compliant standards.

Read more about our recommended security measures to achieve HIPAA compliance and pass an audit, and about the rise of mobile devices in the healthcare industry.

Business Associate Agreements
To save on capital costs and take advantage of expert knowledge, many turn to professional organizations that offer services to healthcare providers, including data hosting and billing companies. To a covered entity (a physician’s office or hospital collecting patient data), these companies are known as business associates.

But carefully choosing a vendor is extremely important to keeping compliance – business associate-related data breaches topped 62% of total number of patient records breached according to the Dept. of Health and Human Services.

Business Associate Agreements

 

How do you know your HIPAA hosting provider is credible? Ask them if they’re willing to sign a business associate agreement, or BAA, which is a contract that clearly outlines each party’s responsibility when it comes to data protection.

According to an InformationWeek.com article, only a third of organizations transferring patient data externally had signed data-sharing contracts with all of their contractors.

Online Tech signs a BAA with every healthcare client with patient data since we have possible access to or could affect the availability of patient data on their servers in our data centers. Although we never access patient or client data, the signed document codifies our commitment to follow HIPAA compliant rules.

Read more about business associates and business associate agreements.

Internal Operations
Check out your own staff and internal operations – often human error or mistrained/not-at-all-trained employees can be the root cause of a HIPAA violation. Those with access privileges can mishandle sensitive data.

In the case of the TRICARE/SAIC military healthcare contractor incident, an employee drove off government property and left their car unattended, during which time a thief made off with 4.9 million patient records on unencrypted backup tapes. A resulting lawsuit points out the DoD’s lack of employee training as one of the major offenses.

A survey report by PricewaterhouseCoopers (PwC) shows that slightly more than half of respondents reported a privacy or security issue in the past two years attributed most incidents to the improper use of patient health information by employees. Employee training on HIPAA policies and procedures as they affect day-to-day operations is key to eliminating any points of weakness within a company.

Online Tech was found to be 100% HIPAA compliant as a result of our HIPAA audit, and has undergone complete HIPAA employee training in our updated policies and procedures.

Watch our informative webinar, Impact of HIPAA Compliance on Business Associates, for more information from the perspective of our Director of Operations and Risk Management and Security Officer on the day-to-day operations of a HIPAA compliant data center.

References:
80% of Doctors Use Mobile Devices At Work
Smartphones Partly to Blame for HIPAA Compliance Issues
Integrated Security Reduces Health IT Data Breaches
Staying Vigilant Key to Meeting Regulatory Compliance Standards

  

TAGGED:HIPAAhipaa violation
Share This Article
Facebook Copy Link Print
Share

Stay Connected

1.5KFollowersLike
4.5KFollowersFollow
2.8KFollowersPin
136KSubscribersSubscribe

Latest News

What Hospitals Need to Know About EU MDR -- AI-generated illustration
What Hospitals Need to Know About EU MDR
Business Hospital Administration
August 18, 2026
How to Choose an On-Demand Medical Interpreting Provider for Your Hospital -- AI-generated illustration
How to Choose an On-Demand Medical Interpreting Provider for Your Hospital
Health care
August 12, 2026
The Chemistry Of Drug Consistency -- AI-generated illustration
The Chemistry Of Drug Consistency
Policy & Law
August 12, 2026
Dental Materials Through The Decades -- AI-generated illustration
Dental Materials Through The Decades
Dental health Infographics Specialties
August 12, 2026

You Might also Like

neck and back pain
Uncategorized

Top 5 Most Frustrating Types of Back Pain

September 16, 2021
oral health or dental health
Dental healthSpecialtiesUncategorized

7 Ways to Use Technology for Better Oral Health

May 11, 2021

What I Saw/Learned at HIMSS12 – Highlights

March 3, 2012
soy supplements from Herbalife get great reviews
Uncategorized

The Benefits and Drawbacks of Popular Natural Health Supplements

October 28, 2021
Subscribe
Subscribe to our newsletter to get our newest articles instantly!
Follow US
© 2008-2026 HealthWorks Collective. All Rights Reserved.
  • About
  • Contact
  • Privacy
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?