11 Ways HIPAA Could Be Violated in Your Office
Snooping through the medical records of family, friends, neighbors, co-workers, and celebrities is one of the most common HIPAA violations committed by employees.
Posted in Risk Management on Tuesday, November 12, 2019
Snooping on the medical and healthcare records of others is one of the most common ways HIPAA is violated, but it's far from the only way. The following HIPAA violations could also lead to disciplinary action against an employee:
- Accessing information not pertinent to their job
- Sharing computer usernames, passwords and logins
- Allowing someone to access or view sensitive information by leaving a computer unattended
- Sharing sensitive information with unauthorized people
- Copying sensitive information without permission to do so
- Discussing sensitive information where other, unauthorized people could overhear
- Discussing sensitive information with people who are unauthorized
- Improper disposal of records
- Unauthorized release of information to others, including close family members
- Falling to encrypt portable devices, allowing inappropriate access to HIPAA-protected information
- Failure to issue notifications of security breaches in a timely manner (no later than 60 days) and without unnecessary delay
What to Do if HIPAA Violations Occur
- First violation: Verbal/written reprimand, retrain on your privacy/security policies
- Second violation: Written reprimand, possible suspension, retrain on privacy/security policies
- Third Violation: Termination, civil or criminal penalties as provided under HIPAA or other applicable Federal/State Law
Depending on the severity of the violation any single act may result in disciplinary action up to and including termination.
For more information on this or other risk management related topics visit our Risk Management section.