decisionhealth Newsletters, Part B News - 2018 Issue 3 (March)
Vendor’s improper disposal of equipment can expose PHI, create PR nightmare
Subscribe or sign in to view the full article.
Article Overview
This article explains why disposing of devices and other equipment that may contain patient protected health information can create compliance, breach-reporting, and reputational risks even when a vendor is involved. It is aimed at healthcare providers, compliance staff, and practice managers who oversee HIPAA-related safeguards, vendor relationships, and media sanitation practices. The discussion references OCR enforcement concerns, NIST guidance, and the role of business associates in improper disposal incidents.
Why This Topic Matters
Improper disposal can expose patient information, trigger breach concerns, and create lasting public-relations and legal consequences for covered entities and their vendors. Understanding the compliance risks helps organizations reduce exposure when decommissioning equipment.
What You Will Learn
- The compliance risks associated with disposing of equipment that may contain patient information
- Why third-party vendors do not eliminate a provider’s responsibility for safeguarding PHI
- How federal guidance and enforcement agencies view improper disposal incidents
- Why vendor-related disposal problems can create breach-reporting and reputational issues
Who Should Read This
- Healthcare providers
- Practice managers
- Compliance officers
- Privacy officers
- HIPAA administrators
- Risk management staff
Subscribe or sign in to view the full article.



Quick, Current, Complete - www.findacode.com