Kardon Blog

Security & Privacy News

Keeping you informed and enlightened.

Simple HIPAA Checklist – Well Sort of

Simple HIPAA Checklist – Well Sort of

I am very behind on my blogs lately due to a lot of distractions at work and at home.  I can really relate when a client asks me why I can’t just make a simple HIPAA checklist.  That is what they really need and want because they are just too busy dealing with all the...

read more
A Cloud Based EMR Does Not A Compliant Entity Make

A Cloud Based EMR Does Not A Compliant Entity Make

Recently, a question came up that involved entities that said they are perfectly fine with HIPAA compliance because they use a cloud based EMR (or EHR) who takes care of all their HIPAA compliance for them. A discussion ensued ending with the question:     This can’t...

read more
The Law Says We Should All Freak Out At The Same Time

The Law Says We Should All Freak Out At The Same Time

In a recent session I conducted on the Omnibus Rule, I was answering questions from the audience. I tend to add humor to my sessions as much as possible. HIPAA isn’t a topic especially worthy of attentiveness on Saturday morning at 9am.  The question was about how do...

read more
Please, Just Do My HIPAA For Me!

Please, Just Do My HIPAA For Me!

So many people are struggling to get caught up on their compliance obligations because they just don’t have the time or resources to deal with it.  We hear this so often I felt it was time to write an article on how we respond to the request.  There are several points...

read more
Wellpoint Resolution Provides More Valuable Lessons

Wellpoint Resolution Provides More Valuable Lessons

I have written before about learning from others mistakes. I know many folks in the small CE and BA world brush off the news of the $1,700,000 Wellpoint Settlement as something that happens only to the big guys. There is so much to learn here, I hope you will take a...

read more
Do Your BA Due Diligence

Do Your BA Due Diligence

Long gone are the days that you pull down a template Business Associate Agreement and everyone just signs it.  BAs may not understand the extent of their obligations under HIPAA.  You need to confirm your agreements plus check what they are really doing to comply. I...

read more

Seriously, HIPAA Enforcement Really is Changing

HIPAA was a big scary thing in 2003 and it turned out to be nothing but a waste of my time and money.  Don’t try to scare me with that again. I hear it often enough to feel pretty sure it is a belief many hold and only some voice.  Whether people say it outwardly or...

read more
How long will it take to get HIPAA compliant?

How long will it take to get HIPAA compliant?

I get asked this question almost every day.  So, I decided to devise a scoring system to help you estimate how long it will take to get compliant.  Answer these questions and tally up your score.  Keep in mind you can never consider yourself 100% compliant.  The only...

read more

No Better Time to Get Started

Privacy and security programs require persistent care and monitoring. There will never be a better time to get started.