Privacy Education Session CMHA-WECB/CCHC Volunteers/Students

Slides:



Advertisements
Similar presentations
HIPAA: An Overview of Transaction, Privacy and Security Regulations Training for Providers and Staff.
Advertisements

1. As a Florida KidCare community partner families entrust you to not only help them navigate the Florida KidCare system but to keep the information they.
Data Protection Information Management / Jody McKenzie.
HIPAA. What Why Who How When What Is HIPAA? Health Insurance Portability & Accountability Act of 1996.
HIPAA Basic Training for Privacy & Information Security Vanderbilt University Medical Center VUMC HIPAA Website:
National Health Information Privacy and Security Week Understanding the HIPAA Privacy and Security Rule.
The Health Insurance Portability and Accountability Act of 1996– charged the Department of Health and Human Services (DHHS) with creating health information.
1 HIPAA Education CCAC Professional Development Training September 2006 CCAC Professional Development Training September 2006.
NAU HIPAA Awareness Training
HIPAA THE PRIVACY RULE Reviewed December HISTORY In 2000, many patients that were newly diagnosed with depression received free samples of anti-
Kathy O’Brien NEON and NORrad – Current PHI Sharing and How Best to Comply with PHIPA August 26, 2004.
HEAVEN’S HANDS COMMUNITY SERVICE H.I.P.A.A. What is HIPAA? HIPAA stands for the Health Insurance Portability and Accountability Act, which was passed.
Taking Steps to Protect Privacy A presentation to Hamilton-area Physiotherapy Managers by Bob Spence Communications Co-ordinator Office of the Ontario.
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Legal Responsibilities in Health Care
HIPAA PRIVACY AND SECURITY AWARENESS.
Privacy and Security of Protected Health Information NorthPoint Health & Wellness Center 2011.
2 1.Client protection principles 2.Principle #6 in practice 3.Two components of protecting client data 4.Participant feedback 5.Practitioner lessons and.
Next ETCH Confidentiality and HIPAA Annual Review What you need to know. The Privacy Rule 1.
Part 6 – Special Legal Rights and Relationships Chapter 35 – Privacy Law Prepared by Michael Bozzo, Mohawk College © 2015 McGraw-Hill Ryerson Limited 34-1.
Medical Law and Ethics, Third Edition Bonnie F. Fremgen Copyright ©2009 by Pearson Education, Inc. Upper Saddle River, New Jersey All rights reserved.
Building a Privacy Foundation. Setting the Standard for Privacy Health Insurance Portability and Accountability Act (HIPAA) Patient Bill of Rights Federal.
Mr. Fleming.  Law passed by Congress in  Right to Privacy ◦ Medical information of patient can only be shared with doctor and professionals administering.
Privacy & Confidentiality
HIPAA THE PRIVACY RULE. 2 HISTORY In 2000, many patients that were newly diagnosed with depression received free samples of anti- depressant medications.
1 Privacy Plan of Action © HIPAA Pros 2002 All rights reserved.
Copyright © 2015 by Saunders, an imprint of Elsevier Inc. All rights reserved. Chapter 3 Privacy, Confidentiality, and Security.
Privacy Practices.
HIPAA Overview Why do we need a federal rule on privacy? Privacy is a fundamental right Privacy can be defined as the ability of the individual to determine.
Aged and Disabled Waiver (ADW) Health Insurance Portability and Accountability Act (HIPAA) Training 2015 October 2015.
HIPAA THE PRIVACY RULE Reviewed December HISTORY In 2000, many patients that were newly diagnosed with depression received free samples of anti-
HEALTH CARE & LAW. HEALTH CARE & THE LAW The integrity of health care is dependent upon providing individualized, competent, and safe care to clients.
The Health Insurance Portability and Accountability Act (HIPAA) requires Plumas County to train all employees in covered departments about the County’s.
HIPAA Privacy What Every Staff Member Needs to Know.
HIPAA Training Workshop #3 Individual Rights Kaye L. Rankin Rankin Healthcare Consultants, Inc.
Health Insurance Portability and Accountability Act (HIPAA) Primer for Observers, Volunteers, Medical Students Dr. Michael Palumbo- Privacy Officer/ EVP.
Developed for Ridgeview Institute 2015 Hospital Wide Orientation
HIPAA Privacy Rule Training
UNHCR‘s Policy on the Protection of Personal Data of Persons of Concern - An introduction (October 2016)
HIPAA Privacy and Security
Health Insurance Portability and Accountability Act of 1996
Protecting PHI & PII 12/30/2017 6:45 AM
HIPAA Privacy & Security
Legal and Ethical Responsibilities
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
Contingent Workforce: Global Privacy Laws Overview
Privacy & Confidentiality
Legal Responsibilities in Health Care
WHAT IS HIPAA AND HOW TO COMPLY WITH IT?
Move this to online module slides 11-56
Health Insurance Portability and Accountability Act of 1996 (HIPAA)
Legal Responsibilities in Health Care
G.D.P.R General Data Protection Regulations
Disability Services Agencies Briefing On HIPAA
CONTRACTS PRIVILEGED COMMUNICATION PRIVACY ACT
Welcome to the FERPA training for Faculty and Staff.
Move this to online module slides 11-56
Move this to online module slides 11-56
D3 Confidentiality.
Mandatory Breach Reporting (isn’t *that* bad)
Health Insurance Portability and Accountability Act
HIPAA Privacy & Security
HIPAA SECURITY RULE Copyright © 2008, 2006, 2004 by Saunders an imprint of Elsevier Inc. All rights reserved.
The Health Insurance Portability and Accountability Act
CONTRACTS PRIVILEGED COMMUNICATION PRIVACY ACT
Move this to online module slides 11-56
HIPAA Do’s and Don'ts: What is Really Behind Protected Health Information (PHI) and Health Care Privacy Rules Paul Sisler, Director, Information Services;
Handling information 14 Standard.
The Health Insurance Portability and Accountability Act
Presentation transcript:

Privacy Education Session CMHA-WECB/CCHC Volunteers/Students CMHA-WECB Privacy Training Privacy Education Session CMHA-WECB/CCHC Volunteers/Students Laura Liebrock Chief Quality Improvement & Privacy Officer

Overview An introduction to Privacy Legislation and how it applies at CMHA-WECB What is PHIPA? Consent What I Need to Know Personal Behaviour

CMHA-WECB Privacy Training What is the PHIPA? Personal Health Information Protection Act Privacy legislation for the health care sector – e.g. Hospitals, CHCs, Community Mental Health Agencies, CCAC, Public Health Units Compliance required in November 2004

What is PHIPA? What is the purpose of PHIPA? To establish rules for the collection, use and disclosure of personal health information (PHI) To provide individuals with a right to access and correct PHI To provide for review and resolution of complaints about PHI

CMHA-WECB Privacy Training When Does PHIPA Apply? PHIPA applies to: Health Information Custodians (HICs) – organizations like CMHA-WECB that collect, use and disclose PHI Agents of HICs – employees, students, volunteers, affiliated physicians, therapists, consultants, contractors, researchers Non HICs – others who receive PHI from a HIC – police, insurers, social service partners

What is Personal Health Information? CMHA-WECB Privacy Training What is Personal Health Information? Personal Health Information (PHI) is: Oral (spoken) or recorded information (written or electronic) Information that on its own or linked can be used to identify an individual Relates to an individual’s physical and/or mental health including diagnosis and family history

What is Personal Health Information? Relates to health care received or to the people providing the care OHIP number Identification of a substitute decision maker Test results Anything else included in a record which contains PHI that can identify an individual

Why was PHIPA introduced? PHI is amongst the most sensitive information available on an individual PHI in the wrong hands can have a devastating impact on reputation, employment, obtaining insurance and family relationships

Why was PHIPA introduced? PIPEDA (Personal Information Protection and Electronic Documents Act) January 2004, did not focus on issues related to healthcare PHIPA provides direction to all individuals who collect, use and disclose personal health information (PHI) In particular, mental health information carries a negative stigma in our society Our society is rights based and PHIPA gives the client right of access The increasing use of electronic information systems may increase risk of disclosure of PHI

Privacy Principles Accountability Purpose for Collection Consent Limit Collection Limit Use & Disclosure Accuracy Safeguards Openness Access Challenge Compliance

Using the Privacy Principles Creates new rules for collection, use and disclosure of PHI Introduces the concept of HIC Differentiates between: Disclosure inside and outside the “circle of care” Disclosure for health care or other purposes Situations where express, implied or no consent is required

CONSENT Express Consent Written, verbal, by telephone or electronically Written, signed consent must be placed in the health record Verbal consent must be documented in the health record

CONSENT Implied Consent Is generally understood as being consent given by an individual’s action or inaction Example – you are opening a record and asking the client for information. They answer your questions, implying consent is given Example – a client arrives at a lab to have blood work drawn. They sit and put out their arm, implying consent is given.

Personal Behaviour Wear a name tag and introduce yourself in person and on the phone by your name and status Share PHI on a need to know basis with people directly involved in the client’s care

Personal Behaviour Avoid discussions with each other or with clients, in hallways or public areas Think before you share!

Personal Behaviour Do not attempt to interpret the privacy legislation – ASK!

Personal Behaviour Lock your screen when away from your work station

Personal Behaviour Remember to keep your computer screen turned so others cannot view it

Personal Behaviour Practice a “clean desk” policy Do not keep client information in your desk/office/home This Not this!

Personal Behaviour Consider the sensitivity of material when, printing, emailing or faxing PHI. Ensure the security of the recipient. Printing Email Fax

Personal Behaviour Correctly dispose of any hardcopy documents containing personal health information by shredding.

Personal Behaviour Maintain privacy & confidentiality of information related to CMHA/CHC staff and affiliates – respect your colleagues’ right to privacy

Personal Behaviour Do not review information or ask questions about PHI just for “interest”

Personal Behaviour Look for privacy issues and report them! Report all “near misses” If you have a concern about a privacy issue, report it to Volunteer Services or the Chief Privacy Officer

Personal Behaviour Contact Laura Liebrock, Chief Quality Improvement & Privacy Officer, for questions relating to PHI and privacy

Non-Compliance The CPO investigates all breaches An affected individual may file a complaint with the Privacy Commission, sue the agency for damages and/or sue the individual provider for damages Max. $250,000 for the agency Max. $50,000 for the individual

Non-compliance Failure to maintain privacy and confidentiality may result in discipline including: Loss of privileges Loss of affiliation Reporting to your professional college Civil action Criminal prosecution Institutional and personal fines Termination of contract Termination of Employment

Summary If you have any questions about privacy issues always ask Volunteer Services or the Chief Privacy Officer. Review the privacy handouts and complete the self-assessment. Electronically sign the Privacy Agreement. Congratulations – you have completed the privacy orientation!