A Multi-Tiered Approach to Risk Monitoring Strategy

A Multi-Tiered Approach to Risk Monitoring Strategy

The HIPAA Security Rule, as well as NIST and other standards, stipulate that a risk analysis and risk management process should be ongoing, and not a once and done process. The Office for Civil Rights “Guidance on Risk Analysis Requirements Under the HIPAA Security...
Lessons From Recent HIPAA Settlements

Lessons From Recent HIPAA Settlements

Covered entities and business associates can learn many important lessons from recent HIPAA settlements, says privacy attorney Iliana Peters. She recently joined a Washington law practice after serving more than a decade as a HIPAA enforcer at the Department of Health...