Mr.Jonathan P. Tomes

Area Of Expertise : HIPAA
25 Years Of Experience
Training Industry : Hospital & Healthcare

Jonathan P. Tomes is a national HIPAA compliance consultant and attorney admitted in Illinois, Missouri, Kansas, and Oklahoma who practices in Kansas City, Kansas, and the greater Kansas City area. After he had retired from the U.S. Army as a JAGC officer, having been a military judge (which taught him how to read and interpret government regulations) and having spent several years as a military intelligence officer (which taught him about gathering and using information), he taught law at IIT Chicago-Kent College of Law before he opened his own private law practice. Mr. Tomes is President of EMR Legal, a national HIPAA compliance consulting firm. EMR Legal has consulted and trained over 1,000 HIPAA clients since 1998, ranging from Federal, State and County governments to large hospitals to small practices. Jon is currently working on an online HIPAA training video and an online HIPAA risk assessment.

9 results Found
Recorded Webinar

HIPAA Compliance During COVID-19: OCR Guidance and Best Practices

During the Coronavirus Disease 2019 (COVID-19) public health emergency, the HHS Office for Civil Rights (OCR) provided guidance that helps explain privacy rights laws as well as how the HIPAA Privacy Rule allows patient information to be shared in the pandemic ...

  • Basic & Intermediate & Advanced
  • 60 Mins
Recorded Webinar

HIPAA Risk Analysis

Introduction—the current state of HIPAA enforcement What is risk analysis The requirement to perform risk analysis Sanctions for failure to perform risk analysis How to conduct risk analysis Assemble a good team Identify assets Determine risks to thos ...

  • Basic & Intermediate & Advanced
  • 90 Mins
On-Demand Webinar

HIPAA Misconceptions

This 60-minute webinar on the misconceptions on what uses and disclosures are proper under the HIPAA Privacy Rule as amended by the HITECH Act and the Omnibus Rule will help attendee avoid making or failing to make disclosures that can result in medical erro ...

  • Basic & Intermediate & Advanced
  • 90 Mins
Free Webinar

HIPAA Breach Notification Rule - What you must do to Comply

HIPAA, the HITECH Act and now changes under the Omnibus Rule require covered entities and business associates to report certain breaches. Not all security incidents are breaches, and not all breaches are reportable breaches. This webinar will explain the law i ...

  • Basic & Intermediate & Advanced
  • 90 Mins
Recorded Webinar

Road to HIPAA Compliance: How to Handle HIPAA and HITECH Security Breaches, Complaints, and Investigations

HIPAA requires a complaint procedure (policy). The webinar will suggest what such a document should contain as it also will for the required report procedure (what is reportable, who reports, to whom, and required/suggested contents of the report) and the requ ...

  • Basic & Intermediate & Advanced
  • 75 Mins
Free Webinar

How to Write and Adopt HIPAA Policies and Procedures

The webinar, given by an expert HIPAA consultant, author, attorney, and expert witness, will begin an introduction stressing the importance of complying with the requirement to write and adopt policies and procedures, both those expressly stated and those that ...

  • Basic & Intermediate & Advanced
  • 60 Mins
Recorded Webinar

Mental and Behavioral Health: Reporting of Clients Who Pose a Danger to Self or Others

This webinar will give attendees the knowledge to evaluate whether and how to report that a client is a risk to himself or others without violating HIPAA, 42 C.F.R. Part 2 (regulating substance abuse treatment information) and other state and federal confide ...

  • Basic & Intermediate & Advanced
  • 90 Mins
Recorded Webinar

HIPAA Breach Notification Rule

What is a security incident What is a security breach What is a reportable security breach How do you respond to investigations by DHHS How do you minimize harm to the subjects of the breach to minimize liability How do you investigate a security incide ...

  • Basic & Intermediate & Advanced
  • 90 Mins
On-Demand Webinar

How to do a HIPAA and HITECH Risk Analysis

A key requirement of the HIPAA and HITECH regulations is that covered entities and business associates must conduct a comprehensive and thorough assessment of the potential risks and vulnerabilities to the Confidentiality, Integrity, and Availability (CIA) of ...

  • Basic & Advanced
  • 90 Mins