Risk and Security LLC

Risk Assessments, Training and More

This content shows Simple View

October 2011

Webinar Looks at New OSHA Workplace Violence Directive

Workplace Violent Incidents have been on the rise in several specific organizations, including hospitals, home health organizations, social workers who do in home visit, and also late-night retail stores.

On September 8, 2011, OSHA suddenly released their internal Directive on what their OSHA investigators look for when they go to an organization to investigate a Workplace Violence incident.

Whether the incident involves a domestic violence incident, like when a husband shoots his wife at work; or whether it is patient violence against the Emergency Room nurses, it is a big problem that has been increased over the last 8 years.

We have set up a special no-cost webinar to review the new directive and see what it means for employers. Join us to look at how to protect your organization and make sure your staff, and patients stay safe.



Why Bother with a HIPAA Risk Analysis Anyway?

People tell me all the time that their management doesn’t want them to do a risk analysis, even if it’s a requirement.  Sometime they say that they have no budget
to fix anything – so why bother?

Even if it’s a requirement, like new workplace violence assessments, or a federal law like the required HIPAA risk analysis, there are people who want to do it in 30 minutes in a spreadsheet, without conferring with other staff members, without bothering to do a walk-through of the facility, without management’s enthusiastic support.

Here is a list of good reasons to do a Risk Analysis for HIPAA, even if you are not sure about whether you need it or not:

1.   It’s a Federal law.   It’s possible that no one will know if you don’t do it, but
      what if you have a MassGeneral-style data breach next week?

2.   It saves the organization BIG BUCKS, by doing the cost benefit analysis so
      the IT department can implement controls that actually increase protection
      AND reduce potential threats at the same time.

3.   A Risk Analysis acts like a security awareness training program if you
      involve the entire hospital or healthcare staff.  Many times they aren’t
      aware of the policies and procedures, and having them answer the
      HIPAA compliance surveys is a great no-cost refresher cost.

4.   You can uncover REAL vulnerabilities and fix them right away.  For example,
      you may not know who’s taking your database home on their unencrypted
      laptop.   You may not know that only 20% of the hospital staff took time to
      take the online training!  This lets your IDENTIFY problems and FIX them.

5.   It instantly makes the security analyst/information security officer the
      SMARTEST person in the room.  You know understand everything about
      protection of medical records in your organization!

6.   Regulators are getting CASH BONUSES for finding problems.  Don’t let
      them vacation in the south of France because they found a vulnerability
      in your IT systems!

Start your risk analysis today – and I will make sure YOU get all the credit!



Obesity is Being Subsidized by Federal and County Governments!

Chris Christy is a guy who looks like he is heavy enough to be pre-diabetic, must have high blood pressure, probably high cholesterol, too.

We all know what this fat-syndrome looks like.  Michelle Obama knows, with her emphasis on reducing childhood obesity.  Jamie Oliver knows with his effort to make school cafeterias healthier.

Here’s the DISCONNECT – the federal government is subsidizing unhealthy, bad food that contributes to our national health crisis.  Did you know the government INVENTED high fructose corn syrup to help farmers.  

Local city and county government subsidize bad food in their school cafeterias because it’s easier to let McDonalds make the food, then the ‘cooks’ don’t actually have to cook, just heat up the pre-packaged food.

Watch TV shows like THE BIGGEST LOSER, and see how being overweight causes emotional problems, as well as health problems and you can just go to the local mall to see how prevalent the problem.

It’s SO EASY to eat healthy and get healthy but this healthy message is drowned in government fundings for beef producers, cattle barons, pork producers, chicken farmers and even the salt lobby.

Yes, the SALT LOBBY wants the government to stop telling people they are eating too much salt and to stop setting healthy limits.

I think this country is ready for a nutrition revolution – don’t eliminate the unhealthy choices, but don’t subsidize them!  Take away their free money and food will be right-priced and the country’s energy can go to teaching people about eating healthy.

This is such a frustrating mess, energized by my own lifelong battle with weight –
that some days I want to just walk around the country, door, to door, doing personal health risk assessments – showing people how to eat and cook healthier!

The SALT LOBBY?  Give me a break…



OSHA Starts New Enforcement Initiative for Workplace Violence Issues

On September 8, OSHA issued a new directive about enforcement activity on workplace violence issues.  This directive (CPL 02-01-052) takes effective on Sept. 8, 2011 and is called Enforcement Procedures for Investigating or Inspecting Workplace Violence Incidents.  It details new procedures for the OSHA inspectors, but it is also a valuable document to show employers what they can expect.

The directive follows the shocking news that in 2010, 18% of workplace fatalities were caused by assaults and violent acts, while only 14% were caused by falls, according to the Bureau of Labor Statistics.

Workplace violence incidents are even higher in the hospital and healthcare industries.

The new inspection directive shows how OSHA inspectors are going to look at employers to see whether they have performed a workplace violence analysis.  These assessments follow the security risk assessment model and should take into account the threat level at the organization, the history of incidents and examination of trends, and whether ‘accepted’ controls have been implemented at the place of employment.

Some of the ‘accepted controls’ they will be examining include:

  • Having a recent workplace violence analysis
  • Having a formal workplace violence training program in place
  • Showing the employer had incident reports to identity possible threat levels
  • Methods the employer used to inform employees of the risk of workplace violence
  • Evidence the employer has a workplace violence prevention plan in place
  • Evidence the employer has a current security plan
  • There are also a set of recommended physical controls that include proper lighting, cameras, curved mirrors, etc.

For more information, or a copy of the document, email info@riskwatch.com.




top