Reader Question: Don’t Forget BAs Are Liable for HIPAA Breaches, Too

Subscribe or sign in to view the full article.

Note:  The following article synopsis was NOT provided by AAPC. It was created by Find-A-Code/innoviHealth.

Article Overview

This reader Q&A reviews HIPAA breach notification responsibilities and the role of business associates in compliance. It summarizes updated OCR guidance, the kinds of breach-related obligations discussed for covered entities and business associates, and why the topic matters for privacy and compliance teams, practice managers, and healthcare legal counsel.

Why This Topic Matters

Understanding how breach notification responsibilities are divided between covered entities and business associates is important for maintaining HIPAA compliance and avoiding OCR enforcement issues.

Article Sections

  1. Reader Question

    The opening question frames the article’s focus on breach notification responsibilities under HIPAA and the role of business associates.

  2. Answer

    This section summarizes OCR guidance on responsibilities tied to breach notification and discusses the broader compliance context for vendors and business associates.

  3. Reminder

    This section notes additional post-breach administrative responsibilities discussed in OCR guidance for covered entities.

  4. Expert advice

    This section presents compliance-oriented advice about responding to a breach, involving counsel, and following established procedures.

  5. Resource

    This closing section points readers to OCR breach notification guidance resources.

What You Will Learn

  • How HIPAA breach notification responsibilities are discussed for covered entities and business associates
  • What OCR guidance emphasizes about breach-related compliance
  • Why post-breach administrative processes matter for healthcare organizations
  • Where to find related OCR breach notification resources

Who Should Read This

  • Healthcare compliance professionals
  • Practice managers
  • Privacy officers
  • Healthcare attorneys
  • Business associate vendors
  • Covered entities

Subscribe or sign in to view the full article.

Keep pace with evolving Medicare regulations — and onboard your team — with timely analysis of critical updates interpreted in an easy-to-follow, easy-to-apply format. Your subscription to TCI's Medicare Compliance & Reimbursement Alert will equip you to navigate code and guideline changes, CCI edits, and revisions to modifiers, payer policies, the fee schedule, OIG target areas, and more.

  • Current newsletters added each month
  • Fully searchable archives - over 4200 articles
  • ALL years/issues back to 2003 organized by year and issue
  • Codes mentioned in articles are linked to Code Information pages
  • Code Information pages link back to related articles

This feature is currently unavailable for online purchase. For more information, please call 801-770-4203 or Contact Us.

Thank you for choosing Find-A-Code, please Sign In to remove ads.

Aimee- AI -powered coding assistant - Try it now for Free Would you like Aimee - AI
to help you with this?