HIPAA violation costs county almost $2 per resident!

Skagit County, Washington, has agreed to settle potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy, Security, and Breach Notification Rules.  Skagit County agreed to a $215,000 monetary settlement and to work closely with the Department of Health and Human Services (HHS) to correct deficiencies in its HIPAA compliance program. Skagit County is located in Northwest Washington, and is home to approximately 118,000 residents. The Skagit County Public Health Department provides essential services to many individuals who would otherwise not be able to afford health care.
OCR opened an investigation of Skagit County upon receiving a breach report that money receipts with electronic protected health information (ePHI) of seven individuals were accessed by unknown parties after the ePHI had been inadvertently moved to a publicly accessible server maintained by the County.  OCR’s investigation revealed a broader exposure of protected health information involved in the incident, which included the ePHI of 1,581 individuals. Many of the accessible files involved sensitive information, including protected health information concerning the testing and treatment of infectious diseases.  OCR’s investigation further uncovered general and widespread non-compliance by Skagit County with the HIPAA Privacy, Security, and Breach Notification Rules.
Skagit County continues to cooperate with OCR through a corrective action plan to ensure it has in place written policies and procedures, documentation requirements, training, and other measures to comply with the HIPAA Rules.  This corrective action plan also requires Skagit County to provide regular status reports to OCR.
The Press Release can be found at: http://www.hhs.gov/news/press/2014pres/03/20140307a.html

The Resolution Agreement can be found on the OCR website at: http://www.hhs.gov/ocr/privacy/hipaa/enforcement/examples/skagit-agreement.html<https://webmail.hhs.gov/owa/redir.aspx?C=USCWt1VExke9TQk7b-PWImMyA3OmDdEIG7TDBXsE89FRZbKsU755jhGRKTgvvdRPNkyMWXt4EhM.&URL=http%3a%2f%2fwww.hhs.gov%2focr%2fprivacy%2fhipaa%2fenforcement%2fexamples%2fskagit-agreement.html

About The Author

Mr. Slocum is a senior member of the law firm of Slocum & Boddie, P.C., specializing in contract law, corporate issues, federal procurement and grant law, and executive estate planning. He has more than twenty years of experience and has represented hundreds of small businesses, universities, non-profit organizations, and even agencies of the federal Government. In addition, he has advised and trained universities, federal agencies and private businesses on management, mergers and acquisitions, contract negotiation, price and cost issues, contract administration, and other topics.

1 Comment

  1. bookmarked!!, I love your site!|

Leave A Reply