Contact Us
IT Total Care

Tag: Cybersecurity

Caregiver in a white uniform helping an older man rise from a sofa in a sunlit living room, the non-medical personal care that decides whether HIPAA applies to home care agencies.

Does HIPAA Apply to Home Care Agencies?

Whether HIPAA applies to home care agencies is decided by a two-part test, and most published guidance only runs the first half of it. That matters because the answer changes what an agency has to document, who can enforce against it,…

Read More
Caregiver wearing a photo identification badge resting a hand on a seated older woman holding a cane, the client records behind California's 30-day breach notification

How to Meet California’s 30-Day Breach Notification Deadline

At 4:40 on a Friday afternoon, an office coordinator at a home care agency in the East Bay opens the shared drive to pull the weekend’s care plans and finds every file renamed. She calls the owner, who calls the person…

Read More
Smiling specialist wearing a headset at an office workstation, fielding questions like whether you can outsource the HIPAA security officer role to an IT provider.

Can You Outsource the HIPAA Security Officer Role to Your IT Provider?

Can you outsource the HIPAA security officer role along with the rest of your technology? It is the question that produces the longest pause when a surveyor asks a home health administrator to name the agency’s Security Official. Agencies that handed…

Read More
Support team in headsets working through a screen together at a shared desk, the vendor coordination a HIPAA shared responsibility matrix puts in writing.

How to Build a HIPAA Shared Responsibility Matrix With Your IT Provider

A HIPAA shared responsibility matrix answers a question most home health agencies cannot answer on the spot: who owns each compliance function, the agency or the IT provider. Ask an administrator who approves the risk analysis and you will usually get…

Read More
Nurse in navy scrubs beside an older client seated on a couch at home, the setting behind the question: is a stolen encrypted laptop a reportable HIPAA breach.

Is a Stolen Encrypted Laptop a Reportable HIPAA Breach?

Is a stolen encrypted laptop a reportable HIPAA breach? Usually not under federal law, and that answer holds only if the agency can prove three specific things about the device after it is already gone. For a California home health agency…

Read More
Home health aide in blue scrubs brushing a seated client's hair during a home visit, the care setting behind how to report a medical information breach to CDPH.

How to Report a Medical Information Breach to CDPH in 15 Business Days

This guide explains why reporting a medical information breach to CDPH matters for a California licensed agency, how to work through the filing step by step on your own, and how IT Total Care builds the detection and evidence the filing…

Read More