Privacy & Security Resources

HITEQ Center and Feldesman Tucker Leifer Fidell LLP, September 2023

The Office of the National Coordinator for Health Information Technology’s (ONC) 21st Century Cures Act Information Blocking Rule (Info Blocking Rule) prohibits covered actors – including health care providers, health IT developers of certified health IT, and health information exchanges/health information networks– from engaging in practices likely to interfere with, prevent, or materially discourage access, exchange, or use of electronic health information (EHI). The Info...

Virtual Learning Collaborative

In this session participants learned about the data privacy laws as they relate to digital health. Attendees had a better understanding about HIPAA, data privacy laws, telehealth regulations and more.

Guidance and Resources for Health Centers

General cybersecurity guidance would suggest that Health IT breach should not be considered a matter of “if”, but rather a matter of “when”. How Health Centers prepare and respond to an episode of a breach is just as important as defending itself from the breach.

A Case Study of the Family Health Center of Worcester’s Ransomware Incident, February 2024

The use of ransomware — malicious software that restricts access to computer systems with financial demands — has escalated, targeting health centers and putting countless lives at risk. This dire reality came to the forefront during the alarming ransomware attack on the Family Health Center of Worcester, Inc. (FHCW), where the personal health information and care continuity for thousands of patients were compromised. This resource uses FHCW's experience as a case study to demonstrate the...
Recent Department of Health and Human Services (HHS) policy is bringing patients unprecedented access to their health information. Join the Office of the National Coordinator for Health Information Technology (ONC) and Centers for Medicare and Medicaid Services (CMS) in September for an event focused on patient access to health data. The day will bring together patients, providers, payers, and health IT developers to discuss how HHS policies are working in practice and how to maximize the...

Health IT Gov Moderated Panel Discussion

Join us for a moderated panel discussion with developers and implementers about the future FHIR ecosystem. Panelists will provide their perspectives on the impact of FHIR adoption and implementation on healthcare, addressing questions such as: what use cases will see greatest adoption (and what will happen to CCDA)? What challenges will we have to solve as more granular data is searchable over FHIR APIs? How will FHIR impact user experience of accessing health information?

HITEQ Webinar in June 2023

There are many questions about patient portals and the related requirements under the Information Blocking Rule. In this session, our expert speaker will review the impact of the Information Blocking Rule on implementation and use of the patient portal.Over the last few years, the Office of Civil Rights has focused much of its enforcement efforts on ensuring patients are afforded their HIPAA right to access their protected health information (PHI). The Privacy Rule generally requires HIPAA...

Wednesday, October 26 1 pm Eastern | 10 am Pacific

  The Weitzman Institute and the Moses/Weitzman Health System are pleased to present the latest installment of our series of informative discussions with an exclusive panel of global experts driving the development of Artificial Intelligence (AI). April Joy Damian, PhD, MSc, CHPM, PMP, Vice President and Director of the Weitzman Institute will moderate this latest discussion, "AI Fundamentals and Applications in Primary Care," on Wednesday, October 26 at 1 pm...

Considerations for Entities that Maintain Part 2-Protected Data

CoE-PHI resource that describes the Information Blocking Rule and explains that it does not preempt stricter privacy laws and regulations such as 42 CFR Part 2. Key Points: Information blocking includes practices that would “interfere with, prevent, or materially discourage the access, exchange, or use of electronic health information.” Following a legal requirement to obtain patient consent for a disclosure meets the “privacy exception” in the Information Blocking...

Highlighted Resources & Events

Need Assistance?

Would you like more assistance regarding Privacy & Security strategies or support in using any of the include resource sets?

  Request Support

The Quadruple Aim

Quadruple Aim

A Conceptual Framework

Improving the U.S. health care system requires four aims: improving the experience of care, improving the health of populations, reducing per capita costs and improving care team well-being. HITEQ Center resources seek to provide content and direction aligned with the goals of the Quadruple Aim

Learn More

Quick Feedback Request

Acknowledgements

This resource collection was cultivated and developed by the HITEQ team with valuable suggestions and contributions from HITEQ Project collaborators.

Looking for something different or have something you think could assist?

HITEQ works to provide top quality resources, but know your needs can be specific. If you are just not finding the right resource or have a highly explicit need then please use the Request a Resource button below so that we can try to better understand your requirements.

If on the other hand you know of a great resource already or have one that you have developed then please get in touch with us by clicking on the Share a Resource button below. We are always on the hunt for tools that can better server Health Centers.

REQUEST A RESOURCE  SHARE A RESOURCE