The US Department of Health and Human Services Office of Civil Rights (“OCR”) recently released its HIPAA audit protocol.  Audits of HIPAA compliance were mandated by the 2009 Health Information Technology for Economic and Clinical Health (“HITECH”) Act, which amended many parts of HIPAA and included breach notification requirements.

The OCR conducted a number of

The 2010 Patient Protection and Affordable Care Act (“PPACA”) imposed an obligation upon Medicare providers, including physicians, hospitals, nursing homes and home health agencies, to report and return any overpayments they receive within 60 days of identification of the overpayment.  Failure to do so could result in substantial penalties to the provider under the False