SlideShare a Scribd company logo
1 of 15
Legal Obstacles in Digital Marketing
for HealthCare Companies
Widespread Digital Tech Has Transformed Marketing
Overview
Barriers to entry for Digital Healthcare marketing efforts
Unique
Challenges
Privacy &
Security
Tech
Compatibility
Legal Obstacles
There are Issues around Patient Access & Data
• Traditional Marketing Methods are Changing
(Online)
• Physicians
• HIPAA
• Affordable Care Act
• FTC
• Devices/IoT
• State Laws/Regulations
Legal Obstacles: Online Access
Online
Health
Info
72%
Searched
35% Self
Diagnose
52% Use
Smartphones
70% Track
Health
Indicators
15% Track
Using Med
Device or
Phone
Legal Obstacles: Physician Considerations
Physicians control ACCESS to Patients:
• Prescribe/Test New Devices
• Role as Medical Directors
• Investors
• Participation in studies
• NOTE: Subject to Self-Referral & Anti
-kickback Rules
Legal Obstacles: HIPAA
• HIPAA Privacy Rule
• Framework
• “Marketing”
• Some Transactions Permitted
• HITECH Act/Megarule
• Financial Remuneration
Legal Obstacles: Content
FTC tasked with Safeguarding Consumers & Markets
Digital Marketing Practices = Fertile Ground For FTC
• Focus on Uses/Abuses of “Big Data”
• HTC - Privacy By Design
• Online Advertising Disclosure Guidelines
• COPPA Rule
• CAN-SPAM Act
• Technical Notice & Consent Issues
• Civil Litigation:
★ Google Double-Click (Tracking cookies)
Legal Obstacles: Social Marketing
Best Practices
1. Review collection practices
Best Practices
2. Review marketing partners
Best Practices
3. Privacy Policy Tune-up | DNT, Online Eraser
Best Practices
4. Put systems in place
Best Practices
5. Data Collection, Storage & Use
Thank You!
David M. Adler | ADLER LAW GROUP
Safeguarding Ideas, Relationships & Talent®
866.734.2568
www.adler-law.com
David@adler-law.com
adlerlaw.wordpress.com
@adlerlaw

More Related Content

More from Adler Law Group

Using Privacy to Enhance Your Brand ClickZLive SF via Adlerlaw
Using Privacy to Enhance Your Brand ClickZLive SF via AdlerlawUsing Privacy to Enhance Your Brand ClickZLive SF via Adlerlaw
Using Privacy to Enhance Your Brand ClickZLive SF via AdlerlawAdler Law Group
 
Where You Are Is Who You Are: Legal Trends in Geolocation Data Privacy & Secu...
Where You Are Is Who You Are: Legal Trends in Geolocation Data Privacy & Secu...Where You Are Is Who You Are: Legal Trends in Geolocation Data Privacy & Secu...
Where You Are Is Who You Are: Legal Trends in Geolocation Data Privacy & Secu...Adler Law Group
 
ISBA Privacy CLE “special areas”
ISBA Privacy CLE “special areas”ISBA Privacy CLE “special areas”
ISBA Privacy CLE “special areas”Adler Law Group
 
Privacy Implications of Mobile Advertising Location Data
Privacy Implications of Mobile Advertising Location DataPrivacy Implications of Mobile Advertising Location Data
Privacy Implications of Mobile Advertising Location DataAdler Law Group
 
Identifying Intellectual Property Issues in Startups 2014
Identifying Intellectual Property Issues in Startups 2014Identifying Intellectual Property Issues in Startups 2014
Identifying Intellectual Property Issues in Startups 2014Adler Law Group
 
Online Behavioral Advertising (OBA) Legal & Regulatory Compliance
Online Behavioral Advertising (OBA) Legal & Regulatory ComplianceOnline Behavioral Advertising (OBA) Legal & Regulatory Compliance
Online Behavioral Advertising (OBA) Legal & Regulatory ComplianceAdler Law Group
 
Entertainment Law & Technology: Trends in Media & Advertising
Entertainment Law & Technology:  Trends in Media & AdvertisingEntertainment Law & Technology:  Trends in Media & Advertising
Entertainment Law & Technology: Trends in Media & AdvertisingAdler Law Group
 
Managing Risk: Legal Issues for Affiliate Marketers & Affiliate Marketing Man...
Managing Risk: Legal Issues for Affiliate Marketers & Affiliate Marketing Man...Managing Risk: Legal Issues for Affiliate Marketers & Affiliate Marketing Man...
Managing Risk: Legal Issues for Affiliate Marketers & Affiliate Marketing Man...Adler Law Group
 
Facebook Marketing Legal & Regulatory Compliance
Facebook Marketing Legal & Regulatory ComplianceFacebook Marketing Legal & Regulatory Compliance
Facebook Marketing Legal & Regulatory ComplianceAdler Law Group
 
Tech Week Chicago 2012: Law & Social Data
Tech Week Chicago 2012: Law & Social DataTech Week Chicago 2012: Law & Social Data
Tech Week Chicago 2012: Law & Social DataAdler Law Group
 
Rosetta Stone, Ltd. v. Google, Inc., No. 10-2007 (4th Cir. April 9, 2012)
Rosetta Stone, Ltd. v. Google, Inc., No. 10-2007 (4th Cir. April 9, 2012)Rosetta Stone, Ltd. v. Google, Inc., No. 10-2007 (4th Cir. April 9, 2012)
Rosetta Stone, Ltd. v. Google, Inc., No. 10-2007 (4th Cir. April 9, 2012)Adler Law Group
 
Socialize Conference Toronto 2012 - FaceBook Marketing:
Socialize Conference Toronto 2012 - FaceBook Marketing: Socialize Conference Toronto 2012 - FaceBook Marketing:
Socialize Conference Toronto 2012 - FaceBook Marketing: Adler Law Group
 
Social Media Legal, Regulatory & Compliance: Risks & Issues
Social Media Legal, Regulatory & Compliance: Risks & IssuesSocial Media Legal, Regulatory & Compliance: Risks & Issues
Social Media Legal, Regulatory & Compliance: Risks & IssuesAdler Law Group
 
Chicago business affairs workshop (ip)
Chicago business affairs workshop (ip)Chicago business affairs workshop (ip)
Chicago business affairs workshop (ip)Adler Law Group
 

More from Adler Law Group (14)

Using Privacy to Enhance Your Brand ClickZLive SF via Adlerlaw
Using Privacy to Enhance Your Brand ClickZLive SF via AdlerlawUsing Privacy to Enhance Your Brand ClickZLive SF via Adlerlaw
Using Privacy to Enhance Your Brand ClickZLive SF via Adlerlaw
 
Where You Are Is Who You Are: Legal Trends in Geolocation Data Privacy & Secu...
Where You Are Is Who You Are: Legal Trends in Geolocation Data Privacy & Secu...Where You Are Is Who You Are: Legal Trends in Geolocation Data Privacy & Secu...
Where You Are Is Who You Are: Legal Trends in Geolocation Data Privacy & Secu...
 
ISBA Privacy CLE “special areas”
ISBA Privacy CLE “special areas”ISBA Privacy CLE “special areas”
ISBA Privacy CLE “special areas”
 
Privacy Implications of Mobile Advertising Location Data
Privacy Implications of Mobile Advertising Location DataPrivacy Implications of Mobile Advertising Location Data
Privacy Implications of Mobile Advertising Location Data
 
Identifying Intellectual Property Issues in Startups 2014
Identifying Intellectual Property Issues in Startups 2014Identifying Intellectual Property Issues in Startups 2014
Identifying Intellectual Property Issues in Startups 2014
 
Online Behavioral Advertising (OBA) Legal & Regulatory Compliance
Online Behavioral Advertising (OBA) Legal & Regulatory ComplianceOnline Behavioral Advertising (OBA) Legal & Regulatory Compliance
Online Behavioral Advertising (OBA) Legal & Regulatory Compliance
 
Entertainment Law & Technology: Trends in Media & Advertising
Entertainment Law & Technology:  Trends in Media & AdvertisingEntertainment Law & Technology:  Trends in Media & Advertising
Entertainment Law & Technology: Trends in Media & Advertising
 
Managing Risk: Legal Issues for Affiliate Marketers & Affiliate Marketing Man...
Managing Risk: Legal Issues for Affiliate Marketers & Affiliate Marketing Man...Managing Risk: Legal Issues for Affiliate Marketers & Affiliate Marketing Man...
Managing Risk: Legal Issues for Affiliate Marketers & Affiliate Marketing Man...
 
Facebook Marketing Legal & Regulatory Compliance
Facebook Marketing Legal & Regulatory ComplianceFacebook Marketing Legal & Regulatory Compliance
Facebook Marketing Legal & Regulatory Compliance
 
Tech Week Chicago 2012: Law & Social Data
Tech Week Chicago 2012: Law & Social DataTech Week Chicago 2012: Law & Social Data
Tech Week Chicago 2012: Law & Social Data
 
Rosetta Stone, Ltd. v. Google, Inc., No. 10-2007 (4th Cir. April 9, 2012)
Rosetta Stone, Ltd. v. Google, Inc., No. 10-2007 (4th Cir. April 9, 2012)Rosetta Stone, Ltd. v. Google, Inc., No. 10-2007 (4th Cir. April 9, 2012)
Rosetta Stone, Ltd. v. Google, Inc., No. 10-2007 (4th Cir. April 9, 2012)
 
Socialize Conference Toronto 2012 - FaceBook Marketing:
Socialize Conference Toronto 2012 - FaceBook Marketing: Socialize Conference Toronto 2012 - FaceBook Marketing:
Socialize Conference Toronto 2012 - FaceBook Marketing:
 
Social Media Legal, Regulatory & Compliance: Risks & Issues
Social Media Legal, Regulatory & Compliance: Risks & IssuesSocial Media Legal, Regulatory & Compliance: Risks & Issues
Social Media Legal, Regulatory & Compliance: Risks & Issues
 
Chicago business affairs workshop (ip)
Chicago business affairs workshop (ip)Chicago business affairs workshop (ip)
Chicago business affairs workshop (ip)
 

Recently uploaded

Webinar: What the Hell is Legitimate Interest?
Webinar: What the Hell is Legitimate Interest?Webinar: What the Hell is Legitimate Interest?
Webinar: What the Hell is Legitimate Interest?NapierPR
 
Content Segmentation for Organic Visibility
Content Segmentation for Organic VisibilityContent Segmentation for Organic Visibility
Content Segmentation for Organic VisibilityTony Robert
 
Being a PMM with a multi-product portfolio - Product Marketing Summit
Being a PMM with a multi-product portfolio - Product Marketing SummitBeing a PMM with a multi-product portfolio - Product Marketing Summit
Being a PMM with a multi-product portfolio - Product Marketing SummitPieter Brinkman
 
How to Scale Your Digital Marketing Services in 2024
How to Scale Your Digital Marketing Services in 2024How to Scale Your Digital Marketing Services in 2024
How to Scale Your Digital Marketing Services in 2024Jomer Gregorio
 
NexGen Alignment: ABM’s Role in Uniting Marketing and Sales
NexGen Alignment: ABM’s Role in Uniting Marketing and SalesNexGen Alignment: ABM’s Role in Uniting Marketing and Sales
NexGen Alignment: ABM’s Role in Uniting Marketing and SalesDemandbase
 
The Wealth of a Homeonwers association is analogous to the wealth of a Nation
The Wealth of a Homeonwers association is analogous to the wealth of a NationThe Wealth of a Homeonwers association is analogous to the wealth of a Nation
The Wealth of a Homeonwers association is analogous to the wealth of a NationJoseph Lewis Aguirre
 
Ultimate Guide to Personal Branding on LinkedIn.pdf
Ultimate Guide to Personal Branding on LinkedIn.pdfUltimate Guide to Personal Branding on LinkedIn.pdf
Ultimate Guide to Personal Branding on LinkedIn.pdfBryan Philips
 
Licença Lotter Pro - Conheça o Certificado Oficial da Licença Lotter Pro.pdf
Licença Lotter Pro - Conheça o Certificado Oficial da Licença Lotter Pro.pdfLicença Lotter Pro - Conheça o Certificado Oficial da Licença Lotter Pro.pdf
Licença Lotter Pro - Conheça o Certificado Oficial da Licença Lotter Pro.pdfLotter Pro Brasil
 
5 Benefits Of Using Digital Marketing.pptx
5 Benefits Of Using Digital Marketing.pptx5 Benefits Of Using Digital Marketing.pptx
5 Benefits Of Using Digital Marketing.pptxdeepushah1687
 
Snapshot of Consumer Behaviors of April 2024-EOLiSurvey (EN).pdf
Snapshot of Consumer Behaviors of April 2024-EOLiSurvey (EN).pdfSnapshot of Consumer Behaviors of April 2024-EOLiSurvey (EN).pdf
Snapshot of Consumer Behaviors of April 2024-EOLiSurvey (EN).pdfEastern Online-iSURVEY
 
Japanese Sauna Hat Trends - Totonoete Inc.
Japanese Sauna Hat Trends - Totonoete Inc.Japanese Sauna Hat Trends - Totonoete Inc.
Japanese Sauna Hat Trends - Totonoete Inc.SejuTakayama
 
Klaus Schweighofer, Zakaj je digitalizacija odlična priložnost za medije, Sty...
Klaus Schweighofer, Zakaj je digitalizacija odlična priložnost za medije, Sty...Klaus Schweighofer, Zakaj je digitalizacija odlična priložnost za medije, Sty...
Klaus Schweighofer, Zakaj je digitalizacija odlična priložnost za medije, Sty...DIGGIT
 
Tea Gobec, Kako pluti po morju tehnoloških sprememb, Innovatif.pdf
Tea Gobec, Kako pluti po morju tehnoloških sprememb, Innovatif.pdfTea Gobec, Kako pluti po morju tehnoloških sprememb, Innovatif.pdf
Tea Gobec, Kako pluti po morju tehnoloških sprememb, Innovatif.pdfDIGGIT
 
How to Track, Measure & Communicate SEO Results
How to Track, Measure & Communicate SEO ResultsHow to Track, Measure & Communicate SEO Results
How to Track, Measure & Communicate SEO ResultsMunene Kelvin
 
Relatório da OMS / Unicef / IBFAN sobre a situação do Código Internacional de...
Relatório da OMS / Unicef / IBFAN sobre a situação do Código Internacional de...Relatório da OMS / Unicef / IBFAN sobre a situação do Código Internacional de...
Relatório da OMS / Unicef / IBFAN sobre a situação do Código Internacional de...Prof. Marcus Renato de Carvalho
 
SocialMedia Marketing Plan for TheSparksFoundation
SocialMedia Marketing Plan for TheSparksFoundationSocialMedia Marketing Plan for TheSparksFoundation
SocialMedia Marketing Plan for TheSparksFoundationnoufiraahmd
 
Top SEO Trends to Embrace in 2024‎ ‎ ‎ ‎
Top SEO Trends to Embrace in 2024‎ ‎ ‎ ‎Top SEO Trends to Embrace in 2024‎ ‎ ‎ ‎
Top SEO Trends to Embrace in 2024‎ ‎ ‎ ‎Jomer Gregorio
 
Why Digital Marketing Important for our Business.pdf
Why Digital Marketing Important for our Business.pdfWhy Digital Marketing Important for our Business.pdf
Why Digital Marketing Important for our Business.pdfInfyQ Seo Experts
 
ATRIUM GAMING : SLOT GACOR MUDAH MENANG TERBARU
ATRIUM GAMING : SLOT GACOR MUDAH MENANG TERBARUATRIUM GAMING : SLOT GACOR MUDAH MENANG TERBARU
ATRIUM GAMING : SLOT GACOR MUDAH MENANG TERBARUsayangkamuu240203
 

Recently uploaded (20)

Webinar: What the Hell is Legitimate Interest?
Webinar: What the Hell is Legitimate Interest?Webinar: What the Hell is Legitimate Interest?
Webinar: What the Hell is Legitimate Interest?
 
Content Segmentation for Organic Visibility
Content Segmentation for Organic VisibilityContent Segmentation for Organic Visibility
Content Segmentation for Organic Visibility
 
Being a PMM with a multi-product portfolio - Product Marketing Summit
Being a PMM with a multi-product portfolio - Product Marketing SummitBeing a PMM with a multi-product portfolio - Product Marketing Summit
Being a PMM with a multi-product portfolio - Product Marketing Summit
 
How to Scale Your Digital Marketing Services in 2024
How to Scale Your Digital Marketing Services in 2024How to Scale Your Digital Marketing Services in 2024
How to Scale Your Digital Marketing Services in 2024
 
NexGen Alignment: ABM’s Role in Uniting Marketing and Sales
NexGen Alignment: ABM’s Role in Uniting Marketing and SalesNexGen Alignment: ABM’s Role in Uniting Marketing and Sales
NexGen Alignment: ABM’s Role in Uniting Marketing and Sales
 
The Wealth of a Homeonwers association is analogous to the wealth of a Nation
The Wealth of a Homeonwers association is analogous to the wealth of a NationThe Wealth of a Homeonwers association is analogous to the wealth of a Nation
The Wealth of a Homeonwers association is analogous to the wealth of a Nation
 
Ultimate Guide to Personal Branding on LinkedIn.pdf
Ultimate Guide to Personal Branding on LinkedIn.pdfUltimate Guide to Personal Branding on LinkedIn.pdf
Ultimate Guide to Personal Branding on LinkedIn.pdf
 
Licença Lotter Pro - Conheça o Certificado Oficial da Licença Lotter Pro.pdf
Licença Lotter Pro - Conheça o Certificado Oficial da Licença Lotter Pro.pdfLicença Lotter Pro - Conheça o Certificado Oficial da Licença Lotter Pro.pdf
Licença Lotter Pro - Conheça o Certificado Oficial da Licença Lotter Pro.pdf
 
buy best digital marketing course in india
buy best digital marketing course in indiabuy best digital marketing course in india
buy best digital marketing course in india
 
5 Benefits Of Using Digital Marketing.pptx
5 Benefits Of Using Digital Marketing.pptx5 Benefits Of Using Digital Marketing.pptx
5 Benefits Of Using Digital Marketing.pptx
 
Snapshot of Consumer Behaviors of April 2024-EOLiSurvey (EN).pdf
Snapshot of Consumer Behaviors of April 2024-EOLiSurvey (EN).pdfSnapshot of Consumer Behaviors of April 2024-EOLiSurvey (EN).pdf
Snapshot of Consumer Behaviors of April 2024-EOLiSurvey (EN).pdf
 
Japanese Sauna Hat Trends - Totonoete Inc.
Japanese Sauna Hat Trends - Totonoete Inc.Japanese Sauna Hat Trends - Totonoete Inc.
Japanese Sauna Hat Trends - Totonoete Inc.
 
Klaus Schweighofer, Zakaj je digitalizacija odlična priložnost za medije, Sty...
Klaus Schweighofer, Zakaj je digitalizacija odlična priložnost za medije, Sty...Klaus Schweighofer, Zakaj je digitalizacija odlična priložnost za medije, Sty...
Klaus Schweighofer, Zakaj je digitalizacija odlična priložnost za medije, Sty...
 
Tea Gobec, Kako pluti po morju tehnoloških sprememb, Innovatif.pdf
Tea Gobec, Kako pluti po morju tehnoloških sprememb, Innovatif.pdfTea Gobec, Kako pluti po morju tehnoloških sprememb, Innovatif.pdf
Tea Gobec, Kako pluti po morju tehnoloških sprememb, Innovatif.pdf
 
How to Track, Measure & Communicate SEO Results
How to Track, Measure & Communicate SEO ResultsHow to Track, Measure & Communicate SEO Results
How to Track, Measure & Communicate SEO Results
 
Relatório da OMS / Unicef / IBFAN sobre a situação do Código Internacional de...
Relatório da OMS / Unicef / IBFAN sobre a situação do Código Internacional de...Relatório da OMS / Unicef / IBFAN sobre a situação do Código Internacional de...
Relatório da OMS / Unicef / IBFAN sobre a situação do Código Internacional de...
 
SocialMedia Marketing Plan for TheSparksFoundation
SocialMedia Marketing Plan for TheSparksFoundationSocialMedia Marketing Plan for TheSparksFoundation
SocialMedia Marketing Plan for TheSparksFoundation
 
Top SEO Trends to Embrace in 2024‎ ‎ ‎ ‎
Top SEO Trends to Embrace in 2024‎ ‎ ‎ ‎Top SEO Trends to Embrace in 2024‎ ‎ ‎ ‎
Top SEO Trends to Embrace in 2024‎ ‎ ‎ ‎
 
Why Digital Marketing Important for our Business.pdf
Why Digital Marketing Important for our Business.pdfWhy Digital Marketing Important for our Business.pdf
Why Digital Marketing Important for our Business.pdf
 
ATRIUM GAMING : SLOT GACOR MUDAH MENANG TERBARU
ATRIUM GAMING : SLOT GACOR MUDAH MENANG TERBARUATRIUM GAMING : SLOT GACOR MUDAH MENANG TERBARU
ATRIUM GAMING : SLOT GACOR MUDAH MENANG TERBARU
 

Legal Obstacles in Digital Marketing for Healthcare Companies

  • 1. Legal Obstacles in Digital Marketing for HealthCare Companies
  • 2. Widespread Digital Tech Has Transformed Marketing Overview
  • 3. Barriers to entry for Digital Healthcare marketing efforts Unique Challenges Privacy & Security Tech Compatibility
  • 4. Legal Obstacles There are Issues around Patient Access & Data • Traditional Marketing Methods are Changing (Online) • Physicians • HIPAA • Affordable Care Act • FTC • Devices/IoT • State Laws/Regulations
  • 5. Legal Obstacles: Online Access Online Health Info 72% Searched 35% Self Diagnose 52% Use Smartphones 70% Track Health Indicators 15% Track Using Med Device or Phone
  • 6. Legal Obstacles: Physician Considerations Physicians control ACCESS to Patients: • Prescribe/Test New Devices • Role as Medical Directors • Investors • Participation in studies • NOTE: Subject to Self-Referral & Anti -kickback Rules
  • 7. Legal Obstacles: HIPAA • HIPAA Privacy Rule • Framework • “Marketing” • Some Transactions Permitted • HITECH Act/Megarule • Financial Remuneration
  • 8. Legal Obstacles: Content FTC tasked with Safeguarding Consumers & Markets Digital Marketing Practices = Fertile Ground For FTC • Focus on Uses/Abuses of “Big Data” • HTC - Privacy By Design • Online Advertising Disclosure Guidelines • COPPA Rule • CAN-SPAM Act • Technical Notice & Consent Issues • Civil Litigation: ★ Google Double-Click (Tracking cookies)
  • 10. Best Practices 1. Review collection practices
  • 11. Best Practices 2. Review marketing partners
  • 12. Best Practices 3. Privacy Policy Tune-up | DNT, Online Eraser
  • 13. Best Practices 4. Put systems in place
  • 14. Best Practices 5. Data Collection, Storage & Use
  • 15. Thank You! David M. Adler | ADLER LAW GROUP Safeguarding Ideas, Relationships & Talent® 866.734.2568 www.adler-law.com David@adler-law.com adlerlaw.wordpress.com @adlerlaw

Editor's Notes

  1. There is a LOT to discuss when it comes to Marketing. Depending on your role and your goal, there can be any number of intellectual property, reputational, advertising, privacy and security issues. At the industry or market level there are additional state and federal regulatory and ongoing legislative concerns. Healthcare is the most-heavily regulated industry so marketing legal and regulatory compliance is additionally burdensome. Awareness of the regulatory landscape will help one identify trends and reduce compliance risks and headaches.
  2. Data consumption. diagnostic reports, patient treatment histories, records, communications Improved communication. Email, messaging, social networks Portal technology. Patients access personal information remotely Remote monitoring. Telehealth Accelerated adoption. Changes in healthcare laws, insurance forcing changes Mobile apps. Personal health monitoring and treatment.
  3. Challenges: highly regulated Privacy & Security: HIPAA, FTC, Third-party Controls (Cloud Services, EHR/EMR, Messaging, Platform/Network (Telehealth). Tech: Many platforms, many unique standards and low interoperability, Payor-directed systems and software applications
  4. Pew Internet is populated by reports that show Americans increasingly turn to digital resources to access information about and directly contribute to their own participation in the health care of themselves or loved ones. The digital channel is the premier method to contact and provide services to patients, etc. Success is dependent on two factors, access to actionable patient intelligence and 2) privacy and security compliance.
  5. HIPAA Privacy Rule -marketing purposes. Framework – authorization for any use or disclosure of PHI for marketing. “Marketing” generally a communication about a product or service that encourages recipients of the communication to purchase or use the product or service. Permits face-to-face Permits promotional gift of nominal value. Prior to HITECH Act, three communications were excluded: (i) plan of benefits; (ii) communications made for the treatment of the individual; and (iii) case management, care or treatments.
  6. Platform Issues FDA: Product Labeling: 4 sources info: (1) toll-free #; (2) referral to print ad (QR code); (3) referral to a healthcare provider; (4) an Internet web page. HIPAA: (1) Responding to patients; (2) posting photos/comments (training); vendors (marketing partners)
  7. Who is responsible for Data security? PHI- anonymization and de-identification Mapping data-location and control (vendors change) Empowerment/enforcement
  8. WHERE is the data? Multiple access Multiple stakeholders External factors v internal factors
  9. Review and updates privacy & security policies periodically Web & App Privacy Policies Information security Plan
  10. Consider Privacy/Data Risk assessment inputs: IT OPERATIONS LEGAL HR FINANCE PRODUCT SALES  MARKETING ENGINEERING  OTHER
  11. FTC v. Wyndham 1) Store sensitive information in encrypted format; 2) Prohibit use of easily-guessed passwords (especially changing “default”/factory-settings); 3) Use “readily available security measures” such as firewalls to limit access systems, company’s network, and the Internet; 4) Implement information security policies and procedures that prohibits out-of-date operating system and failure to maintain security updates; 5) Prohibit use of “default user IDs and passwords; 6) Maintain an inventory of computers connected to the network; 7) Restrict access of third-party vendors by specified IP addresses or temporary, limited access; 8) Employ reasonable to detection and prevention measures; and 9) Follow “proper incident response procedures” (e.g. failing to identify similar attack methods or malware).