decisionhealth Newsletters, Part B News - 2014 Issue 8 (August)
OCR gears up for fall audit season, looks for HIPAA noncompliance
Subscribe or sign in to view the full article.
Article Overview
This article is about HHS Office for Civil Rights (OCR) HIPAA audit activity, the likelihood of future audits, and the kinds of privacy and security compliance concerns that practices should be aware of. It is intended for healthcare organizations, compliance staff, and practice managers who want a general overview of audit readiness, privacy protections, breach response planning, and documentation expectations. The discussion focuses on broad regulatory and operational themes rather than detailed coding content.
Why This Topic Matters
Understanding OCR audit trends and HIPAA compliance focus areas helps covered entities evaluate their privacy and security programs before an audit or investigation occurs. The article is useful for organizations that need to assess readiness, reduce compliance risk, and maintain documentation of their HIPAA-related policies and actions.
Article Sections
-
Audit outlook and OCR activity
Summarizes the current audit environment and the agencies involved. It describes the general scope of covered entities being reviewed and the broad compliance areas under scrutiny.
-
Practices unlikely to be in compliance
Discusses the overall compliance picture and the reported rate of organizations found compliant in an earlier audit round. It highlights why many practices may still need to review their HIPAA programs.
-
Comply now, prepare for future audits
Outlines broad readiness topics such as access monitoring, safeguarding patient information, breach response planning, and documentation. It focuses on general areas organizations may want to assess before future audits.
What You Will Learn
- How OCR audit activity is affecting healthcare organizations
- What broad HIPAA compliance areas are commonly reviewed
- Why breach response planning and documentation matter for audit readiness
- Which general privacy and security practices are emphasized for covered entities
Who Should Read This
- Healthcare providers
- Practice managers
- Compliance officers
- Privacy and security staff
- Medical office administrators
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com