The Office for Civil Rights in the Department of Health and Human Services has launched a Web page listing covered entities that have reported breaches of unsecured protected health information affecting more than 500 individuals.

The posting is mandated under the HITECH Act, and comes as the grace period for enforcement of the data breach notification rules has passed. Breach notification rules from HHS and the Federal Trade Commission (covering personal health records vendors) have been in effect since late September. Officials at both agencies used enforcement discretion to not impose sanctions for failure to report breaches until Feb. 22.

Register or login for access to this item and much more

All Health Data Management content is archived after seven days.

Community members receive:
  • All recent and archived articles
  • Conference offers and updates
  • A full menu of enewsletter options
  • Web seminars, white papers, ebooks

Don't have an account? Register for Free Unlimited Access