2021 Medtrade East

No Security and Risk Analysis? Be Prepared to Pay! (Room C208/209)

19 Oct 21
2:15 PM - 3:15 PM

Tracks: Legislative, Regulatory and Legal

The Office of Civil Rights (OCR), the organization responsible for enforcing the HIPAA Privacy and Security Rules, issued healthcare providers and their business associates over $20 Million in fines in the last year. These settlement agreements regularly reveal that fined organizations consistently fail to conduct an enterprise-wide security and risk analysis (SRA). The Security Rule requires covered entities to evaluate risks and vulnerabilities in their environments and to implement policies and procedures to address them. By identifying these potential risks, you can work to mitigate the potential for breaches of PHI and prevent fines for your organization. In this session, Kelly will explain the importance of conducting this analysis and provide tools and resources to ensure your organization is compliant. Time will also be spent learning about other common HIPAA violations and how to avoid them.