Med Law Blog

CMS Response to Breaches and Medical Identity Theft

Contributed by Lee Kim, Esq.

412.594.3915

 

CMS has reported that it had 14 breaches of protected health information between September 23, 2009, and December 31, 2011. CMS notified the 13,775 Medicare beneficiaries affected by the breaches.  However, according to the Office of Inspector General of HHS (OIG), it did not meet several ARRA requirements.  

Such breaches can lead to identity theft.  In response to this risk, a compromised number database has been developed by CMS.

 

The OIG has made several recommendations to CMS to ensure that its breach notifications meet the ARRA requirements, improve the compromised number database, provide guidance to contractors about using database information and implementing edits, and developing methods to ensure that beneficiaries who are victims of medical identity theft retain access to needed services and to reissue identification numbers to beneficiaries affected by medical identity theft.

OIG's complete report can be found here:

https://oig.hhs.gov/oei/reports/oei-02-10-00040.pdf.

 

Trackbacks (0) Links to blogs that reference this article Trackback URL
http://www.medlawblog.com/admin/trackback/287589
Comments (0) Read through and enter the discussion with the form at the end

Medical Logo Design by Matthew Cassidy

Tucker Arensberg, P. C.
1500 One PPG Place
| Pittsburgh, PA 15222-5401