Healthcare Cybersecurity News

QI’s Experts talk Cyber, HIPAA Compliance, and everything you need to know to keep your patients safe.

Creating a Complete Program

Jun 12, 2018 | PHI Security

Over the last several weeks we have discussed a wide variety of things you need to do maintain the privacy of Protected Health Information (“PHI”) and..

What To Do If You Must Keep PHI On Mobile Devices

Jun 12, 2018 | PHI Security

The decision to allow mobile devices to access and/or store PHI is a critical one. The ease of access to the information must be balanced with the..

Incident Investigation: PHI Mishandeling

Jun 12, 2018 | PHI Security

No one likes to dwell on PHI being mishandled or inappropriately accessed, but it is important to have a plan if the situation does occur. Incidents..

Patient Access To PHI Remains A Challenge

May 25, 2018 | PHI Security

A recent study by the U.S. Government Accountability Office showed that patients still face confusion, high fees, and delays in getting access to..

Risk and Management: Making The Case

May 02, 2018 | PHI Security

We spend significant time discussing important items to do and things to consider in securing Protected Health Information (“PHI”). This assumes one..

Granting and Revoking Access to PHI

Apr 19, 2018 | PHI Security

Effective access control is a fundamental part of securing Protected Health Information (“PHI”). Access control is essentially giving access when and..

What To Do With Unexecuted Business Associate Agreement

Transferring PHI without an executed Business Associate Agreement ("BAA") has become a point of intense focus for federal regulators, and one from..

Storing PHI Offshore

A fundamental aspect of risk management and HIPAA compliance is knowing where the Protected Health Information (“PHI”) you create, store, maintain, or..

How To Properly Dispose of ePHI

The proper destruction of electronic Protected Health Information (“ePHI”) is often overlooked and, if done improperly, can lead to impermissible..

When an Initial Attack May Be Just the Tip of the Iceberg

Recent events indicate what we have long suspected; attackers often target the same organizations again after a successful attack. This exact scenario..