UCLAHS Settles Potential HIPAA Violations for $865,500
The Department of Health and Human Services (HHS) entered into its third largest settlement for potential HIPAA privacy and security rule violations this week, reaching a resolution agreement Tuesday of $865,500 with the University of California at Los Angeles Health System (UCLAHS).
UCLAHS has also committed to a corrective action plan in order to fix "gaps in its compliance" with HIPAA's privacy and security rules, , according to a report on the HHS website published Wednesday.
The Office for Civil Rights (OCR), which enforces HIPAA under HHS, investigated the health system following two separate complaints filed by two celebrity patients. OCR said UCLAHS employees repeatedly and without permissible reason looked at their electronic personal health information in addition to other UCLAHS patients.
This week's settlement ranks behind CVS Caremark Co. ($2.25 million, February, 2009) and Rite Aid ($1 million, July 2010) for the amount of money reached in an agreement with OCR for potential HIPAA privacy and security rule violations.
This February, OCR fined Cignet Health $4.3 million civil money penalty, the largest fine for such violations. It was not a settlement.
- NCQA Releases Annual Health Plan Rankings
- Technology Lights Up Health Innovation Forum
- 3 NC Health Systems Form Shared Services Organization
- Few Winners Among MSSP Participants
- Hospital Pharmacies Prep for Drug Takebacks
- Interstate Medical Licensure Effort Advances
- Data Points to Boom in Private HIX
- Anthem Blue Cross, 7 CA Health Systems Create New Challenger, Business Model
- How much does that x-ray cost? You can find out in NH
- Administration: 7.3M now enrolled in Obamacare