Practices should conduct risk analysis to evaluate product deficiencies, create corrective measures
WEDNESDAY, Aug. 22, 2018 (HealthDay News) — Data breaches can happen to small medical practices, but staff can take steps to prevent them, according to an article published in Medical Economics.
For example, one five-provider group practice had a data breach that made the records of 42,000 patients available. Hackers accessed Social Security numbers, birth records, and other sensitive protected health information.
Under the Health Insurance Portability and Accountability Act (HIPAA) Breach Notification Rule, providers are required to notify affected individuals, the U.S. Department of Health and Human Services, and in some cases the media about a breach of unsecured protected health information. Most notifications should occur quickly and no later than 60 days after the discovery of a breach.
Practices should conduct risk analysis to evaluate the current staff and product deficiencies and create corrective measures. Practices can also designate a staff member to train employees on the practice’s HIPAA policies and procedures, hire an outside expert to help with compliance support, use anti-phishing protection on computers, and be suspicious of emails asking for verification of personal information through a website or a reply to the message.
Odds of Adverse Patient Outcomes Increased for Patients With Duplicate Medical Charts
AI Model Can Screen for Cognitive Impairment From Clinical Notes
Substantial Uptick Seen in Private Equity-Affiliated Fertility Clinics Since 2013
AI-Based Ambient Scribes May Reduce Physician Documentation Time, Burnout
Factors Identified in Disparities of Response to Patient Messages
Physical Exams May Not Reliably Diagnose Pediatric Pneumonia
Number of Health Care Workers Has Increased 198.5 Percent Since 1990
Non-U.S.-Born Physicians Make Up Nearly Half of Internal Medicine Workforce