HIPAA Online Student Orientation

Slides:



Advertisements
Similar presentations
Independent Contractor Orientation HIPAA What Is HIPAA? Health Insurance Portability and Accountability Act of 1996 The Health Insurance Portability.
Advertisements

Privacy and Information Security Training ( ) VUMC Privacy Website
1. As a Florida KidCare community partner families entrust you to not only help them navigate the Florida KidCare system but to keep the information they.
HIPAA Privacy Training. 2 HIPAA Background Health Insurance Portability and Accountability Act of 1996 Copyright 2010 MHM Resources LLC.
Health Insurance Portability and Accountability Act HIPAA Education for Volunteers and Students.
Overview of HIPAA regulations Privacy policies Presence Regional EMS System 2014 HIPAA: Health Insurance Portability and Accountability Act 1.
HIPAA. What Why Who How When What Is HIPAA? Health Insurance Portability & Accountability Act of 1996.
HIPAA Basic Training for Privacy & Information Security Vanderbilt University Medical Center VUMC HIPAA Website:
Confidentiality and HIPAA
COBB/DOUGLAS COMMUNITY SERVICES BOARD Confidentiality and Privacy of Consumer Information.
LMC WHAT IS HIPAA AND HOW TO COMPLY WITH IT? Health Insurance Portability and Accountability Act of 1996.
Increasing public concern about loss of privacy Broad availability of information stored and exchanged in electronic format Concerns about genetic information.
The Health Insurance Portability and Accountability Act of 1996– charged the Department of Health and Human Services (DHHS) with creating health information.
Page 1 of 16 DMC HIPAA Privacy and Security DMC’S COMMITMENT TO COMPLIANCE: HIPAA PRIVACY and SECURITY DMC Corporate Audit and Compliance Department Detroit.
HIPAA Health Insurance Portability & Accountability Act.
WORKFORCE CONFIDENTIALITY HIPAA Reminders. HIPAA 101 The Health Insurance Portability and Accountability Act (HIPAA) protects patient privacy. HIPAA is.
HIPAA Health Insurance Portability and Accountability Act.
HIPAA 101 Education. WHAT IS HIPAA??? WHAT IS HIPAA? The Health Insurance Portability and Accountability Act The Health Insurance Portability and Accountability.
1 HIPAA Education CCAC Professional Development Training September 2006 CCAC Professional Development Training September 2006.
NAU HIPAA Awareness Training
HIPAA Health Insurance Portability and Accountability Act 1.
1 Louisiana Department of Health and Hospitals Basic HIPAA Privacy Training: Policies and Procedures 01/09/
© 2009 The McGraw-Hill Companies, Inc. All rights reserved 3-1 LEGAL AND ETHICAL ISSUES in Medical Practice, Including HIPAA PowerPoint® presentation.
HIPAA & Security Awareness Training Annual Mandatory Education.
Health Insurance Portability & Accountability Act “HIPAA” To every patient, every time, we will provide the care that we would want for our own loved ones.
HIPAA THE PRIVACY RULE Reviewed December HISTORY In 2000, many patients that were newly diagnosed with depression received free samples of anti-
Are you ready for HIPPO??? Welcome to HIPAA
HIPAA How can you maintain patient privacy and confidentiality? General Medicine LCCA.
HIPAA HIPAA Health Insurance Portability and Accountability Act of 1996.
Professional Nursing Services.  Privacy and Security Training explains:  The requirements of the federal HIPAA/HITEC regulations, state privacy laws.
SAFEGUARDING DHS CLIENT DATA PART 2 SAFEGUARDING PHI AND HIPAA Safeguards must: Protect PHI from accidental or intentional unauthorized use/disclosure.
V OLUNTEER P RIVACY AND INFORMATION SECURITY T RAINING VA San Diego Healthcare System.
HIPAA What’s Said Here – Stays Here…. WHAT IS HIPAA  Health Insurance Portability and Accountability Act  Purpose is to protect clients (patients)
HIPAA Basic Training for Privacy and Information Security Vanderbilt University Medical Center VUMC HIPAA Website: HIPAA Basic.
HIPAA Privacy & Security EVMS Health Services 2004 Training.
HIPAA Privacy & Security Kay Carolin Barbara Ann Karmanos Cancer Center March 2009.
HIPAA PRIVACY AND SECURITY AWARENESS.
Privacy and Security of Protected Health Information NorthPoint Health & Wellness Center 2011.
HIPAA OBJECTIVES  Define HIPAA  Define PHI  Use of PHI  Your rights  Your responsibilities.
HIPAA Training Developed for Ridgeview Institute 2012 Hospital Wide Orientation.
Health Insurance Portability and Accountability Act of 1996 HIPAA Privacy Training for County Employees.
Understanding HIPAA (Health Insurandce Portability and Accountability Act)
© 2013 The McGraw-Hill Companies, Inc. All rights reserved. Ch 8 Privacy Law and HIPAA.
HIPAA BASIC TRAINING Presented by Anderson Health Information Systems, Inc.
HIPAA THE PRIVACY RULE. 2 HISTORY In 2000, many patients that were newly diagnosed with depression received free samples of anti- depressant medications.
A Road Map to Research at Jefferson: HIPAA Privacy and Security Rules for Researchers Presented By: Privacy Officer/Office of Legal Counsel October 2015.
1 Privacy Plan of Action © HIPAA Pros 2002 All rights reserved.
HIPAA Overview Why do we need a federal rule on privacy? Privacy is a fundamental right Privacy can be defined as the ability of the individual to determine.
HIPAA Privacy What Every Staff Member Needs to Know.
Health Insurance Portability and Accountability Act (HIPAA) Primer for Observers, Volunteers, Medical Students Dr. Michael Palumbo- Privacy Officer/ EVP.
Developed for Ridgeview Institute 2015 Hospital Wide Orientation
HIPAA Privacy and Security
HIPAA PRIVACY & SECURITY TRAINING
HIPAA THE PRIVACY RULE Reviewed December 2012.
WHAT IS HIPAA AND HOW TO COMPLY WITH IT?
HIPAA Privacy & Security
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
Privacy & Confidentiality
WHAT IS HIPAA AND HOW TO COMPLY WITH IT?
HIPAA PRIVACY AWARENESS, COMPLIANCE and ENFORCEMENT
Disability Services Agencies Briefing On HIPAA
Health Insurance Portability and Accountability Act
HIPAA Privacy & Security
HIPAA SECURITY RULE Copyright © 2008, 2006, 2004 by Saunders an imprint of Elsevier Inc. All rights reserved.
HIPAA Overview.
The Health Insurance Portability and Accountability Act
HIPAA & PHI TRAINING & AWARENESS
HIPAA Do’s and Don'ts: What is Really Behind Protected Health Information (PHI) and Health Care Privacy Rules Paul Sisler, Director, Information Services;
The Health Insurance Portability and Accountability Act
Presentation transcript:

HIPAA Online Student Orientation Health Insurance Portability Accountability Act

HIPAA Standards at Presence Health Protect patient rights by giving access to their confidential Health information and control over how this information is used. Protect the physical security of resident and patient, confidential health information.

Who is Included in HIPAA Standards? Everyone! Any one who has the potential to come in contact with confidential health information.

Objectives Review HIPAA Privacy & Security Standards Review what you need to do to maintain these standards.

Privacy and Security Standards Privacy Standards ensure that patients have access and control over how their health information is utilized. These standards deal with patient expectations of how we use that information.

Privacy and Security Standards Security Standards ensure that we keep patient health information, safe and secure. This includes all health information that is stored physically and electronically.

“I cannot tell you what is going on with your loved one due to HIPAA” What HIPAA is Not HIPAA is not a reason to withhold or discuss a patient’s condition with a family member. “I cannot tell you what is going on with your loved one due to HIPAA” What should be done is to verify the identity of the caller or visitor and ask verbal permission to share information with the family member.

Infractions Failure to comply with HIPAA Regulations can subject Presence to severe penalties. Individual Presence employees/students may also face criminal penalties. Wrongful disclosure of information: $50,000 and/or one year in prison. Obtaining information under false pretenses: $100,000 and/or prison for up to five years. Intent to sell: $250,000 and up to ten years in prison.

What happens when patients don’t trust us? HIPAA Privacy Breaches in Confidentiality 1 out of every 5 Americans believe that their health information has been used inappropriately. 1 in 6 Americans report that they have provided inaccurate information to a health provider because they feel it would not be kept confidential. What happens when patients don’t trust us?

Protected Health Information (PHI) Name, address, city, county, zip code, fingerprints, names of relatives, name of employer, date of birth, telephone number, social security number, fax number, photos, medical record or account numbers, and license number. Any information that can be used to identify an individual. Shared in any form, verbal, written, or electronic.

Do I need this information to do my job? Protection of PHI We must take reasonable steps to supply the information that is MINIMALLY necessary to achieve the intended purpose of the disclosure. Access is given on a Need to Know Basis: Do I need this information to do my job?

Vital Behaviors to Protect PHI Only share information on a need to know basis and accessing and disclosing information as specifically required by your duties. When engaging in verbal conversation, keep your voice down, close doors or curtains. Never discuss patient information in elevators or other public places( ex. Cafeteria) Patient’s charts are stored out of public view. Reduce all patient information that could be visible to the general public.

Vital Behaviors to Protect PHI cont. When announcing a patient overhead, use of name is OK, however the patient/resident or family member should be referred to a reception desk or other non-specific location. When leaving information on answering machines limit information to: Name of the facility or physician Time of appointment If necessary to discuss treatment or procedures, leave a call back number

PHI – Access & Control Notice of Privacy Practices It is not the intent of HIPAA to stand in the way of using health information for normal operation: Treatment, Payment or other Health Care Related Operations. This document informs our patients how we use and disclose their protected health information.

Authorization Form HIPAA Standards state that Patients have a right to view or obtain a copy of their medical record. This is done through the Authorization form. The Authorization form also allows patients and residents to consent to the disclosure of their PHI to third parties.

Presence Health Authorization Form One needs to be printed and signed for HIPAA by students for clinical rotations

Sharing is NOT caring Willful or intentional HIPAA violations will result in immediate dismissal and loss of Presence St. Mary’s Hospital as a clinical rotation site for that student

HIPAA Security Standards Not only are we responsible for access, control and confidential handling of patient information, we are also responsible for the physical security of that information.

Presence Health Security Measures Presence Health takes a 3-pronged approach to protect confidential health information: Administrative Safeguards – specific policies and procedures that ensure HIPAA Security is a priority. Physical Safeguards – protective software, firewalls and controls. Technical Safeguards – encryption, password protection.

Workstation Management Workstations are available for authorized use only. Unauthorized activities include: Any activity that violates the privacy of residents, patients or employees. Unauthorized copying, or use, of PHI, Presence Health property, and/or copyrighted material. Activities that violate harassment policies. Circumventing workstation security. Any commercial activity other than expressly permitted.

Workstation Management All devices have password protection You are responsible for your password and must never share it with anyone – for any reason. Password development: Make your password at least 6 characters long. Include numbers and special characters. Use upper and lower case characters.

Workstation Management Logging in and out: Log out to lock your computer every time you leave your workstation. Never leave a computer unattended, logged in under your personal password. Never log in for anyone else. Use CTRL + ALT + Delete to lock your computer.

Workstation Management Virus Control All computers have anti-virus software, HOWEVER, new viruses appear everyday. Never open unexpected documents from unknown sources!

Electronic Applications E-Mail Proper use of e-mail within Presence Health is your professional responsibility. Each and every e-mail you send represents Presence Health. E-Mail Expectations: Do not type in ALL CAPS. Check your email and mailbox in a timely manner Do not forward any joke, “chain letter” or non-business related emails. Never send PHI, without confirming the party received this information. Use the SEND SECURE feature in Outlook.

Electronic Applications Sending PHI Electronically: Before you send PHI, you must get your immediate supervisors approval, approval from the patient and password protect all documents.

Electronic Applications Internet Application: All use of the internet is for business purposes only. Inappropriate use of the Internet includes: Any adult explicit materials Hate speech of any kind. Sites that support criminal skills Audio/Video streaming movies MP3 or other Audio files.

Electronic Applications Faxes: Fax from a machine in a secured area. Include a cover sheet with the confidentiality statement. Double check the phone number: - Before entering on the key pad -After entering on the key pad Pick up documents after sending. Retrieve confirmation sheet after sending. Call and make sure another qualified person is there to retrieve the fax.