Video: Every Case Tells a Story| Webinar: ACR/CHEST ILD Guidelines in Practice

An official publication of the ACR and the ARP serving rheumatologists and rheumatology professionals

  • Conditions
    • Axial Spondyloarthritis
    • Gout and Crystalline Arthritis
    • Myositis
    • Osteoarthritis and Bone Disorders
    • Pain Syndromes
    • Pediatric Conditions
    • Psoriatic Arthritis
    • Rheumatoid Arthritis
    • Sjögren’s Disease
    • Systemic Lupus Erythematosus
    • Systemic Sclerosis
    • Vasculitis
    • Other Rheumatic Conditions
  • FocusRheum
    • ANCA-Associated Vasculitis
    • Axial Spondyloarthritis
    • Gout
    • Psoriatic Arthritis
    • Rheumatoid Arthritis
    • Systemic Lupus Erythematosus
  • Guidance
    • Clinical Criteria/Guidelines
    • Ethics
    • Legal Updates
    • Legislation & Advocacy
    • Meeting Reports
      • ACR Convergence
      • Other ACR meetings
      • EULAR/Other
    • Research Rheum
  • Drug Updates
    • Analgesics
    • Biologics/DMARDs
  • Practice Support
    • Billing/Coding
    • EMRs
    • Facility
    • Insurance
    • QA/QI
    • Technology
    • Workforce
  • Opinion
    • Patient Perspective
    • Profiles
    • Rheuminations
      • Video
    • Speak Out Rheum
  • Career
    • ACR ExamRheum
    • Awards
    • Career Development
  • ACR
    • ACR Home
    • ACR Convergence
    • ACR Guidelines
    • Journals
      • ACR Open Rheumatology
      • Arthritis & Rheumatology
      • Arthritis Care & Research
    • From the College
    • Events/CME
    • President’s Perspective
  • Search

How to Maintain HIPAA Compliance

Kelly Tyrrell  |  September 1, 2016

Texting patient information is forbidden at Dr. Brasington’s hospital. So, too, is using personal cell phones to take pictures of patients. In reality, he says, these kinds of policies have not been onerous, although he recognizes the challenges that some of the more complex IT requirements may present to smaller practice physicians.

“We need to be careful about protecting patient confidentiality,” he says. “I think in many respects, the intent of HIPAA was to do what most health professionals thought we were doing anyway, which was protecting patient information.”

ad goes here:advert-1
ADVERTISEMENT
SCROLL TO CONTINUE

For More Information
Additional suggestions for avoiding breaches of patient information and being prepared in the event of an audit—and remember, audit notification will come via email—can be found on The Rheumatologist’s website.


Kelly April Tyrrell writes about health, science and health policy. She lives in Madison, Wis.

ad goes here:advert-2
ADVERTISEMENT
SCROLL TO CONTINUE

References

  1. Cybersecurity: The protection of data and systems in networks that connect to the Internet/10 best practices for the small healthcare environment. Chapter 2. HealthIT.gov. 2016 Jul. https://www.healthit.gov/sites/default/files/basic-security-for-the-small-healthcare-practice-checklists.pdf.
  2. Murrin S. OCR should strengthen its oversight of covered entities’ compliance with the HIPAA Privacy Standards. Department of Health and Human Services Office of the Inspector General. 2016 Jul. https://oig.hhs.gov/oei/reports/oei-09-10-00510.pdf.

Page: 1 2 | Single Page
Share: 

Filed under:Legal UpdatesPractice SupportProfessional Topics Tagged with:HIPAA auditHIPAA complianceOffice for Civil Rights

Related Articles

    Phase 2 of HIPAA Audit Program Launches

    May 13, 2016

    With many competing priorities facing physician practices, HIPAA compliance and security is not a topic that usually makes it to the top of the list. But this is not the case with the Department of Health and Human Services’ Office for Civil Rights (OCR), because it has initiated a new phase of audits of physician…

    HIPAA Audit Activities Increase in 2016

    August 17, 2016

    In the coming months, rheumatologists may want to pay particular attention to their email inboxes. By the end of the year, the Department of Health and Human Services (HHS) Office for Civil Rights (OCR) will complete stage I, phase II of a series of desk and on-site audits designed to assess providers and their business…

    Legal Updates: Healthcare Data Privacy and Security under HIPAA

    May 1, 2014

    Maintaining the privacy of healthcare data Is paramount, and a breach can cost you hundreds of thousands of dollars

    Preparing for Increased HIPAA Audits Among Smaller Rheumatology Providers

    May 13, 2016

    Recent enforcement activities of the Department of Health and Human Services’ Office for Civil Rights (OCR) have shown an increase in fines and penalties assessed against smaller providers for failing to comply with the privacy, security and breach notification requirements of the Health Insurance Portability and Accountability Act (HIPAA). Historically, OCR has focused on larger…

  • About Us
  • Meet the Editors
  • Issue Archives
  • Contribute
  • Advertise
  • Contact Us
  • Copyright © 2025 by John Wiley & Sons, Inc. All rights reserved, including rights for text and data mining and training of artificial technologies or similar technologies. ISSN 1931-3268 (print). ISSN 1931-3209 (online).
  • DEI Statement
  • Privacy Policy
  • Terms of Use
  • Cookie Preferences