HHS Mandatory Email and Text Message Encryption Rules with Only One Exception for Informed Patients

Webinar ID: # 1029

Recorded Webinar @ All Day

Duration: 90 minutes

Description:

HHS and CMS have confirmed the requirement that all Emails and Text Messages containing Protected Health Information (PHI) must be encrypted. There is only one exception. Patients have the absolute right to communicate with Covered Entities by unencrypted email and text message. If the patients have been informed, there is some risk, and they prefer using unencrypted electronic transmissions.

It also will explain when Emails and Text Messages containing PHI must be encrypted and the simple 3 Step HIPAA Safeguard that fully protects Covered Entities from HIPAA violations when communicating with patients by unencrypted email and text message – even if the unencrypted transmission is intercepted.

The Internet is awash with misinformation about Health Care Email and Text Messaging that can lead Covered Entities into serious trouble. OCR guidance clearly explains how Covered Entities must comply with a patient's right to communicate by unencrypted Email and Text Messaging.

HIPAA allows covered entities and their business associates to communicate e-PHI with patients via emails and texts if either the emails and texts are encrypted and are otherwise secure or the covered entity or business associate first warns the patient that the communication is not secure. The patient elects to communicate via unsecured email or text, anyway. When communicating with non-patients, the covered entity or business associate must generally ensure that its email or texts comply with relevant Privacy and Security Rule standards.

This webinar will explain the simple 3-step HIPAA Safeguard that fully protects Covered Entities from HIPAA violations even when an unencrypted Email or Text Message is intercepted in transmission.

Areas Covered:

Why Should You Attend:

Email and Text Messages are Electronic Transmissions of information over Electronic Communications Networks like the Internet, Cell Phone Networks, and telephone "dial-up" lines. Email and Text Messages of Protected Health Information (PHI) between a Covered Entity and an Individual (the person whose PHI is being transmitted) are subject to Privacy Rule Safeguards and the Security Rule Transmission Security Standard. Before using unencrypted Email or Text Messaging to communicate with an Individual, a Covered Entity has the "Duty to Warn" the Individual. There is a risk that a third party could read the information in the Email or Text Message. Suppose the Individual is notified of the risk and prefers Unencrypted Email or Text Message communication. In that case, the Individual has the right to receive PHI that way, and the Covered Entity is not responsible for Unauthorized Access to PHI while in Transmission to the Individual based on the Individual's request. 

Who Should Attend:

Register Now OR Download Registration Form

Presenter Information:

Presenter Name

Name: Paul R. Hales

Short Bio:

Paul R. Hales received his Juris Doctor degree from Columbia University Law School and is licensed to practice law before the Supreme Court of the United States. He is an expert on HIPAA Privacy, Security, Breach notification and Enforcement Rules with a national HIPAA consulting practice based in St. Louis. Paul is the author of all content in The HIPAA E-Tool, an Internet-based, Software as a Service product for health care providers and business associates.

Related Webinars

AI, Health Care & HIPAA - New Compliance Challenges

Oct 03, 2023

View Webinar
Grievances and Complaints: Ensuring Hospitals Compliance with the CMS CoPs, Joint Commission, DNV Standards, and OCR

Oct 08, 2023

View Webinar
Joint Commission and CMS Workplace Violence Standards

Sep 21, 2023

View Webinar
Discharge Planning: Compliance with CMS Hospital & CAH CoPs

Oct 06, 2023

View Webinar
HIPAA for Remote Employee

Sep 12, 2023

View Webinar
Healthcare Compliance 5 bundle webinars (On-Demand)

Oct 04, 2023

View Webinar
The Anti-Kickback Statute: Perspectives from a Whistleblower Lead Counsel and an Anti-Kickback Case Defendant

Jul 13, 2023

View Webinar
Credentialing 101: A Detailed Guide to Provider Credentialing

Jul 20, 2023

View Webinar
The Public Health Emergency is Over - Now What? - Digital Health Updates

Jul 05, 2023

View Webinar
CMS Physician Final Rule 2023

Jul 04, 2023

View Webinar
Physician Billing for "Incident to" and Shared Care Services

Jul 11, 2023

View Webinar
The Unthinkable: Violence in Healthcare from Bullying to an Active Shooter

Jul 10, 2023

View Webinar
QAPI for CAHs: Conditions of Participation 2023

Jul 06, 2023

View Webinar
Prior-Authorization Current Trends and Best Practices

Jun 29, 2023

View Webinar
Provider Credentialing: Maintaining Provider Enrollments, Updates, and Re-Validations

Jun 18, 2024

View Webinar
Best Practices in Roles and Staffing for Hospital Case Management: Learn How to Work at the Top of Your License

Jun 16, 2023

View Webinar
How to Conduct a HIPAA Risk Assessment and the Surprising Danger of Not Doing One

Jun 15, 2023

View Webinar
CMS Hospital Restraint and Seclusion: Navigating the Most Problematic CMS Standards and Proposed Changes 2023

Jun 06, 2023

View Webinar
CMS Hospital Improvement FINAL Rules - Nursing, Medical Records, Infection Control, Antibiotic Stewardship Program, Rest

Jun 06, 2023

View Webinar
HIPAA Boot Camp - The Basics of Exactly What You Need to Know

May 22, 2023

View Webinar
HIPAA Rules for Web Sites, Social Media, & Patient Review

May 18, 2023

View Webinar
Demonstrating the Role of Case Management in a Value-Based Healthcare System

May 12, 2023

View Webinar
How To Become HIPAA Compliant

May 11, 2023

View Webinar
Care Coordination: Strategies for Managing Cost and Length of Stay

Apr 26, 2023

View Webinar
The Patient-Driven Payment System (PDPM) the MDS v3.0 Assessment Skills Necessary for Success

Apr 26, 2023

View Webinar
HIPAA and De-Identification of PHI - Sometimes Required, Never Easy

Apr 13, 2023

View Webinar
False Claims Act Cases Involving Millions in Medical Fraud: What you Need to Know About Recent Court Decisions

Apr 17, 2023

View Webinar
HIPAA 2023 Guidance and Compliance

Mar 30, 2023

View Webinar
Mastering Medicare's NCCI Edits and the Relative Value File

Mar 16, 2023

View Webinar
Utilization Management: Rules, Regs, and How To's

Feb 16, 2023

View Webinar
Navigating 2023 Medicare 855 Enrollment Form Updates

Feb 16, 2023

View Webinar
Correctly Assigning Modifiers

Feb 22, 2023

View Webinar
2023 CPT Evaluation and Management Important Code and Guidelines Changes

Feb 21, 2023

View Webinar
Discharge Planning: Best Practices, Including a Review of the Conditions of Participation

Feb 08, 2023

View Webinar
HIPAA Audit and Enforcement Update for 2023 - HHS Keeps Pressure on Access, Privacy, and Security Compliance

Feb 02, 2023

View Webinar
2026 Updates and Best Practices for CCM and RPM

Jun 09, 2026

View Webinar
Medicare Telehealth 2026: What Coders, Providers, and Compliance Teams Need to Know Now

Jun 10, 2026

View Webinar
Medicare Compliance Updates: Enrollment, Billing, and Regulatory Changes 2026

Jun 11, 2026

View Webinar
2026 Medicare Enrollment Form 855 Updates

Jun 12, 2026

View Webinar