Oscislawski LLC

Latest from Oscislawski LLC - Page 5

  •  BetterHelp, an online counseling service App, falsely claimed it was certified “HIPAA Compliant” and maintained the privacy of consumer information.
  • BetterHelp failed to obtain the express consent of consumers before sharing their identifiable health information with FaceBook, Snapchat, and other 3rd parties. 
  • The FTC Health Breach Notification Rule was found to not apply here because

  • Major health care system in Arizona agrees to pay $1.25 Million for HIPAA non-compliance with Security Rule.
  • Corrective Plan includes OCR oversight until December 2024! 
  • Cybersecurity incidents remain a high risk for breaches by HIPAA covered entities and their business associates — so, prevent, detect and mitigate!

Subscribe to HERE to Legal HIE’s compliance library

  • The FTC just enforced its Health Breach Notification Rule for the first time since the effective date 13 years ago!
  • Vendors of Personal Health Records, and related entities, must comply with the FTC Health Breach Notification Rule.
  • HIPAA covered entities and their business associates are, generally, excluded from compliance with the FTC Health Breach Notification

  •  A HIPAA BAA must be in place for a regulated entity to use online tracking technologies to collect IIHI from its website, mobile apps, social media page(s) for health care operations purposes.
  • OCR says all IIHI, including an individual’s IP addresses and geo location, collected by a regulated entity’s website, is protected by HIPAA.
  • If

DATE
ACTION
Jan. 31, 2020
Secretary HHS declares Public Health Emergency
Mar. 4, 2020
CMS announces suspension of non-emergency survey activities
Mar. 6, 2020

Coronavirus Preparedness and Response Supplemental Appropriations Act signed into law.  Waives Medicare telehealth payment requirements. During the Public Health Emergency to allow beneficiaries in all areas of the country to receive