October 3, 2018
Over the last couple of years, the Department of Health and Human Services (HHS) conducted “desk audits” of 166 covered entities and 41 business associates. These audits focused on select HIPAA privacy, security and breach notification requirements. HHS has not released its official findings from the audits yet, but it has identified serious compliance gaps in the following areas:
Employers that sponsor group health plans should periodically review their compliance with HIPAA rules, including whether their security analysis and risk management for electronic PHI is up to date. Employers should also watch for more guidance from HHS on these compliance requirements.
Want to learn more? Start a conversation with us.
We use cookies to improve your browsing experience, analyze website traffic, and personalize content. By clicking “Accept All” you consent to our use of cookies. You can manage your preferences at any time. See our Privacy Policy.
We use cookies to run this site and, with your permission, to analyze traffic and personalize content. Choose which cookies to allow. See our Privacy Policy.
Required for the website to work. Always active.
Lets us measure website traffic and personalize content through Google Analytics. Nothing loads until you allow it.