hipaa presentation

4
HIPAA Securing your Protected Health Information (PHI)

Upload: felix-yanko

Post on 17-Mar-2016

214 views

Category:

Documents


2 download

DESCRIPTION

Securing your Protected Health Information (PHI)

TRANSCRIPT

Page 1: HIPAA Presentation

HIPAASecuring your Protected

Health Information (PHI)

Page 2: HIPAA Presentation

HIPAA Encryption Requirements

PHI at Rest

Server

Database

Desktop

Laptop PHI at Endpoint

Flash Drives

CD/DVD

Fax/Print

Cell Phone

PHI in Motion

EmailIM / Chat

Web

Network

Unsecure protected health information

(PHI) is essentially any PHI that is not encrypted or destroyed

As long as PHI is not encrypted, it is considered unsecured

Page 3: HIPAA Presentation

Penalties & Recent Data Breaches

7/26/2013 – PA – 19,547 recordsDelta Dental of Pennsylvania

3/18/2013 – OH – 5,388 recordsComfort Dental

1/3/2013 – MD – 6,400 recordsRichard B. Love, D.D.S.

12/2/2012 – OH – 850 recordsWesterville Dental Center

9/19/2012 – GA – 1,306 recordsJames M. McGee, D.M.D, P.C.

4/22/2012 – NC – 9,953 recordsBruce G. Peller, D.M.D, P.A.

Average cost for breaches is $73 per record

with total 658 breaches reported since 2009

HIPAA

Violation

Minimum

Penalty

Maximum

Penalty

Individual did not know

(and by exercising

reasonable diligence

would not have

known) that he/she

violated HIPAA

$100 per violation, with

an annual maximum of

$25,000 for repeat

violations

$50,000 per violation,

with an annual

maximum of $1.5

million

HIPAA violation due to

reasonable cause and

not due to willful

neglect

$1,000 per violation,

with an annual

maximum of $100,000

for repeat violations

$50,000 per violation,

with an annual

maximum of $1.5

million

HIPAA violation due to

willful neglect but

violation is corrected

within the required time

period

$10,000 per violation,

with an annual

maximum of $250,000

for repeat violations

$50,000 per violation,

with an annual

maximum of $1.5

million

HIPAA violation is due

to willful neglect and is

not corrected

$50,000 per violation,

with an annual

maximum of $1.5

million

$50,000 per violation,

with an annual

maximum of $1.5

million

If multiple HIPAA violations occur, penalties could surpass $1.5 million.

Page 4: HIPAA Presentation

MedIT HIPAA Security Package MS Exchange Email with Spam Protection & Archiving

HIPAA Compliant Encrypted Mailbox

Server / Desktop Encryption & Cloud Backup

Disaster Recovery & Data Breach Plan

Starting at $150$75 per office per month