A covered entity discovers that its HIPAA training content has not been updated in four years despite significant policy changes. This represents a violation of which HIPAA requirement?
-
A
The Breach Notification Rule's timeliness standard
-
B
The Privacy Rule's requirement to train workforce members on current material policies and procedures
-
C
The Security Rule's encryption standard
-
D
The Omnibus Rule's BAA update requirement