Dermatology Practice Settles with Government After Stolen USB Drive Results in HIPAA Breach
By George F. Indest III, J.D., M.P.A., LL.M., Board Certified by The Florida Bar in Health Law
The U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR), and Adult & Pediatric Dermatology (APDerm), reached a $150,000 settlement for privacy and security violations of the Health Insurance Portability and Accountability Act (HIPAA). The alleged violations related to an unencrypted USB drive that was stolen. The thumb drive contained the protected health information (PHI) of around 2,200 patients, according to a press release posted December 26, 2013, on the HHS website.
According to the HHS, this is the first settlement with a covered entity for not having policies and procedures […]