The Trump administration on Tuesday said it would freeze federal funding for New York’s Medicaid Fraud Control Unit, a state agency responsible for investigating and prosecuting fraud in the safety-net government healthcare program.
In a letter sent to New York officials, U.S. Department of Health and Human Services Inspector General Thomas March Bell accused the state of not securing enough criminal indictments and convictions and said millions of dollars in funding would be suspended through at least Sept. 30.
The move is the second suspension of a state Medicaid fraud unit this year by the Republican Trump administration, and part of a barrage of anti-fraud actions it has aggressively promoted in the healthcare sector. They have included the creation of a new task force, targeted investigations, funding deferrals and demands for revalidation of healthcare providers that have…
IT & DATA SECURITY (MITIGATING THE “INSIDER THREAT”)
As seen in the TD Bank case, an employee with too much “access” can sell your customer data to syndicates.
- Principle of Least Privilege (PoLP): Employees should only have access to the specific folders and databases required for their current task.
- Access Revocation: Have a “Termination Checklist” that ensures all digital access (Email, VPN, Banking) is revoked within 60 minutes of an employee resigning or being dismissed.
- System Logs & Audit Trails: Enable “Read/Write Logging” on your server. If a customer’s data is leaked, you need to know exactly which login accessed that record and at what time.
- Encryption at Rest: Ensure that sensitive files (like your customer ID numbers or payroll spreadsheets) are encrypted so that if a staff member copies them to a USB, they cannot be read.
