Phoenix Health System Survey Out: The winter 2005-2006 edition of the quarterly HIPAA survey compiled by Phoenix Health System is out. I haven't had a chance to fully review the results, but a couple of things jump out: About 20% of covered entities aren't compliant with HIPAA privacy. That's 3 years after the compliance date. Basically, that means they won't ever be compliant. Also, about half of providers and 3/4 of payors are compliant with HIPAA security, one year after the compliance date (except for small payors, who have until this spring to get security done right). Not good.

