Previous All Posts Next

But Wait, There's More!

Posted: June 1, 2017 to Compliance.

Tags: Compliance, HIPAA, NIST

Just yesterday we reported on the $155 million fine eClinicalWorks was given for skirting certification criteria. If you look at the fine print though, there's more to their punishment than money, and it could be even worse. The first stipulation is that eCW has to have an independent review organization. Their job will be to make sure eClinicalWorks is building their software properly and not doing shady things with their customers. Basically, they're stuck with a nanny who will guard quality control on them and report back to the government if they're out of line. The other part is a bigger blow. eClicnicalWorks is required to upgrade their software for their customers for free or, if the customer opts to change vendors, eCW has to transfer data to a different vendor, and, the kicker, they're not allowed to charge any fees or levy any penalties for it. The moral of the story: make sure you're playing by the rules.  
Craig Petronella
Craig Petronella
CEO & Founder, Petronella Technology Group | CMMC Registered Practitioner

Craig Petronella is a cybersecurity expert with over 24 years of experience protecting businesses from cyber threats. As founder of Petronella Technology Group, he has helped over 2,500 organizations strengthen their security posture, achieve compliance, and respond to incidents.

Related Service
Achieve Compliance with Expert Guidance

CMMC, HIPAA, NIST, PCI-DSS — we have 80% of documentation pre-written to accelerate your timeline.

Learn About Compliance Services
Previous All Posts Next