1 / 1100%
The first article I chose is Failed to encrypt mobile devices leads to 3 million HIPAA
settlement on the HHS website. This article examines a data breach at the University of
Rochester Medical Center (URMC) that resulted in a violation of HIPAA privacy and
security rules. The data breach occurred as a result of the uninvited loss of a flash drive
and the theft of an all fan encrypted laptop. Because of the loss of the flash drive and the
theft of the laptop, Phi off patients were released without permission. OCR's investigation
revealed that you, as MC, failed to conduct and encrypt a comprehensive risk assessment.
Encrypted and decrypted electronically protected health information E Phi using device
and media controls and a machine. When doing so was reasonable and appropriate. This
was not the first time ORC had looked into URMC. URMC had lost another in an
unscripted flash drive in 2010. Despite the previous investigation and identification of
unencrypted devices, URMC continues to use unencrypted devices. Using unencrypted
devices increases the risk of Phi being compromised. Your RMC was aware of the
problem within their organization but failed to address it, resulting in the current PHI
breach. They were held fully responsible for the breach of PHI due to their failure to fix
the problem. You RMC agreed to pay the OCR $3 million in exchange for two years of
monitoring their HIPAA compliance.
The second article I discovered on the AAP news website is Health care providers are
vulnerable to cyberattacks during the COVID-19 pandemic. With the current state of the
world with the COVID-19, health care providers have become even more reliant on
technology and digital tools. As a result, the likelihood of data breaches increasing. There
have been reports of cybercriminals planting malware on computers that access non-secure
websites using certain types of documents, such as corona virus coverage maps. There
have also been reports of targeted email scams promising personal protective equipment
and the pandemic of COVID-19. The article then discusses some best practices that can be
used to assist in the security of systems. They discuss general security, email security, and
web conferencing security.
Failure to encrypt mobile devices leads to $3 million hipaa settlement: Guidance portal.
Failure to Encrypt Mobile Devices Leads to $3 Million HIPAA Settlement | Guidance
Portal. (n.d.). Retrieved June 2, 2022, from
https://www.hhs.gov/guidance/document/failure-encrypt-mobile-devices-leads-3-million-
hipaa-
settlement#:~:text=The%20University%20of%20Rochester%20Medical,and%20Accounta
bility%20Act%20(HIPAA)%20Privacy.
Publications.aap.org. (n.d.). Retrieved June 2, 2022, from
https://publications.aap.org/aapnews/news/10884?autologincheck=redirected.
Students also viewed