By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
SmartData CollectiveSmartData Collective
  • Analytics
    AnalyticsShow More
    football analytics
    The Role of Data Analytics in Football Performance
    9 Min Read
    data Analytics instagram stories
    Data Analytics Helps Marketers Make the Most of Instagram Stories
    15 Min Read
    analyst,women,looking,at,kpi,data,on,computer,screen
    What to Know Before Recruiting an Analyst to Handle Company Data
    6 Min Read
    AI analytics
    AI-Based Analytics Are Changing the Future of Credit Cards
    6 Min Read
    data overload showing data analytics
    How Does Next-Gen SIEM Prevent Data Overload For Security Analysts?
    8 Min Read
  • Big Data
  • BI
  • Exclusive
  • IT
  • Marketing
  • Software
Search
© 2008-23 SmartData Collective. All Rights Reserved.
Reading: HIPAA Violations Cost Health Insurer $1.7 Million: Lessons Learned
Share
Notification Show More
Aa
SmartData CollectiveSmartData Collective
Aa
Search
  • About
  • Help
  • Privacy
Follow US
© 2008-23 SmartData Collective. All Rights Reserved.
SmartData Collective > Data Management > Best Practices > HIPAA Violations Cost Health Insurer $1.7 Million: Lessons Learned
Best PracticesData ManagementITPrivacySecurity

HIPAA Violations Cost Health Insurer $1.7 Million: Lessons Learned

onlinetech
Last updated: 2013/07/20 at 8:00 AM
onlinetech
4 Min Read
SHARE

Reuters reports that WellPoint, Inc., the second largest U.S. health insurer, has reached a $1.7 million settlement with the Dept. of Health and Human Services as result of a data breach that exposed over 600k health records. WellPoint’s online database was found to be problematic for a few different reasons, as outlined in their resolution agreement. Read on for possible technical and strategic security solutions you can employ in your organization to avoid a similar fate:

Reuters reports that WellPoint, Inc., the second largest U.S. health insurer, has reached a $1.7 million settlement with the Dept. of Health and Human Services as result of a data breach that exposed over 600k health records. WellPoint’s online database was found to be problematic for a few different reasons, as outlined in their resolution agreement. Read on for possible technical and strategic security solutions you can employ in your organization to avoid a similar fate:

Problem 1:
Lacking technical safeguards to verify the person or entity seeking access to ePHI (electronic protected health information) in their database.

Solution:
Wherever ePHI exists, technical security services should be employed for authentication and authorization purposes. One way to do this is to keep ePHI on secure servers, in secure, HIPAA compliant data centers, and use two-factor authentication for VPN access. Limited access should be allowed only for certain users with unique IDs.

More Read

HIPAA compliant fax

Data Security Considerations Pertaining to HIPAA Fax

Data Analytics Solutions To HIPAA Compliance During Quarantine
HIPAA Breach Lessons Learned
HIPAA in a HITECH World: HIPAA Violations on the Rise
Three Healthcare IT Trends for 2013

Two-Factor Authentication

Problem 2:
Inadequate policies and procedures authorizing access to their online application database.

Solution:
For the HIPAA Security Rule, policies and procedures are key to maintaining administrative security within a healthcare or business associate organization. Not only should your organization develop policies, but your risk management officer should also conduct staff training and enforce the policies regularly.

Problem 3:
Failed to perform an appropriate technical evaluation in response to a software upgrade to its IT systems.

Solution:
The HHS press release cautions healthcare organizations to have safeguards in place whenever systems upgrades are conducted by covered entities or their business associates. One way to ensure your business associates or their subcontractors have the technical, administrative and physical security in place to meet HIPAA compliance standards is to check their independent audit report against the OCR HIPAA Audit Protocol.

One example is with a HIPAA hosting provider that may support a HIPAA compliant cloud on which an online application is hosted – don’t trust sensitive patient data with hosting providers that don’t thoroughly understand the regulatory needs of the healthcare industry. Securing ePHI starts with vetting your business associates and subcontractors that store the data.

For more about HIPAA security, read our HIPAA Compliant Hosting white paper.

HIPAA Compliant Hosting White PaperThis white paper explores the impact of HITECH and HIPAA on data centers. It includes a description of a HIPAA compliant data center IT architecture, contractual requirements, benefits and risks of data center outsourcing, and vendor selection criteria.

References:
WellPoint Pays HHS $1.7 Million for Leaving Information Accessible Over Internet

The post HIPAA Violations Cost Health Insurer $1.7 Million: Lessons Learned appeared first on Managed Data Center News.

TAGGED: hipaa, WellPoint
onlinetech July 20, 2013
Share This Article
Facebook Twitter Pinterest LinkedIn
Share

Follow us on Facebook

Latest News

Shutterstock Licensed Photo - 1051059293 | Rawpixel.com
QR Codes Leverage the Benefits of Big Data in Education
Big Data
football analytics
The Role of Data Analytics in Football Performance
Analytics Big Data Exclusive
smart home data
7 Mind-Blowing Ways Smart Homes Use Data to Save Your Money
Big Data
ai low code frameworks
AI Can Help Accelerate Development with Low-Code Frameworks
Artificial Intelligence

Stay Connected

1.2k Followers Like
33.7k Followers Follow
222 Followers Pin

You Might also Like

HIPAA compliant fax
Big Data

Data Security Considerations Pertaining to HIPAA Fax

5 Min Read
data privacy and HIPAA
Security

Data Analytics Solutions To HIPAA Compliance During Quarantine

6 Min Read
HIPPA compliance
Best PracticesBig DataData ManagementInside CompaniesITLocationPolicy and GovernancePrivacySecurity

HIPAA Breach Lessons Learned

5 Min Read
data security breach
Uncategorized

HIPAA in a HITECH World: HIPAA Violations on the Rise

19 Min Read

SmartData Collective is one of the largest & trusted community covering technical content about Big Data, BI, Cloud, Analytics, Artificial Intelligence, IoT & more.

AI and chatbots
Chatbots and SEO: How Can Chatbots Improve Your SEO Ranking?
Artificial Intelligence Chatbots Exclusive
AI chatbots
AI Chatbots Can Help Retailers Convert Live Broadcast Viewers into Sales!
Chatbots

Quick Link

  • About
  • Contact
  • Privacy
Follow US
© 2008-23 SmartData Collective. All Rights Reserved.
Go to mobile version
Welcome Back!

Sign in to your account

Lost your password?