Who is responsible for enforcing HIPAA Privacy & Security Rules?

U.S. Department of Health & Human Services Office for Civil Rights is responsible for enforcing the Privacy and Security Rules. Enforcement of the Privacy Rule began April 14, 2003 for most HIPAA covered entities. Since 2003, OCR's enforcement activities have obtained significant results that have improved the privacy practices of covered entities.  The corrective actions obtained by OCR from covered entities have resulted in systemic change that has improved the privacy protection of health information for all individuals they serve.

HIPAA covered entities were required to comply with the Security Rule beginning on April 20, 2005. OCR became responsible for enforcing the Security Rule on July 27, 2009.

To learn more please click the link below:
https://www.hhs.gov/hipaa/for-professionals/compliance-enforcement/

 
Should you have any questions or concerns, contact us via the following:
  • ​Chatbox/window on your Complete Compliance Suite screen.
  • Telephone: 877-560-4261
  • Email: support@epicompliance.com