HIPAA and the HITECH Act: Know the level of penalties
HIPAA Weekly Advisor, March 16, 2009
Want to receive articles like this one in your inbox? Subscribe to HIPAA Weekly Advisor!
The Health Information Technology for Economic and Clinical Health (HITECH) Act provides a tiered system for assessing the level of each HIPAA privacy violation and, therefore, its penalty:
- Tier A is for violations in which the offender didn’t realize he or she violated the Act and would have handled the matter differently if he or she had. This results in a $100 fine for each violation, and the total imposed for such violations cannot exceed $25,000 for the calendar year.
- Tier B is for violations due to reasonable cause, but not “willful neglect.” The result is a $1,000 fine for each violation, and the fines cannot exceed $100,000 for the calendar year.
- Tier C is for violations due to willful neglect that the organization ultimately corrected. The result is a $10,000 fine for each violation, and the fines cannot exceed $250,000 for the calendar year.
- Tier D is for violations of willful neglect that the organization did not correct. The result is a $50,000 fine for each violation, and the fines cannot exceed $1,500,000 for the calendar year.
The HITECH Act also allows states’ attorneys general to levy fines and seek attorneys fees from covered entities on behalf of victims. Courts now have the ability to award costs, which they were previously unable to do.
Editor’s note: This is an excerpt from the April 2009 edition of the HCPro, Inc. newsletter, Briefings on HIPAA. If you have a tip, comment, or question about the HIPAA provisions in the HITECH Act, please e-mail it to Dom Nicastro.
Want to receive articles like this one in your inbox? Subscribe to HIPAA Weekly Advisor!
Related Products
Most Popular
- Articles
-
- HIPAA Q&A: HIPAA-compliant phone messages
- HealthDataInsights posts new issues for medical necessity claims
- Physician referral patterns ripe for scrutiny
- Dealing with data breaches
- Sneak Peek: Planning for homecare can reduce avoidable readmissions
- Ask the expert: Should medical staff bylaws address employment contracts and exclusive contracts?
- New FAQ posted on storing laryngoscope blades
- Nurse pleads guilty to Medicare fraud
- Q/A: New device pass-through categories
- Featured webcast: Assessing the competence of low- and no-volume practitioners
- E-mailed
-
- HIPAA Q&A: HIPAA-compliant phone messages
- Ask the expert: Should medical staff bylaws address employment contracts and exclusive contracts?
- Sneak Peek: Planning for homecare can reduce avoidable readmissions
- What does case-mix index mean to you?
- 2012 CPT code changes for ASCs: Shoulder and knee scopes and pain management
- Featured webcast: Assessing the competence of low- and no-volume practitioners
- To sign or not to sign
- Bill and charge for supplies correctly to reduce risk and minimize lost revenue
- Blanket Warmers, What Is Safe?
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Searched
