Overview:§164.414(a)Administrative RequirementsA covered entity is required to comply with the administrative requirements of §164.530(b), (d), (e), (g), (h), (i), and (j) with respect to 45 CFR Part 164, Subpart D ("the Breach Notification Rule").... Read More
Administrative Requirements (Breach)
Overview:§164.414(b)Burden of proof.In the event of a use or disclosure in violation of subpart E, the covered entity or business associate, as applicable, shall have the burden of demonstrating that all notifications were made as required by the... Read More
Overview:164.530(d)Complaints.All covered entities must provide a process for individuals to complain about its compliance with the Breach Notification Rule. Action Items:1) Obtain the covered entity's policies and procedures for individual... Read More
Overview:164.530(j)Documentation.All covered entities must have policies and procedures in place for maintaining documentation. Action Items:1) Obtain and review documentation that the covered entity maintains its policies and procedures, in written... Read More
Overview:§164.412Law Enforcement Delay.If a law enforcement official states to a covered entity or business associate that a notification, notice, or posting required under this subpart would impede a criminal investigation or cause damage to... Read More
Overview:164.530(i)Policies and Procedures.All covered entities must have policies and procedures that are consistent with the requirements of the Breach Notification Rule. Action Items:1) Obtain and review the covered entity’s policies and... Read More
Overview:164.530(g)Refraining from Retaliatory Acts.All covered entities must have policies and procedures in place to prohibit retaliatory acts. Action Items:1) Does the covered entity have appropriate policies and procedures in place to prohibit... Read More
Overview:164.530(e)Sanctions.All covered entities must sanction workforce members for failing to comply with the Breach Notification Rule. Action Items:1) Obtain and review entity policies and procedures to determine if the entity has and applies... Read More
Overview:§164.530(b)Training.All workforce members must receive training pertaining to the Breach Notification Rule. Action Items:1) Obtain and review such policies and procedures. Areas to review include training each new member of the workforce... Read More
Overview:164.530(h)Waiver of Rights.All covered entities must have policies and procedures in place to prohibit it from requiring an individual to waive any rights under the Breach Notification Rule as a condition of the provision of treatment,... Read More