EMPLOYER HIPAA COMPLIANCE STRATEGIES HIPAA Summit Audio Conference

Slides:



Advertisements
Similar presentations
Todd Frech Ocius Medical Informatics 6650 Rivers Ave, Suite 137 North Charleston, SC Health Insurance Portability.
Advertisements

Security Vulnerabilities and Conflicts of Interest in the Provider-Clearinghouse*-Payer Model Andy Podgurski and Bret Kiraly EECS Department & Sharona.
HIPAA Privacy Training. 2 HIPAA Background Health Insurance Portability and Accountability Act of 1996 Copyright 2010 MHM Resources LLC.
HIPAA Privacy Rule Training
Copyright Eastern PA EMS Council February 2003 Health Information Portability and Accountability Act It’s the law.
HIPAA Privacy Training Your Name Here. © 2004 MHM Resources Inc.2 HIPAA Background Health Insurance Portability and Accountability Act of 1996.
HIPAA PRIVACY REQUIREMENTS Dana L. Thrasher Constangy, Brooks & Smith, LLC (205) ; Victoria Nemerson.
Health Insurance Portability and Accountability Act (HIPAA)HIPAA.
Presents: Weekly HIPAA Teleconference Revised
NAU HIPAA Awareness Training
ITEC 6324 Health Insurance Portability and Accountability (HIPAA) Act of 1996 Instructor: Dr. E. Crowley Name: Victor Wong Date: 2 Sept
HIPAA Health Insurance Portability and Accountability Act.
COMPLYING WITH HIPAA PRIVACY RULES Presented by: Larry Grudzien, Attorney at Law.
Improving Efficiency and Increasing Patient Satisfaction by Leveraging HIPAA Standards, Including Privacy and Transactions and Data Code Sets Presented.
HIPAA Compliance Strategies for Employers, METs, MEWAs and Taft Hartley Union Trust Funds The HIPAA Colloquium at Harvard University Presented by: Melissa.
HIPAA TRANSACTIONS HIPAA Summit IV 2002 UPDATE. HHS Office of General Counsel l Donna Eden l Office of the General Counsel l Department of Health and.
August 22, 2002 THE HIPAA COLLOQUIUM at Harvard University A. John Blair, III, MD Chairman and Chief Executive Officer Taconic IPA, Inc. Fishkill, NY HIPAA.
PricewaterhouseCoopers Transaction Compliance Date Extension & Privacy Standards NPRM Audioconference April 19, 2002 HIPAA Administrative Simplification.
Approaches to Implementation of the Transactions and Codes Sets Addendum Presented by: Steven S. Lazarus, PhD, FHIMSS President Boundary Information Group.
Copyright Fleisher & Associates A HIPAA PRIMER FOR PUBLIC HEALTH PEOPLE CPHA-N Conference 2003 January 30, 2003 Presented by: Steven M. Fleisher,
Making Health Savings Accounts Work: Interoperable with Health Plans, Providers and Patients Steven S. Lazarus, PhD, CPEHR, CPHIT, FHIMSS September 27,
STEVEN S. LAZARUS, PHD, CPEHR, CPHIT, FHIMSS PRESIDENT, BOUNDARY INFORMATION GROUP AUGUST 20, – The Twelve Year Journey is Not Over.
HIPAA TRANSACTIONS 2002 UPDATE. HHS Office of General Counsel l Donna Eden l Office of the General Counsel l Department of Health and Human Services.
HIPAA Michigan Cancer Registrars Association 2005 Annual Educational Conference Sandy Routhier.
Copyright Boundary Information Group 2002 HIPAA CASE STUDIES: A SURVEY OF 10 HEALTH SYSTEMS’ HIPAA COMPLIANCE EFFORTS Steven S. Lazarus, PhD, FHIMSS President,
Davis Wright Tremaine LLP Case Study: Small Group Health Plan HIPAA Privacy Compliance for Employers September 15, 2003 Speaker Jason Froggatt Becky Williams.
Organizational and Legal Issues -- Developing organization and governance models for HIE Day 2 -Track 5 – SECOND SESSION – PRIVACY AND SECURITY CONNECTING.
The Fifth National HIPAA Summit – October 30, 2002 What to Do Now: Operational Implementation of HIPAA Privacy and Security Training Presented by: Steven.
HIPAA BASIC TRAINING MODULE 1C – Overview (For staff who do not generally create Protected Health Information) Anderson Health Information Systems, Inc.
1 National Audioconference Sponsored by the HIPAA Summit June 6, 2002 Chris Apgar, CISSP Data Security & HIPAA Compliance Officer Providence Health Plan.
HIPAA Vendor Readiness Siemens/HDX Audio Telecast July 24, 2002.
HIPAA Privacy Rules: What Are Plan Sponsors Required to Do?
Transactions and Code Sets and the National Provider Identifier (NPI) Steven S. Lazarus, PhD, CPEHR, CPHIT, FHIMSS September 25, 2006.
1 PARCC Data Privacy & Security Policy December 2013.
HIPAA History March 3, HIPAA Ruling Health Insurance Portability Accountability Act Health Insurance Portability Accountability Act Passed by Congress.
Vendor and Clearinghouse Requirements for HIPAA Compliance HIPAA Summit Audio Conference Presented By: Steven S. Lazarus, PhD, FHIMSS Boundary Information.
March 19, 2003 Audioconference Approaches to Compliance with the HIPAA Privacy and Security Workforce Training Requirements Presented by: Steven S. Lazarus,
HIPAA Transactions and Code Sets U.S. Healthcare Industry at a Tipping Point Steven S. Lazarus, PhD, CPHIT, CPEHR, FHIMSS April 7, :30 pm –
ASCA Transaction Extension and Resources to Help Extending Your Compliance Deadline for Transactions & Code Sets April 19, 2002 Steven S. Lazarus, PhD,
©2002 by the National Committee for Quality Assurance NCQA and HIPAA “A match made in ?” The Fifth National HIPAA Summit Sharon King Donohue, JD General.
The Health Insurance Portability and Accountability Act of 1996 “HIPAA” Public Law
April 14, 2003 – HIPAA Privacy Audioconference The Importance of April 14, 2003: Where you should be regarding HIPAA privacy policies and procedures and.
The Fourth National HIPAA Summit, April 26, 2002 A SURVEY OF 10 HEALTH SYSTEMS’ HIPAA COMPLIANCE STRATEGIES Presented by: Margret Amatayakul, RHIA, FHIMSS.
Junli M. Awit, RN.  Enacted by President Bill Clinton in 1996  Title I of HIPAA protects health insurance coverage for workers and their families when.
HIPAA Privacy Rule Training
UNDERSTANDING WHAT HIPAA IS AND IS NOT
Implementation Guide Change Process (DSMO)
Health Insurance Portability and Accountability Act HIPAA 101
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
HIPAA CONFIDENTIALITY
Extending Your Compliance Deadline for Transactions & Codes Sets
Moderated by: Steven S. Lazarus, PhD, FHIMSS President
HIPAA Transactions and Code Sets Implementation Roundtable
Transactions and Code Sets and the National Provider Identifier (NPI) – Getting Value From the HIPAA Standards Presented by: Steven S. Lazarus, PhD, CPEHR,
Update On Recently-issued Employer Identifier Rule And The Proposed Transactions Sets Addenda And Use Of HCPCS J-codes For Drugs And Biologics Rules By:
Donna Eden Office of General Counsel, HHS
Electronic Health Records: Overview, Acquisition and Implementation
HIPAA PRIVACY AWARENESS, COMPLIANCE and ENFORCEMENT
Countdown to Compliance
HIPAA Transactions and Code Sets Implementation June 6, 2003
Presented by: Steven S. Lazarus, PhD, FHIMSS
Implementation Guide Change Process (DSMO)
OVERVIEW OF CMS GUIDANCE
Privacy Policy the Law….
National HIPAA Audioconference: update on Crucial HIPAA Privacy and Security Developments – 5 Years After Implementation Steven S. Lazarus, PhD, CPEHR,
Healthcare Security Rule Compliance: Afternoon Plenary Session
The Importance of April 16, 2003: Where You Should be in HIPAA Data Code Sets/Transactions Testing and Compliance Presented by: Steven S. Lazarus, PhD,
Steven S. Lazarus, PhD, CPEHR, CPHIT, FHIMSS President
Strategies to Comply with the HPAA Privacy Rule Before the HIPAA Security and Enforcement Rules are Final Presented by: Steven S. Lazarus, PhD, FHIMSS.
ETHICAL CHALLENGES AND MANAGING RISK IN SOCIAL WORK PRACTICE
Presentation transcript:

EMPLOYER HIPAA COMPLIANCE STRATEGIES HIPAA Summit Audio Conference Presented By: Steven S. Lazarus, PhD, FHIMSS Boundary Information Group June 12, 2002 Copyright Boundary Information Group 2002

Boundary Information Group Virtual Consortium of Health Care Information Systems Consulting Firms Founded 1995 Internet-Based Websites Company: www.boundary.net HIPAA Resources: www.HIPAAInfo.net Senior Consultants with Commitment to HIPAA WEDI member Industry leadership experience since 1992 BIG Consultants have completed more than 50 HIPAA engagements

Workgroup on Electronic Data Interchange (WEDI) Founded 1992 Nonprofit Association with 213 Organization Members Consumers, Government, Mixed Payer/Providers, Payers, Providers, Standards Organizations, Vendors Goal: To Foster Widespread Support for the Adoption of Electronic Commerce Within Health Care Significant Activities Named in 1996 HIPAA Legislation as an Advisor to the Secretary of DHHS Initiated SNIP for HIPAA Implementation (5,000 participants) Websites: WEDI – www.wedi.org WEDI SNIP – snip.wedi.org Steven Lazarus, WEDI Chair (2001-2002)

Self Insured employer issues 1. Transactions and Identifiers Health plan must support the transaction standards directly or through TPA or clearinghouse May use enrollment/disenrollment standards as an employer Must use the employer identifier standard if required Delay to October 16, 2003, if an extension is filed or a small health plan 2. Privacy Restrict “employer” access to Protected Health Information (PHI) Document creation/modification includes Plan description Notice of privacy practices Consent and authorization if used Business Associate Agreements Policies and procedures for all applicable privacy standards Privacy compliance training Designation of a Privacy Information Official

Self insured employer issues Security (applies to electronic data) Required in the Privacy Regulation Administrative Physical Technical Designation of a Security Information Official Security Compliance Training Monitor and audit compliance Document creation/modification include Policies and procedures for all applicable security standards Chain of Trust Agreement (may be included in the Business Associate Agreement)

Implementation Process for Employers Plan documents Business Associate Agreements Policies and Procedures for Privacy and Security Consideration of Worker’s Compensation, Family Leave, OSHA and Employee Health TPA and internal work flow for transaction support and data management Transaction Extension Filing Project Plan Budget Development Compliance Training General information for supervisors and management Employee communication

Assessment of Need & Filing Administrative Simplification Compliance Act of 2001 Use 2002 Standards Use Current Transactions Extension Filed Use 2002 Standard Use 2000 Standard Use current transactions in either standard No Extension Filed October 17, 2003 – Future October 17, 2002 – October 16, 2003 Now – October 16, 2002 2000 Standard is the X12N 4010 Implementation Guides referred to in the August 2000 HIPAA Transactions Regulation and includes use of NDC codes instead of J Codes 2002 Standard refers to the December 2001 X12N 4010 Implementation Guides including the “Addenda” and deletion of the NDC codes which are expected to be published in 2002 as final regulations The no extension timeline assumes that the new 2002 Transactions Final Rules are published by September 16, 2002

Model HIPAA Timeline

Why is HIPAA Important? Law and compliance Ethics/corporate culture “Right thing to do” Potential liability No private right of action under Federal Law State law Courts look to HIPAA as standard “Whistle blower”

Senior Management Attention and Budget Dollars Allies In-house Counsel Internal and external auditors Compliance Risk management Public relations Subset of health care cost containment Enrollment/disenrollment hassle

Critical Concepts and Definitions Health Plan and Plan Sponsor Fully insured and self-insured Summary health information and Protected Health Information Plan administrative functions Business Associates Critical time line Extension Plan documents (e.g., privacy notice)

Potential Problem Areas Disease management Disability programs Worker’s compensation Family leave Drug/alcohol abuse in disciplinary actions Nurse employees FSA-MSA defined contribution Stricter State laws

“Silo” – Limit Access to PHI Who makes decisions regarding the health plan? What information do they need? Plan administrative functions Significance Limits risk Limits training Description in plan documents

Steven S. Lazarus Contact Information Boundary Information Group 4401South Quebec Street, Suite 100 Denver, Colorado 80237 (303) 488-9911 E-Mail: sslazarus@aol.com www.hipaainfo.net