Smith, Gambrell & Russell, LLP Smith, Gambrell & Russell, LLP

Menu Search

Experience

  • Industries
  • Services
  • Professionals

Resources

  • SGR Insights
  • News & Events
  • Client Access

About

  • The Firm
  • Careers
  • Contact
  • SGR Alumni
Share
  • Home
  • Newsletters
  • ERISA Newsletter
  • OCR Privacy and Security Audits

OCR Privacy and Security Audits

November 22, 2011

This month through December 2012, the Office for Civil Rights (OCR) of the Department of Health and Human Service will audit up to 150 health plans, health care providers, and health care clearinghouses.  These audits are part of a pilot program designed to ensure compliance with HIPAA privacy and security rules, and will help OCR develop procedures for carrying out future audits that it is required to perform under the American Recovery and Reinvestment Act of 2009.

Steps of the Audit.  Under the pilot program audit process, OCR will:

  • Request documentation demonstrating compliance with HIPAA privacy and security rules;
  • Conduct site visits, during which auditors will observe operations and interview key employees;
  • Prepare a draft report with the entity that outlines any violations that were found during the audit and describes what corrective actions the entity is taking in response; and
  • Compile a final report that contains the findings of the draft report.

Consequences of the Audits.  OCR will publish guidance focusing on compliance challenges that come to light during the pilot program audits.  Although these initial audits appear to be tailored primarily toward measuring the current state of HIPAA compliance, OCR has expressed that it may initiate separate compliance reviews of entities whose audits reveal potential or major compliance violations and impose penalties for compliance failures.

Contact Information.  If you have any questions about this new development, please contact Leslie Schneider (770.863.3617), Amy Heppner (404.888.8825) or Kelly Meyers (404.888.8838).

 

Please click here for a PDF of this newsletter.

 

Smith, Gambrell & Russell, LLP

SGRLAW®

Experience

  • Industries
  • Services
  • Professionals

Resources

  • SGR Insights
  • News & Events
  • Client Access

About

  • The Firm
  • Careers
  • Contact
  • SGR Alumni

Notices

  • Site Terms
  • Privacy Policy
  • Cookies Policy
  • Transparency In Coverage Rule

Languages

  • Español
  • Deutsch
  • 한국어
  • 日本語
  • 中文
  • Visit our Twitter profile
  • Visit our LinkedIn page
  • Visit our YouTube channel
  • Chambers and Partners Best Law Firms
Search
Remote Access

© 2026 Smith, Gambrell & Russell, LLP

  • Facebook
  • Twitter
  • LinkedIn
  • More Networks
Share via
Facebook
X (Twitter)
LinkedIn
Mix
Email
Print
Copy Link
Powered by Social Snap
Copy link
CopyCopied
Powered by Social Snap
This website uses cookies to improve functionality and performance. If you continue browsing the site, you are giving implied consent to the use of cookies on this website.