Day Pitney remains committed to providing quality legal counsel, while protecting our clients and employees, and transforming our communities into more just, equal and equitable spaces. For more information, please visit our COVID-19 Resource Center | Racial Justice and Equity Task Force.
Hartford, Conn., December 3, 2015 – Day Pitney LLP is pleased to announce the launch of its HIPAA Self-Assessment Tool ("Tool") to help clients prepare for the second phase of HIPAA audits by the U.S. Department of Health and Human Services' Office for Civil Rights ("OCR") in early 2016. The target for these audits has expanded beyond covered entities (healthcare providers, health plans and clearinghouses) and will also include business associates, such as vendors, suppliers, and consultants.
Because HIPAA noncompliance can be costly and disruptive to an organization, Day Pitney created a simple-to-use automated Tool based on OCR’s audit protocol to help clients assess whether they are in compliance with HIPAA’s security, privacy and breach notification requirements. OCR has engaged a contracted vendor to conduct the audits and OCR has the authority to initiate enforcement actions based on the audit results.
"Companies should really start self-audits as soon as possible to make sure they are in compliance with the HIPAA rules," said James Bowers, Day Pitney director of Compliance Risk Services and former chief compliance officer at Aetna Inc. "The most common deficiency found by the OCR is the failure to conduct a security risk assessment to identify and mitigate risks to Protected Health Information that may be exposed on servers and unencrypted laptops, as well as ancillary risks resulting from unchanged default passwords, outdated security software and inadequate training."
The Tool is designed to be completed by a company’s compliance officer, privacy officer, health information manager, medical records manager or legal counsel. Although the Tool cannot guarantee a successful audit result, any covered entity or business associate can benefit from its use. After reviewing the Tool, one hospital’s general counsel noted that even organizations that have done a lot of work to implement the necessary privacy and security policies can use the Tool to determine whether there are any gaps in their compliance program. For organizations that have not yet completed their HIPAA-readiness, the Tool can be used as a roadmap that shows what needs to be done. A more detailed description of the Tool can be found on Day Pitney’s HIPAA Compliance service page.
"Once a client inputs its information, the Tool provides an automated assessment summary," said Day Pitney Healthcare attorney Susan Huntington. "If there are areas of noncompliance, our team is ready to work with the client to address and correct such areas."
Day Pitney Cybersecurity, Healthcare and Technology (C.H.A.T.) Newsletter - June 2022
Day Pitney Cybersecurity, Healthcare and Technology (C.H.A.T.) Newsletter - June 2022
Day Pitney Cybersecurity, Healthcare and Technology (C.H.A.T.) Newsletter - June 2022
Day Pitney Cybersecurity, Healthcare and Technology (C.H.A.T.) Newsletter - June 2022
Day Pitney Cybersecurity, Healthcare and Technology (C.H.A.T.) Newsletter - June 2022
Day Pitney Press Release
Day Pitney's election of 11 attorneys to partnership nationwide, including two in its New Jersey office was featured in the New Jersey Law Journal's On the Move column.
Susan R. Huntington, partner and chair of Day Pitney's Healthcare practice, is featured in the Hartford Business Journal article, "Pandemic Fuels Physician Consolidation Trend, as CT Struggles to Retain Doctors."
Day Pitney Partners Erin Magennis Healy and Naju Lathia's promotion to partnership was featured the New Jersey Law Journal's New Partner Yearbook 2022.
Susan Huntington, partner and chair of Day Pitney's Healthcare Practice, was featured in the ABA Journal article, "Legal Limbo: Firms and Their Clients Scramble to Meet the Federal Vaccine Mandate."
This website may use cookies, pixel tags and other passive tracking technologies, including Google Analytics, to improve functionality and performance. For more information, see our Privacy Policy. By using our website, you are consenting to our use of these tracking technologies. You can alter the configuration of your browser to refuse to accept cookies, but if you do so, it is possible that some areas of web sites that use cookies will not function properly when you view them. To learn more about how to delete and manage cookies, refer to the support instructions for each browser (e.g., see AllAboutCookies.org). You may locate Google Analytics' currently available opt-outs for the web here.
This website may use cookies, pixel tags and other passive tracking technologies, including Google Analytics, to improve functionality and performance. For more information, see our Privacy Policy. By using our website, you are consenting to our use of these tracking technologies. You can alter the configuration of your browser to refuse to accept cookies, but if you do so, it is possible that some areas of web sites that use cookies will not function properly when you view them. To learn more about how to delete and manage cookies, refer to the support instructions for each browser (e.g., see AllAboutCookies.org). You may locate Google Analytics' currently available opt-outs for the web here.