article thumbnail

2025 HIPAA Journal Annual Survey Published: Key Insights into Compliance Challenges

The HIPAA Journal

The HIPAA Journal has released the results of its 2025 Annual HIPAA Compliance Survey, offering a detailed snapshot of how healthcare organizations are managing HIPAA compliance in today’s regulatory environment. The survey also examined training practices at HIPAA-regulated entities.

HIPAA 109
article thumbnail

What is HIPAA Incident Management?

The HIPAA Journal

HIPAA incident management is the process of tracking, responding to, and documenting HIPAA security incidents as they are detected by automated security tools or reported by members of the workforce. Regardless of whether HIPAA incident management is fully automated, manual, or semi-manual, the process must include specific elements.

HIPAA 88
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Artificial Intelligence can be the Catalyst for Transformative Change at NIH

Sensible Medicine

Dr. Bhattacharya’s appointment was partly to prevent a repeat scenario. For example, the Feinstein Institute for Medical Research settled HIPAA violations for $3.9 This resulted in an incomplete response rather than a holistic, data-driven strategy.

article thumbnail

Cyberattack on Sunflower Medical Group Affects 221,000 Patients

The HIPAA Journal

Since systems are offline, patients have been asked to bring photo IDs, insurance cards, medication lists, allergy details, and lab/imaging orders with them to their appointments, and patients have been advised to phone the centers to schedule appointments.

article thumbnail

HIPAA Violation Cases

The HIPAA Journal

HIPAA violation cases are compliance investigations that result from a data breach being notified to the Department of Health and Human Services’ (HHS) Office for Civil Rights (OCR) or a privacy complaint being submitted to OCR via the complaints portal. There are many different types of HIPAA violation cases.

HIPAA 70
article thumbnail

Esse Health Confirms Almost 264,000 Patients Affected by April 2025 Cyberattack

The HIPAA Journal

Esse Health had previously publicly announced the cyberattack, which prevented access to its electronic medical record system, resulting in appointments being cancelled. The post Esse Health Confirms Almost 264,000 Patients Affected by April 2025 Cyberattack appeared first on The HIPAA Journal.

article thumbnail

Website Tracking Lawsuit Against Orlando Health Survives Motion to Dismiss

The HIPAA Journal

The HHS Office for Civil Rights issued guidance for HIPAA-regulated entities on the use of these tools, which OCR said could violate HIPAA. Orlando Health encouraged patients to search for medical conditions on its website, communicate their medical symptoms, and access its MyChart patient portal and appointment booking system.

HIPAA 48