Oakwood Hospital Worker Fired For Facebook Comments in HIPAA Violation

Michigan healthcare provider, Oakwood Healthcare, Inc., has verified that an employee at Oakwood Hospital & Medical Center had their employment terminated for posting derogatory remarks about a patient on their Facebook page, leading to a HIPAA privacy violation

Join our newsletter:

According to FOX 2 Detroit, a hospital employee, made two inflammatory remarks on their Facebook page regarding a patient. The employee had allegedly claimed to have encountered an individual she labeled as a "cop killer" and expressed a wish for them to "rot in hell". This following a police officer and an alleged bank robber being hospitalized after an exchange of gunfire.

After discovering the Facebook posts, their supervisors informed them that they would need to conduct an investigation. The employee quickly deleted the posts, believing that any consequences would likely be a reprimand or suspension. To their surprise, the hospital decided to terminate their employment due to breaching HIPAA data privacy regulations.

In a statement issued by Oakwood Hospital, it was emphasized that the hospital places a strong emphasis on patient privacy and mandates training for all staff on data security and privacy regulations and employees are explicitly instructed to maintain the confidentiality of patient information.

In this case, the termination of the employee's contract was deemed necessary due to a violation of HIPAA rules, even though the patient's name was not revealed the employee's role at the hospital, in conjunction with the patient's specifics shared, may potentially expose the patient's identity. Even without disclosing a name this is a breach of HIPAA privacy regulations.

Healthcare organizations must pay attention to this incident and make sure that their social media policies are current. Employees should be trained on data privacy rules and regulations, as well as informed about how these regulations apply to social media posts and other online activities.

 

Quick & Simple

Discover Our Cybersecurity Compliance Solutions:

Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you

 NIST SP 800-171 & CMMC Compliance App

NIST SP 800-171 & CMMC Compliance

Become compliant, provide compliance services, or verify partner compliance with NIST SP 800-171 and CMMC requirements.
 HIPAA Compliance App

HIPAA Compliance

Become compliant, provide compliance services, or verify partner compliance with HIPAA security rule requirements.
 FAR 52.204-21 Compliance App

FAR 52.204-21 Compliance

Become compliant, provide compliance services, or verify partner compliance with FAR 52.204-21 Basic Safeguarding of Covered Contractor Information Systems requirements.
 ISO 27001 Compliance App

ISO 27001 Compliance

Become compliant, provide compliance services, or verify partner compliance with ISO 27001 requirements.