All insights

Category

HIPAA & Security

86 articles in this category. Showing the 36 most recent below.

Healthcare team reviewing HIPAA compliance documentation

Navigating the New HIPAA 2026 Requirements

The healthcare industry faces significant changes in 2026 around compliance, data protection, and financial stability including NPP updates and a major security overhaul.

Read more Feb 17, 2026
Healthcare Compliance and Revenue

Navigating the New HIPAA 2026 Requirements: Protecting Privacy, Security, and Financial Health

The healthcare industry is facing significant changes in 2026, and staying ahead of these updates is crucial for maintaining compliance, protecting patient data, and ensuring financial stability.

Read more Feb 17, 2026
HIPAA 2026 NPP changes

New HIPAA 2026 Requirements

A key HIPAA deadline is coming up on February 16, 2026 . By that date, covered entities and their business associates must update their Notice of Privacy Practices (NPP) to reflect recent federal changes tied largely to

Read more Jan 22, 2026
Cybersecurity defense dashboard for breach response

Healthcare Data Breach Response: First 72 Hours

When a healthcare data breach occurs, the first 72 hours determine whether your organization faces minor remediation or catastrophic penalties. Here's your incident response playbook.

Read more Dec 18, 2025
Preparing for HIPAA Security changes

HIPAA Security 2025 Proposed Changes

Why HIPAA Security 2025 Proposed Changes Matter Right Now HIPAA Security 2025 Proposed Changes are coming, and they will change daily work for everyone.

Read more Nov 29, 2025
HIPAA SRA Don't risk fines

HIPAA SRA: Don’t Risk Fines

HIPAA SRA: Don’t Risk Fines is more than a catchy title. It is a serious warning. Every healthcare organization that handles electronic patient data must complete a HIPAA Security Risk Analysis (SRA) each year.

Read more Nov 23, 2025
Compliance datelines||

Essential Year-End Deadlines

Essential Year-End Deadlines matter more than ever for healthcare organizations facing tighter rules, rising cyberattacks, and shrinking margins.

Read more Nov 15, 2025
HIPAA requirement of wiping out hardware

Drive Destruction: Is "Wiping" Enough for HIPAA?

The question: Is wiping a drive enough to protect patient information? is one every healthcare organization must ask. This topic, known as media sanitization , is critical for protecting sensitive patient data.

Read more Nov 2, 2025
Be prepared for the 2025 HIPAA changes

Navigating the Proposed 2025 HIPAA Changes:

Get ready! Proposed 2025 HIPAA changes are coming. They aim to strengthen how we protect patient health information. While these changes are not final, it's wise to start preparing now.

Read more Oct 30, 2025
Spotting cybercrime activities

Spotting Phishing Scams in Healthcare

Cybercrime is a growing threat—especially in healthcare. Attackers use email, phone (vishing), and text (smishing) to trick people into sharing sensitive information.

Read more Oct 14, 2025
Cadia HIPAA Settlement

Cadia HIPAA Settlement: A Lesson in Patient Privacy

Sharing good news feels great in healthcare. A patient's successful recovery is a story worth telling. However, a recent case highlights a major risk.

Read more Oct 1, 2025
MIsunderstanding the HIPAA Security SRAs.

Debunking the Top 10 HIPAA Security Risk Analysis Myths

Protecting patient data is a top priority for any healthcare organization. A key step in this process is the HIPAA Security Risk Analysis (SRA) .

Read more Sep 14, 2025
Preparing for an audit

OCR HIPAA Audits: What They Ask For (and How to Be Ready)

When you hear “ OCR HIPAA Audits ,” you may think, “not me.” Yet audits hit groups of every size.

Read more Sep 13, 2025
A Business Associate could spell doom for you.

Business Associate Ransomware Investigation and Settlement

Business Associate Ransomware Investigation and Settlement isn’t just a headline—it’s the reality clinics and vendors face when ransomware strikes a partner that touches patient data. The case against BST & Co.

Read more Aug 20, 2025
Medical Records rules under HIPAA

HIPAA 2025: PHI Sharing & Right of Access

HIPAA 2025: PHI Sharing & Right of Access just became easier to follow. On August 11, 2025, OCR updated its FAQs to help care teams share data for treatment and honor patient access rights.

Read more Aug 19, 2025
Preparing for HIPAA changes

Preparing for the 2025 HIPAA Security Changes

Preparing for the 2025 HIPAA Security Changes The 2025 HIPAA Security Changes are the most significant updates in over a decade.

Read more Jul 16, 2025
Business Associate Agreement under scrutiny

HIPAA Business Associate Changes

Get ready for significant HIPAA business associate changes in 2025. The U.S. government is updating patient privacy rules under HIPAA.

Read more Jun 29, 2025
Phishing attack.

Solara’s $3,000,000 Cybersecurity

Phishing attacks are one of the most common methods used by cybercriminals to gain unauthorized access to sensitive information.

Read more Jan 15, 2025
HIPAA Violation|||

HIPAA Violations in Nursing Homes

The consequences of HIPAA violations in nursing homes can be severe. For example, Lakeview Village , a Kansas-based nursing home, was fined $25,000 after a staff member inappropriately accessed the medical records of ove

Read more Nov 11, 2024
cybercrime

$500K Ransomware Cybersecurity Incident Settlement

Plastic Surgery Associates of South Dakota in Sioux Falls recently settled with the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) for $500,000 due to a ransomware cybersecurity breach.

Read more Nov 6, 2024
Healthcare and compliance professionals|

New Bill Aims to Mandate Third-Party HIPAA Security Risk Analyses

In response to escalating threats in the healthcare sector, Senators Ron Wyden (D-Ore.) and Mark Warner (D-Va.) recently introduced the Health Infrastructure Security and Accountability Act.

Read more Nov 3, 2024
SRA retention rules

Security Risk Analysis (SRA) Importance

I opened the doors of Taino Consultants a couple of decades ago with the intention of becoming a trusted source for healthcare professionals.

Read more Jul 22, 2024
||||||||

Ascension Healthcare Cyberattack: Challenges and Solutions

The cyber siege experienced by Ascension, a major healthcare provider in the United States, had significant ramifications for its operations and patient care.

Read more May 14, 2024
|||||||

Tracking Technologies and HIPAA

The healthcare sector has undergone a digital transformation, relying heavily on technology to enhance efficiency and patient care.

Read more May 7, 2024
|

Don't Overlook These Potential HIPAA Violation Hotspots: Unveiling Hidden ePHI Storage Equipment

In the digital age, safeguarding electronic Protected Health Information (ePHI) is paramount for healthcare organizations.

Read more Apr 26, 2024
Confused frustrated doctor 2

Don't Overlook These Business Associates: The Hidden Risks to HIPAA Compliance

In the complex web of healthcare data management, Covered Entities (CEs) must not only safeguard their own systems but also those of their Business Associates (BAs).

Read more Apr 26, 2024
Cybersecurity 6

Protecting Patient Privacy: OCR’s Response to the Change Healthcare Cybersecurity Incident

In recent years, the intersection of healthcare and cybersecurity has become increasingly fraught with peril.

Read more Mar 19, 2024
|Hacker|

Insider Cybersecurity Breach Costs Hospital $4.75 Million

The U.S. Department of Health and Human Services (HHS) recently settled a cybersecurity case with Montefiore Medical Center, a hospital in New York City, for a staggering $4.75 million.

Read more Feb 7, 2024
|

STOP Ransomware

The US Government has escalated their war against ransomware by creating a new website that specializes in this subject. Ina news release on July 15, 2021 they provided the following information: "The U.S.

Read more Jul 15, 2021
||||||||||||||||||||||||||||||||||

<strong>COVID 19 and Cybersecurity</strong>

COVID 19 devastation effects have not been limited to the loss of life. In fact, during the last couple of years, the FBI has been warning healthcare professionals of cybercrime and the increased focus on healthcare orga

Read more Mar 7, 2021
Security Strategy

Security Risk Analysis Requirements

Have you completed your Security Risk Analysis (SRA) for Calendar Year 2020? That is a common question we ask our customers and occasionally the answer is: do we have to conduct an SRA every year? The Department of Healt

Read more Dec 1, 2020
Liability vs Money

Aetna pays $1million in fines

“ Aetna's failure to follow the HIPAA Rules resulted in three breaches in a six-month period, leading to this million-dollar settlement," said Office for Civil Rights (OCR) Director Roger Severino.

Read more Nov 9, 2020
Security

Healthcare and Cybercrime

The Cybersecurity and Infrastructure Security Agency (CISA), and the Federal Bureau of Investigation (FBI) are warning U.S. hospitals and healthcare providers of an increase and imminent cybercrime threat to them.

Read more Nov 9, 2020
Security Strategy

HIPAA enforcement

“Not Me” . Premera Blue Cross will pay $6.84 million and Athens Orthopedics will pay $1.5 million-dollar. The key phrase we found on these and other cases was “systemic noncompliance with the HIPAA Rules”.

Read more Oct 21, 2020
|

Security Risk Assessment (SRA) and COVID 19

The Office for Civil Rights (OCR) at the HHS announced that it will not impose penalties for noncompliance with HIPAA Privacy, Security, and Breach Notification Rules regarding the good faith provision of telehealth duri

Read more Jul 12, 2020
Cybersecurity 2

Cybertools

It is evident that cybercrime is not going away. If anything and based on the Federal Bureau of Investigations (FBI) Internet Crime Complaint Center (IC3): “The last calendar year (2019) saw both the highest number of co

Read more Mar 31, 2020

Other categories