Nov
18
Patient Sues Healthcare System Over Ad Containing PHI
Filed Under HIPAA Enforcement, HIPAA Law, HIPAA News, HIPAA Privacy | Comments Off
Interesting case where a doctor holding a file in an advertisement was actually holding a real live patient’s file. Stupidity like this can only be rewarded by fat lawsuit the patient has filed against the hospital system.
HIPAAnews – The Latest News about HIPAA
A Cumberland County, PA, woman is suing a major midstate hospital system, claiming it publicly broadcast her personal and patient information in an advertisement two years ago for Breast Cancer Awareness Month, reports the Patriot-News. Donna Vozenilek claims a medical file the doctor holds in the ad is hers and that PinnacleHealth System violated HIPAA by displaying her file without her permission. She claims those who saw the ad could clearly discern her name, Social Security number and birth date, and learn that she had undergone a mammogram. Vozenilek contends Pinnacle officials continued to run the ad even after she demanded verbally and in writing that it be pulled.
(Via HIPAAdvisory.com)
Nov
14
InfoWorld: SSL VPN security threatened by desktop search engines
Filed Under HIPAA Compliance, HIPAA Compliant Software, HIPAA Security, HIPAA Technology | Comments Off
If you’ve installed Google’s new desktop search tool, you might want to consider the security issues of having software that caches SSL-encrypted traffic specifically so it can be rapidly and easily searched. This has clear implications for administrators responsible for maintaining HIPAA-secure information technology.
New PC indexing tools such as Google (Profile, Products, Articles) Desktop Search pose security risks to businesses that use SSL remote access because the tools copy material accessed during SSL sessions and make it available to unauthorized people who later use the same PC.
(Via HIPAA Clicks – HIPAA RSS feeds)
Nov
12
Acusis Announces Preparedness for 2005 HIPAA Security Deadline
Filed Under HIPAA Compliance, HIPAA News, HIPAA Security, HIPAA Training | Comments Off
Acusis Announces Preparedness for 2005 HIPAA Security Deadline
Acusis Announces Preparedness for 2005 HIPAA Security Deadline
PITTSBURGH–(BUSINESS WIRE)–Nov. 10, 2004–Acusis(R), a leading provider of outsourced medical transcription services, has announced today their associates completed a Health Insurance Portability and Accountability Act of 1996 (HIPAA) education and training course. Over 540 employees globally have participated in the push to be ready to meet the upcoming HIPAA regulations.
The completion comes months before the compliance deadline for HIPAA’s Security Rule in April 2005, indicating Acusis is doing their part to ensure meeting the transition deadline is as smooth as possible for healthcare organizations. In order to demonstrate to hospitals, clinics, and physician practices Acusis is committed to safeguarding the confidentiality and security of protected electronic health information, associates are required to complete the HIPAA training course annually.
“Acusis has built our model around HIPAA-protected health information guidelines. By making ourselves prepared for the 2005 deadline in advanced, we can assure we are doing the best we can to encourage a seamless transition in April for our customers,” said David Iwinski, Jr., Acusis President and CEO.
The course educates associates on HIPAA awareness, privacy and security and follows with a formal assessment of employees’ understanding of the rules. Health Care Compliance Strategies (HCCS) presented Acusis with a Certificate of Completion.
In addition to the required formal annual HIPAA training, Acusis has their worldwide associates sign a Non-Disclosure/Confidentiality Policy. Last June, Siemens Medical Solutions completed an independent assessment its HIPAA compliance initiative. Acusis has technology systems in place for data encryption, virtual private network safeguards, firewall multiple layers, intrusion detection systems and disaster recovery redundancies.
About Acusis(R)
Headquartered in Pittsburgh, PA, Acusis provides cost-effective, accurate outsourced medical transcription services to hospitals, clinics and large physician practices throughout the United States. Through its proprietary Web-based software, AcuSuite(R), Acusis uses a secure method to manage the entire transcription process from capturing dictations to delivering electronic reports. Acusis delivers accurate reports within a tailored 24-hour or less turnaround. With a global team of more than 600 associates throughout the U.S. and India, Acusis provides world-class quality, customer satisfaction, seamless integration, and highly competitive prices. For more information on Acusis, visit www.acusis.com or contact us at all.ears@acusis.com or 866.837.6158.
Nov
12
HIPAA Job of the Day: Business / Systems Analyst with HIPAA Experience
Filed Under HIPAA (General), HIPAA Jobs | Comments Off
Here’s today’s interesting HIPAA-related job posting (via HIPAAClicks.com):
Business / Systems Analyst with HIPAA experience
Pay Rate:
Term: Fulltime
Location: Woodbury, Minnesota
Length: Contract to Direct
Date Posted: 11/12/2004Description: Perform activities as the Systems Analyst / Quality Analyst that support our clients Consumer & Financial Services division. Responsible for analysis and documentation of system process requirements and procedures related to the coding and execution of the system modification to support business. Translate Business Requirements to Systems Specifications needed for Technical Design. Understand and evaluate the project scope and requirements and by evaluating the best system solution. Work with business areas to develop and finalize use cases and test plans/scripts. Coordinate and conduct system requirements walkthroughs with Business Owners and Design / Development teams. Responsible for closely aligning with and collaborating with the business owners/business sponsor areas to validate functional requirements and achieve systems Integration test signoff. Accountable for assisting with the planning and execution of overall application testing to insure application meets all approved service requests and/and or business requirements. Manage execution of standard testing processes procedures and practices based on methodology and provide overall application testing coordination. Ensure compliance with standard Delivery Framework methodology. Work with Release Manager to secure sign off from Business User and Sponsor on final documentation of system requirements. Assist in coordination of project team analysis, issue resolution and documentation of findings. Identify, escalate and document changes in scope or requirements affecting system requirements. Assist in the management and validation of workplan activities. Qualified candidates should also have experience with use case, technical requirements documentation, functional and technical specifications creation and sequence diagrams.This is a contract-to-hire opportunity. Local candidates are given preference. All candidates must meet minimum requirements for experience and all resume submissions must have qualifications listed. Corp.-to-Corp. arrangements are available on a limited basis. Candidates should email resumes to the listed email address – NO PHONE CALLS PLEASE. CSA/Tobin, Inc. is an Equal Opportunity Employer. For information about our company and more job listings please visit www.csatobin.com.
Job Requirement: Business Analysis (7 yrs)HIPAA (1-3 yrs)Spec Writing (7 yrs)Test Plans (4 yrs)Healthcare Insurance (desired)
If you fit the bill, you should check it out. Posted on Pick A Job. Also check out HIPAA Jobs for a lot more listings.
Nov
10
HIPAA privacy crime draws 16-month sentence
Filed Under HIPAA Enforcement, HIPAA Privacy | Comments Off
Texas Health Law: HIPAA privacy crime draws 16-month sentence – Burford & Ryburn, L.L.P.
HIPAA privacy crime draws 16-month sentence
Modern Healthcare – The first person convicted on criminal charges under the Health Insurance Portability and Accountability Act of 1996 was sentenced to 16 months in prison and ordered to pay $9,000 in restitution. Richard Gibson, 42, of SeaTac, Wash., pleaded guilty in August to stealing personal identifying information for a cancer patient at the Seattle Cancer Care Alliance and using the information to falsely obtain credit cards.