<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: HHS Breach Notification Form On line</title>
	<atom:link href="http://vendorcompliance.vendormate.com/2009/10/06/hhs-breach-notification-form-on-line/feed/" rel="self" type="application/rss+xml" />
	<link>http://vendorcompliance.vendormate.com/2009/10/06/hhs-breach-notification-form-on-line/</link>
	<description>"Know Your Vendor" -- the pulse of vendor management</description>
	<lastBuildDate>Fri, 19 Feb 2010 19:33:09 +0000</lastBuildDate>
	<generator>http://wordpress.com/</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: vendorcompliance</title>
		<link>http://vendorcompliance.vendormate.com/2009/10/06/hhs-breach-notification-form-on-line/#comment-921</link>
		<dc:creator>vendorcompliance</dc:creator>
		<pubDate>Wed, 10 Feb 2010 17:32:38 +0000</pubDate>
		<guid isPermaLink="false">http://vendorcompliance.vendormate.com/?p=438#comment-921</guid>
		<description>Mark -- my understanding is that you still submit a separate notice for breaches affecting less than 500 people, you just don&#039;t have to submit them as they occur.  However, the HHS hasn&#039;t provided a log form to roll it into one submission, so they have an online form similar to the large scale breach notification that takes the breach information one at a time.  Here&#039;s the page with the &lt;a href=&quot;http://www.hhs.gov/ocr/privacy/hipaa/administrative/breachnotificationrule/brinstruction.html&quot; rel=&quot;nofollow&quot;&gt;form and instructions.&lt;/a&gt;</description>
		<content:encoded><![CDATA[<p>Mark &#8212; my understanding is that you still submit a separate notice for breaches affecting less than 500 people, you just don&#8217;t have to submit them as they occur.  However, the HHS hasn&#8217;t provided a log form to roll it into one submission, so they have an online form similar to the large scale breach notification that takes the breach information one at a time.  Here&#8217;s the page with the <a href="http://www.hhs.gov/ocr/privacy/hipaa/administrative/breachnotificationrule/brinstruction.html" rel="nofollow">form and instructions.</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mark Jacobs</title>
		<link>http://vendorcompliance.vendormate.com/2009/10/06/hhs-breach-notification-form-on-line/#comment-920</link>
		<dc:creator>Mark Jacobs</dc:creator>
		<pubDate>Wed, 10 Feb 2010 16:21:48 +0000</pubDate>
		<guid isPermaLink="false">http://vendorcompliance.vendormate.com/?p=438#comment-920</guid>
		<description>164.408 of the HITCH Act requires (pharmacy) providers to maintain a log of breaches of protected health information and submit it to the &quot;secretary&quot; annually. Do you have a log for health care providers to use? 
To whom should the annual letter be sent?

Thank you,
Mark</description>
		<content:encoded><![CDATA[<p>164.408 of the HITCH Act requires (pharmacy) providers to maintain a log of breaches of protected health information and submit it to the &#8220;secretary&#8221; annually. Do you have a log for health care providers to use?<br />
To whom should the annual letter be sent?</p>
<p>Thank you,<br />
Mark</p>
]]></content:encoded>
	</item>
</channel>
</rss>
