
The American Health Information Management Association (AHIMA) recently published an article in the Journal of AHIMA about so-called “small data breaches” reported to Health and Humans Services (HHS) and the Office of Civil Rights (OCR). These are defined as breaches of less than 500 patients and for covered entities, but not for business associates and sub-contractors. Breach reporting is a provision of the HITECH Act, which modified … [Read more...]






