Medicare Compliance & Reimbursement - 2015 Issue 17
Patient Privacy: HIPAA Compliance Isn't Always Foolproof
Subscribe or sign in to view the full article.
Article Overview
This article reviews a high-profile healthcare data breach involving a health insurer and explains why compliance with HIPAA Security Rule requirements may still leave organizations exposed to cyber threats. It is aimed at healthcare, privacy, compliance, and security professionals who need to understand the gap between baseline regulatory compliance and stronger real-world safeguards. The piece also outlines general categories of risk-reduction measures discussed by security experts, including authentication, encryption, phishing defense, network design, and monitoring.
Why This Topic Matters
It helps readers understand that meeting HIPAA requirements does not necessarily eliminate breach risk, and that additional security planning may be needed to better protect patient and member information.
Article Sections
-
What Happened in Yet Another ‘Sophisticated Cyberattack’
Summarizes the reported breach, the affected organization, the types of information involved, and the response actions described in the article.
-
Why Recent Audit Didn’t Raise Big Red Flags
Describes the prior audit context and the article’s discussion of how compliance findings related to the organization’s security posture.
-
What to Do When HIPAA Compliance Isn’t Enough
Presents the article’s broader security discussion and the categories of protective measures suggested by security experts.
What You Will Learn
- How the article frames the relationship between HIPAA compliance and breach risk
- What broad categories of cybersecurity safeguards are discussed
- Why audit findings may not fully reflect exposure to sophisticated attacks
- How the article positions healthcare organizations’ responsibilities for security preparedness
Who Should Read This
- Healthcare compliance professionals
- HIPAA privacy and security officers
- Health information management professionals
- Healthcare IT and cybersecurity teams
- Practice administrators and risk managers
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com