Home health and hospice provider Amedisys is notifying more than 6,900 individuals of a breach of protected health information (PHI), even though the PHI is encrypted.

In most cases under the HIPAA privacy and security rules, if protected health information is compromised but the data is encrypted to industry standards, then it is as if no breach occurred and affected individuals need not be notified. This incident is an exception, as Amedisys in an inventory of its desktop and laptop computers learned that about 142 devices were missing.

Register or login for access to this item and much more

All Information Management content is archived after seven days.

Community members receive:
  • All recent and archived articles
  • Conference offers and updates
  • A full menu of enewsletter options
  • Web seminars, white papers, ebooks

Don't have an account? Register for Free Unlimited Access