Healthcare DIVE November 26, 2024
Emily Olsen

The HHS’ Office for Civil Rights’ audit program was too narrow in scope to effectively assess data protections and reduce cyber risks in the healthcare sector, according to the report.

Dive Brief:

  • The Office for Civil Rights, which oversees HIPAA enforcement, should improve its program for auditing compliance with the privacy and security law, according to a report published Monday by the HHS’ Office of Inspector General.
  • Though the OCR fulfilled its requirements to conduct periodic HIPAA audits, the program was too narrow in scope to effectively assess organizations’ protections for health data and reduce risks, according to the OIG.
  • Overall, the audits weren’t effective at improving cybersecurity at healthcare companies and their business associates — a...

Today's Sponsors

LEK
ZeOmega

Today's Sponsor

LEK

 
Topics: Cybersecurity, Govt Agencies, HIPAA, OIG, Survey / Study, Technology, Trends
OCR's HIPAA audit program lacked mettle, OIG says
HIPAA for Non-MDs: An Easy Guide to Compliance Regulations
More HIPAA Access Issues
Addressing The HIPAA Blind Spot For Crisis Pregnancy Centers
6 Important Takeaways for HIPAA Covered Entities and Business Associates from 2024 NIST HHS OCR Conference

Share This Article