decisionhealth Newsletters, Part B News - 2013 Issue 1 (January)
HIPAA ‘mega-rule’ could mean hefty costs for providers forced to report more breaches
Subscribe or sign in to view the full article.
Article Overview
This article covers HHS’s HIPAA mega-rule and its impact on breach notification, privacy, security, enforcement, and related compliance planning for providers. It is aimed at healthcare organizations, compliance staff, and billing/coding professionals who need to understand the operational and financial implications of reporting suspected breaches and documenting risk assessments. The article also discusses preparation steps, timing of the rule, and the broader compliance burden created by the updated standards.
Why This Topic Matters
Healthcare providers and business offices need to understand when breach reporting may be required, how the revised HIPAA framework shifts documentation responsibility, and what operational changes may be needed to reduce compliance risk and cost.
Article Sections
-
Compliance
Introduces the HIPAA mega-rule and frames its overall impact on provider compliance obligations and timing.
-
Breach notification requirements
Summarizes the updated breach-notification framework and the shift in responsibility for evaluating whether notification is necessary.
-
Breach notification four-part risk assessment process
Outlines the broad factors used in the new risk-assessment process for evaluating a potential breach.
-
Cost of complying with new standards
Discusses the operational and financial burden associated with the revised breach-notification standards.
-
Tips to prepare for new standards
Provides general preparation guidance for organizations reviewing their breach-response workflows and documentation practices.
What You Will Learn
- The scope of the HIPAA mega-rule and its compliance timeline
- How breach-notification evaluation has changed under the updated framework
- What kinds of operational and documentation burdens the rule may create
- How organizations can prepare their breach-response processes for the new standards
Who Should Read This
- Healthcare providers
- Practice managers
- Compliance officers
- Privacy and security staff
- Medical office administrators
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com