<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>HIPAA Information &#187; ARRA &amp; HITECH Act</title>
	<atom:link href="http://www.hipaastore.com/info/category/arra-hitech-act/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.hipaastore.com/info</link>
	<description>HIPAA Training, Compliance &#38; Awareness</description>
	<lastBuildDate>Tue, 29 Sep 2009 07:52:12 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>HIPAA at Yosemite National Park!</title>
		<link>http://www.hipaastore.com/info/hipaa-yosemite-national-park/</link>
		<comments>http://www.hipaastore.com/info/hipaa-yosemite-national-park/#comments</comments>
		<pubDate>Sun, 13 Sep 2009 19:31:07 +0000</pubDate>
		<dc:creator>Abner</dc:creator>
				<category><![CDATA[ARRA & HITECH Act]]></category>
		<category><![CDATA[HIPAA (General)]]></category>
		<category><![CDATA[American Recovery and Reinvestment Act]]></category>
		<category><![CDATA[ARRA]]></category>
		<category><![CDATA[Yosemite]]></category>

		<guid isPermaLink="false">http://www.hipaastore.com/info/?p=104</guid>
		<description><![CDATA[There, in the wilds of Yosemite, was the ARRA, funding road and infrastructure improvements to one our greatest national parks! So the next time somebody asks you what the ARRA has achieved, point to HIPAA expansion, breach notifications, tougher sanctions... and yes, Yosemite!


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p><strong>Okay, it&#8217;s almost true&#8230; damn close anyway!</strong></p>
<p>Yours truly took a long needed mini-vacation last weekend to <a title="Yosemite National Park official website" href="http://www.nps.gov/Yose/index.htm" target="_blank">Yosemite National Park</a> &#8211; my first-ever visit to spectacular Yosemite. My 55th birthday was last weekend, and the idea was to get away from the pressures, the meetings, the calls &#8212; away from HIPAA &#8212; for a few days to clear my head.</p>
<p>So there I was, driving into Yosemite valley in the rental car, awestruck at the raw beauty, the magnificence, the splendor&#8230; <a title="The official ARRA website" href="http://www.recovery.gov/" target="_blank"><strong>the ARRA (American Recovery and Reinvestment Act)?</strong></a></p>
<p>Yes readers, in the midst of the Yosemite wilderness, imagine my surprise when I rounded a curve in the steep road and saw this&#8230;</p>
<div id="attachment_109" class="wp-caption aligncenter" style="width: 410px"><img class="size-full wp-image-109" title="ARRA &amp; Yosemite 03" src="http://www.hipaastore.com/info/wp-content/uploads/2009/09/ARRA-Yosemite-03.jpg" alt="ARRA &amp; Yosemite 03" width="400" height="300" /><p class="wp-caption-text">ARRA at Work in Yosemite</p></div>
<p>I was dramatically reminded, as people in the HIPAA world easily forget, that the ARRA is accomplishing much more than expanding HIPAA. There, in the wilds of Yosemite, was the <strong>ARRA, funding road and infrastructure improvements to one our greatest national parks</strong>!</p>
<p>So the next time somebody asks you what the ARRA has achieved, point to HIPAA expansion, breach notifications, tougher sanctions&#8230; and yes, Yosemite!</p>


<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.hipaastore.com/info/hipaa-yosemite-national-park/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#8216;Leaky&#8217; Online Networks &#8211; Where&#8217;s Your PHI?</title>
		<link>http://www.hipaastore.com/info/online-networks-phi/</link>
		<comments>http://www.hipaastore.com/info/online-networks-phi/#comments</comments>
		<pubDate>Sun, 06 Sep 2009 19:20:25 +0000</pubDate>
		<dc:creator>Abner</dc:creator>
				<category><![CDATA[ARRA & HITECH Act]]></category>
		<category><![CDATA[Breaches & Losses]]></category>
		<category><![CDATA[HIPAA (General)]]></category>
		<category><![CDATA[Breaches]]></category>
		<category><![CDATA[PHI]]></category>
		<category><![CDATA[social networks]]></category>
		<category><![CDATA[threats]]></category>

		<guid isPermaLink="false">http://www.hipaastore.com/info/?p=91</guid>
		<description><![CDATA[While the health care community has been busy caring for patients and trying to protect PHI (Protected Health Information), crooks have been busy finding new ways to get their hands on it.  And as usual, technology has opened helpful new channels faster than HIPAA entities can cope.


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>While the health care community has been busy caring for patients and trying to protect <strong>PHI (Protected Health Information)</strong>, crooks have been busy finding new ways to get their hands on it.  And as usual, technology has opened helpful new channels faster than HIPAA entities can cope.</p>
<p>Various types of online social networks are apparently the &#8220;next big thing&#8221; in relationships, and they are changing the nature of human interactions. But social networks also pose a major threat to the PHI<strong> </strong>Covered Entities (CEs) and Business Associates (BAs) are entrusted with.</p>
<h2>Peer-to-Peer Networks Expose PHI</h2>
<p>Researchers at Dartmouth College <a title="Dartmouth Researchers Probe P2P Networks" href="http://www.scmagazineus.com/Medical-data-leakage-rampant-on-P2P-networks/article/127216/" target="_blank">probed peer-to-peer (P2P) networks</a> recently to try and determine the extent to which private medical data is exposed on these networks. Over a two-week period, what they found was shocking&#8230;</p>
<ul>
<li>A spreadsheet from an AIDS clinic with 232 client names,including Social Security numbers, addresses and birth dates.</li>
<li>Databases for a hospital system that contained detailed information on more than 20,000 patients, including Social Security numbers, contact details, and insurance records, along with diagnosis information.</li>
<li>A 1,718-page document from a medical testing laboratory containing patient Social Security numbers, insurance information, and treatment codes for thousands of patients.</li>
<li>More than 350 megabytes of sensitive patient reports from a group of anesthesiologists.</li>
</ul>
<p><strong>According to the article above&#8230;</strong></p>
<blockquote><p>In all, researchers found hundreds of documents revealing sensitive information on tens of thousands of patients.</p></blockquote>
<p><a title="Dartmouth PHI Report Download" href="http://www.google.com/url?sa=t&amp;source=web&amp;ct=res&amp;cd=1&amp;url=http%3A%2F%2Ffc09.ifca.ai%2Fpapers%2F54_Data_Hemorrhages.pdf&amp;ei=dsmWSpiTJpCINsyLoPkN&amp;rct=j&amp;q=%E2%80%9CData+Hemorrhages+in+the+Health+Care+Sector%E2%80%9D&amp;usg=AFQjCNHtK73LtQM0K860p-q0CHcaUk2hUg" target="_blank">The full Dartmouth report</a> is also available as a PDF download (858 Kb).</p>
<h3>Personal Social Networks Are Another PHI Threat</h3>
<p>P2P networks are different creatures than what are sometimes called &#8220;personal social networks&#8221; (PSNs). Personal social networks include sites like MySpace and Facebook, where people go (usually) to meet and fraternize with other like-minded people.</p>
<p>Exposure of PHI on personal social networks has already been identified as a growing problem. Increasingly, people are use their MySpace, Facebook, and other social network pages to vent their gripes about their doctors and their medical care.</p>
<p><strong>So here are some critical questions you should consider&#8230;</strong></p>
<ul>
<li>Do you know if you or your practice has been mentioned (positively or negatively) in any of your patients&#8217; social network pages?</li>
<li>What would you do if you found your patients&#8217; PHI exposed on such sites? What could you do?</li>
<li>How extensively are your employees using social networks? Are patients being discussed? Is any PHI being disclosed?</li>
<li>Do you have a written policy regarding personal social networks, P2P networks, and similar online social channels?</li>
</ul>
<p>It&#8217;s later than you think on this front. Your patients, vendors, and the crooks out there are likely farther along than you are in dealing with these issues. The HIPAA implications are enormous, especially with the <a title="ARRA's new Breach Notification Rule" href="http://www.hhs.gov/ocr/privacy/hipaa/understanding/coveredentities/breachnotificationifr.html" target="_blank">ARRA&#8217;s new Breach Notification rule</a> kicking in shortly.</p>
<p><strong>Overall, the most important question you need to answer is:</strong></p>
<h3 style="padding-left: 30px;"><span style="color: #0000ff;">Where&#8217;s <span style="text-decoration: underline;">your</span> PHI?</span></h3>


<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.hipaastore.com/info/online-networks-phi/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
