HIPAA Breaches, Fines, and Legislation




InfoSec ICU show

Summary: It’s all HIPAA this week, and you’d be surprised at the meat on this bone! Steve and Gerry discuss the recent massive OCR fine to a Texas healthcare provider and how the poor understanding of HIPAA requirements and policies are leading to individuals violating HIPAA with the best of intentions. Finally, the guys cover the challenges individuals have attempting to bring HIPAA infractions to justice as citizens.<br> <a href="https://podcast.musc.edu/podcast/infosec/e30-infosecicu/" target="_blank" rel="noopener">Show Notes</a><br> <br> Resources:<br> University of Texas MD Anderson Cancer Center ordered to pay $4.3M for 3 breaches involving 2 USB drives and a laptop<br> <a href="https://medcitynews.com/2018/06/md-anderson-4-3m-hipaa/" target="_blank" rel="noopener">https://medcitynews.com/2018/06/md-anderson-4-3m-hipaa/</a> <br> State of NY suspends nurse for unauthorized removal of PHI<br> <a href="https://healthitsecurity.com/news/new-york-suspends-nurse-for-hipaa-violation-affecting-3k-patients" target="_blank" rel="noopener">https://healthitsecurity.com/news/new-york-suspends-nurse-for-hipaa-violation-affecting-3k-patients</a> <br> Poor understanding of HIPAA requirements and policies can lead healthcare workers to deny or delay access to PHI. <br> <a href="https://jamanetwork.com/journals/jama/fullarticle/2686002" target="_blank" rel="noopener">https://jamanetwork.com/journals/jama/fullarticle/2686002</a><br> Judge Dismisses Lawsuit Charging LabCorp with HIPAA Violation. <br> <a href="https://healthitsecurity.com/news/amp/judge-dismisses-lawsuit-charging-labcorp-with-hipaa-violation" target="_blank" rel="noopener">https://healthitsecurity.com/news/amp/judge-dismisses-lawsuit-charging-labcorp-with-hipaa-violation</a> <br>  <br> One Cool Things<br> Recon-NG<br> <a href="https://bitbucket.org/LaNMaSteR53/recon-ng" target="_blank" rel="noopener">https://bitbucket.org/LaNMaSteR53/recon-ng</a><br> Pi-Hole<br> <a href="https://pi-hole.net/" target="_blank" rel="noopener">https://pi-hole.net/</a><br> Contact<br> Email <a href="mailto:infosecicu@musc.edu">infosecicu@musc.edu</a><br> Twitter:<br> <br> * <a href="https://twitter.com/Gerald_Auger" target="_blank" rel="noopener">Gerry Auger (@Gerald_Auger)</a><br> * <a href="https://twitter.com/sgcardinal" target="_blank" rel="noopener">Steven Cardinal (@sgcardinal)</a><br> <br>