What are the penalties if a covered entity or individual doesn comply with HIPAA?
HIPAA is the first federal law of U.S. to impose criminal penalties for improper use or disclosure of PHI. Criminal violations will be investigated and prosecuted by the United States Department of Justice and Federal Bureau of Investigation and can carry a fine up to 10 years in prison and $250,000 for violating the law with malice or for profit. HHS will investigate civil violations with penalties ranging up to $25,000 a year for any given type of violation.