Sinopse
HelpMeWithHIPAA.com is a collaboration between Kardon Compliance founder, Donna Grindle, and HIPAAforMSPs.com founder, David Sims. Our mission is to share our Privacy and Security knowledge with those who are required to understand, implement, and manage the complex Privacy and Security requirements of HIPAA compliance.Our work with CEs and BAs inspired us to launch the service to provide information about the complex requirements of HIPAA in a relaxed manner without using too much legalese or geek speak. As the podcasts programs progress we will cover topics about that include sorting through the requirements as well as real world examples of the procedures used, both good and bad.Join us as we do our best to create a show where HIPAA and humor collide!
Episódios
-
False Claims Settlement - No Risk Analysis - Ep 210
28/06/2019 Duração: 44minFalse claims settlements over meaningful use money have popped into the news again. The provider was sued by whistleblowers and the DOJ for not doing a security risk analysis but attesting to one to get the meaningful use payments anyway. There is whistleblower's angle in this case which makes it even more interesting. If you know anyone that has received any meaningful use money they should check out this episode! More info at HelpMeWithHIPAA.com/210
-
Specific BA Liabilities - Ep 209
21/06/2019 Duração: 56minThis new BA guidance from OCR is important because it defines clearly all the things we hear misstated over and over. Several of our Top 10 Wrong HIPAA Statements episode are addressed in the simple ten item list. Today we will discuss the announcement and what does that mean to BAs and their privacy and security programs. More info at HelpMeWithHIPAA.com/209
-
Vendor Pays $1 Million Plus 5 Yr Action Plans - Ep 208
14/06/2019 Duração: 52minThe multi-state settlement with Medical Informatics Engineering makes the OCR settlement seem like a cake walk. The vendor agrees to pay OCR $100,000 with a standard 2-year corrective action plan. The states get $900,000 plus 5 years of very specific corrective action requirements. Vendors need to pay attention to this case and take appropriate action now. More info at HelpMeWithHIPAA.com/208
-
How do you sanction? - Ep 207
07/06/2019 Duração: 57minSanction policies are often vague or even overlooked in many privacy and security programs. The whole point of a sanction policy is to list out the consequences for failure to follow our policies and procedures. With a vague or non-existent policy consequences aren’t clear which leads to a lack of concern for failure to follow the policy in the first place. You will never build a culture that worries about protecting information without it being clear that is a requirement for inclusion in our culture. How do you sanction? More at HelpMeWithHIPAA.com/207
-
Maturity Assessments - Ep 206
31/05/2019 Duração: 43minMaturity is something we expect from respected folks or grown folks but what about your privacy and security program, do you check it’s maturity? You have all of these plans, policies, procedures, and training but is it actually meeting your needs? Time to talk maturity assessments. More at HelpMeWithHIPAA.com/206
-
No PHI exposed. Really? - Ep 205
24/05/2019 Duração: 47minThe latest HIPAA violation settlement with OCR was announced recently. Ironically, the settlement with Touchstone Medical Imaging was for $3,000,000 and announced just after the reduction of maximum penalties was announced by HHS. Just how bad was this violation to get hit with this level of penalties plus the 2-year corrective action plan? More at HelpMeWithHIPAA.com/205
-
HIPAA Penalties Dropping - Ep 204
17/05/2019 Duração: 50minHeadlines everywhere are telling us all that the HIPAA penalties are being “slashed” or “capped” or “reduced”. What is the real story and what does it mean to the rest of us? Great time to talk about what you should consider if you think you will be facing any HIPAA penalties. More info at HelpMeWithHIPAA.com/204
-
3 Supply Chain Security Stories - Ep 203
10/05/2019 Duração: 50minWe have talked many times about vetting business associates. When people talk about supply chain security it isn’t just the business associate you contract with you have to worry about. It is all the vendors that they use. Today we are going to review 3 supply chain stories that explain how complex your supply chain unbeknownst to you. More at HelpMeWithHIPAA.com/203
-
Smile You Are On Camera - Ep 202
03/05/2019 Duração: 41minWe are all being watched. Cameras are everywhere today. With the advent of dashcams, home security camera systems, CCTV in cities and businesses we are caught on camera somewhere every day. What does that mean when you have privacy concerns to address like, I don’t know, HIPAA? More info HelpMeWithHIPAA.com/202
-
Alexa and HIPAA Round 2 - Ep 201
26/04/2019 Duração: 47minWe discussed this whole Alexa and HIPAA thing before. This week came the big announcement from Amazon that had headlines telling us that Alexa is HIPAA compliant with some slick new medical skills. Time to talk about her again. Let’s see what the announcement really said. While we are at it we will also look into the story that Amazon also has thousands of people sitting around listening to Alexa requests all day long. More info at HelpMeWithHIPAA.com/201
-
We are shutting it down - Ep 200
19/04/2019 Duração: 53minIt is hard to believe we are recording our 200th episode. Some might even say it is close to a miracle that David and Donna could stay focused on one thing for this long. Probably very true. Our passion for what we do here is more than most people would think. We truly do believe that tagline we use in every episode “HIPAA is not about compliance; it’s about patient care.”. More at HelpMeWithHIPAA.com/200
-
Medical Record Release Fees - Ep 199
12/04/2019 Duração: 57minMedical record release is becoming a heated topic. There are several parties involved in the discussion. Of course, the patient and their rights to the medical record comes first. Then, you have the providers trying to meet their obligations to supply the records. But, there are also lawyers and medical record release of information companies and, of course, OCR involved. Today we will try to make some sense out of the mess. More at HelpMeWithHIPAA.com/199
-
News From 2019 HIPAA Summit - Ep 198
05/04/2019 Duração: 59minWe come bearing news from the 2019 HIPAA Summit, today. Officially, it was The 28th Annual National HIPAA Summit. The event happened in March from Washington, DC. Thankfully, they have offered a webcast option along with onsite attendance for years. I sat in on the HIPAA Summit sessions again via webcast and there is much to share. For more info go to HelpMeWithHIPAA.com/198
-
Real Hacker Stories On DarkNet Diaries - Ep 197
29/03/2019 Duração: 51minWe are fans of the podcast DarkNet Diaries, “True stories from the dark side of the Internet”. As fans, it explains why we are excited to have Jack Rhysider, the host of DarkNet Diaries, on the podcast with us today. Prepare to be surprised by some of these real hacker stories. More info at HelpMeWithHIPAA.com/197
-
2 Third Party Breach Stories - Ep 196
22/03/2019 Duração: 52minIt is important to think about what could happen if one of your vendors is the reason you become another business listed in data breach statistics. Third-party data breaches can impact your business even when it doesn't involve your data. These stories show how many different angles you should use when reviewing their impact on your business. More info at HelpMeWithHIPAA.com/196
-
2019 Cybersecurity Coverage Options with John Miller - Ep 195
15/03/2019 Duração: 55minJohn Miller, CEO of Sterling Seacrest Partners, was with us back at the beginning of our podcast experiment. Over 100 episodes ago, in February 2017 on episode 89, we first talked with him about cyber insurance policies. Today we’ve brought John back to discuss how cyber insurance coverage has changed over the last two years. More info at HelpMeWithHIPAA.com/195
-
Ransomware Is Getting Scarier - Ep 194
08/03/2019 Duração: 45minRansomware is getting scarier even if you don’t know it yet. It appears that the lull we enjoyed through the last bit of 2018 may be over. Not only are the incidents increasing but the mechanisms and ransom demands are changing. Yes, no matter how we looked at it we had to say ransomware is getting scarier than it has been since the beginning of 2018. More info at HelpMeWithHIPAA.com/194
-
Cybersecurity Roles Are Tough - Ep 193
01/03/2019 Duração: 52minThere are several recent studies and articles that discuss the world from the viewpoint of the people who have the cybersecurity roles in your IT staff. Their days are packed just trying to keep everything working and secure. As much as we have been after IT folks lately it is important to note that many times they take care of problems that you never even see. Today we are taking the time to remember that cybersecurity roles are tough. Really all IT roles involved in protecting our valuable information resources are tough jobs. It takes everyone to defend our data so your cybersecurity team needs your support! More details at HelpMeWithHIPAA.com/193
-
Email is Dangerous - Ep 192
22/02/2019 Duração: 46minIf you spend time every day worrying about the risks in using email, you might be a security professional. Email is very risky even if you don’t realize it. Imagine that you are just walking along a bridge safely. What you don’t realize is the pit that is just a few inches below the bridge is filled with snakes, gators, and poison spikes. One small mistake could mean - dum, dah, dum, dum, duuummmm. Email is dangerous, seriously it is. More info at HelpMeWithHIPAA.com/192
-
3 million reasons IT must be audited - Ep 191
15/02/2019 Duração: 37minOCR got to toot its own horn in a big press release on Feb 7. Not only did they announce another settlement that happened in December that we had not heard about but they also recapped the record-setting year they had with enforcement cases in 2018. Time to learn from other's mistakes. More info at HelpMeWithHIPAA.com/191