Countdown to Compliance

Slides:



Advertisements
Similar presentations
Tamtron Users Group April 2001 Preparing Your Laboratory for HIPAA Compliance.
Advertisements

HIPAA Security Presentation to The American Hospital Association Dianne Faup Office of HIPAA Standards November 5, 2003.
Electronic Medical Records: Implications of HIPAA for Selecting and Implementing an EMR Todd Frech Senior Partner
HIPAA Basics Brian Fleetham Dickinson Wright PLLC.
HIPAA: Privacy, Security, and HITECH, Oh My! Presented by Stephanie L. Ganucheau, Special Assistant Attorney General.
HIPAA Privacy Training. 2 HIPAA Background Health Insurance Portability and Accountability Act of 1996 Copyright 2010 MHM Resources LLC.
Copyright Eastern PA EMS Council February 2003 Health Information Portability and Accountability Act It’s the law.
HIPAA Privacy Training Your Name Here. © 2004 MHM Resources Inc.2 HIPAA Background Health Insurance Portability and Accountability Act of 1996.
National Health Information Privacy and Security Week Understanding the HIPAA Privacy and Security Rule.
HIPAA What’s New? What Is HIPAA Health Insurance Portability and Accountability Act of 1996 Health Insurance Portability and Accountability Act.
HIPAA PRIVACY REQUIREMENTS Dana L. Thrasher Constangy, Brooks & Smith, LLC (205) ; Victoria Nemerson.
Health Insurance Portability and Accountability Act (HIPAA)HIPAA.
1 HIPAA Education CCAC Professional Development Training September 2006 CCAC Professional Development Training September 2006.
Managing Access to Student Health Information per Federal HIPAA Guidelines Joan M. Kiel, Ph.D., CHPS Duquesne University Pittsburgh, Penna
HIPAA Health Insurance Portability and Accountability Act.
HIPAA Security Regulations Jean C. Hemphill Ballard Spahr Andrews & Ingersoll, LLP November 30, 2004.
HIPAA Regulations What do you need to know?.
COMPLYING WITH HIPAA PRIVACY RULES Presented by: Larry Grudzien, Attorney at Law.
Are you ready for HIPPO??? Welcome to HIPAA
Building a Medical Records Compliance Program for Your Office: Charles B. Brownlow, OD, FAAO December 17, 2012.
Health Insurance Portability Accountability Act of 1996 HIPAA for Researchers: IRB Related Issues HSC USC IRB.
Segment Five: Provider Communication Idaho ICD-10 Site Visit Training segments to assist the State of Idaho with the ICD-10 Implementation January 26-27,
1 healthcare IT solutions Copyright Phoenix Health Systems, Inc All rights reserved. Countdown to Compliance For HIPAA Results of the Winter 2004.
Version 6.0 Approved by HIPAA Implementation Team April 14, HIPAA Learning Module The following is an educational Powerpoint presentation on the.
HIPAA Health Insurance Portability & Accountability Act of 1996.
August 22, 2002 THE HIPAA COLLOQUIUM at Harvard University A. John Blair, III, MD Chairman and Chief Executive Officer Taconic IPA, Inc. Fishkill, NY HIPAA.
COMPLYING WITH HIPAA BUSINESS ASSOCIATE REQUIREMENTS Quick, Cost Effective Solutions for HIPAA Compliance: Business Associate Agreements.
Notice of Privacy Practices Nebraska SNIP Privacy Subgroup July 18, 2002 Michael J. Brown, MHA, CPA Vice-President, Administrative & Regulatory Affairs,
HIPAA PRIVACY AND SECURITY AWARENESS.
“ Technology Working For People” Intro to HIPAA and Small Practice Implementation.
State of Iowa Enterprise HIPAA Compliance
Health Insurance Portability and Accountability Act (HIPAA)
The Implementation of HIPAA Joan M. Kiel, Ph.D., C.H.P.S. Duquesne University Pittsburgh, Pennsylvania.
2012 Audits of Covered Entity Compliance with HIPAA Privacy, Security and Breach Notification Rules Initial Analysis February 2013.
April 14, A Watershed Date in HIPAA Privacy Compliance: Where Should You Be in HIPAA Security Compliance and How to Get There… John Parmigiani National.
HIPAA Michigan Cancer Registrars Association 2005 Annual Educational Conference Sandy Routhier.
Understanding HIPAA (Health Insurandce Portability and Accountability Act)
Organizational and Legal Issues -- Developing organization and governance models for HIE Day 2 -Track 5 – SECOND SESSION – PRIVACY AND SECURITY CONNECTING.
Chapter 7—Privacy Law and HIPAA
HIPAA PRACTICAL APPLICATION WORKSHOP Orientation Module 1B Anderson Health Information Systems, Inc.
1 National Audioconference Sponsored by the HIPAA Summit June 6, 2002 Chris Apgar, CISSP Data Security & HIPAA Compliance Officer Providence Health Plan.
Rhonda Anderson, RHIA, President  …is a PROCESS, not a PROJECT 2.
Health Insurance portability and Accountability Act (HIPAA)‏
1 Privacy Plan of Action © HIPAA Pros 2002 All rights reserved.
Segment 6: Provider Communication California ICD-10 Site Visit Training segments to assist the State of California with the ICD-10 Implementation June.
HIPAA A Sea of Confusion, A Wave of the future and A High Tide of Confidentiality.
HIPAA Overview Why do we need a federal rule on privacy? Privacy is a fundamental right Privacy can be defined as the ability of the individual to determine.
CAN THE CANNED FORMS: Practical Advice in Implementing HIPAA Privacy Policies and Forms Margaret Marchak, Esq. Rachel Nosowsky, Esq. HIPAA Summit West.
ICD-10 Operational and Revenue Cycle Impacts Wendy Haas, MBA, RN Dell Services Healthcare Consulting.
HIPAA Yesterday, Today and Tomorrow? Dianne S. Faup Office of HIPAA Standards Centers for Medicare & Medicaid Services.
April 14, 2003 – HIPAA Privacy Audioconference The Importance of April 14, 2003: Where you should be regarding HIPAA privacy policies and procedures and.
Accountability & Structured Privacy Management
Health Insurance Portability and Accountability Act HIPAA 101
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
HIPAA Administrative Simplification
Genevieve Morris Principal Deputy National Coordinator for Health IT
EMPLOYER HIPAA COMPLIANCE STRATEGIES HIPAA Summit Audio Conference
HIPAA PRIVACY RULE IMPLEMENTATION – WHAT’S UP AFTER 4/14/03?
Disability Services Agencies Briefing On HIPAA
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
Presented by: Steven S. Lazarus, PhD, FHIMSS
HIPAA Privacy the Morning After - What do we do now?
The Centers for Medicare & Medicaid Services
Lesson 1  7 Basic Components of an Effective Compliance Plan
Drew Hunt Network Security Analyst Valley Medical Center
Countdown to Compliance
Auditing Compliance with the Privacy Rule
Countdown to Compliance
HSCRC ICD-10 Hospital Survey
Introduction to the PACS Security
Presentation transcript:

Countdown to Compliance For HIPAA Results of the Summer 2003 Industry HIPAA Survey conducted by HIMSS and Phoenix Health Systems Tom Grove, Vice President

15th! Healthcare Industry Quarterly HIPAA Survey Conducted in collaboration by Phoenix Health Systems and HIMSS Participants completed online survey during early July 2003, at website HIPAAdvisory.com Expanded from previous surveys

Who Participated? 571 industry representatives across the nation responded Providers - 71% of total respondents: Hospitals represented 47% of the total Remainder were physician practices and other providers 30% of respondents were payers and vendors, and a few clearinghouses Almost 90% have an official role

Privacy Progress

Privacy Progress Non-provider privacy compliance has improved dramatically since the Spring 2003. Reporting compliance: 88% of clearinghouse (up from 47%) 81% of Vendors (up from 39%) 85% of Payers (up from 68%) Providers represent the least Privacy-compliant segment of the healthcare community: at 77%. (78% in April)

Detailed Spot Check of “Privacy-Compliant” Organizations Privacy “Spot-Check” Detailed Spot Check of “Privacy-Compliant” Organizations Areas of Privacy Compliance Providers Payers Post and distribute Notice of Privacy Practices 99% 98% Obtain acknowledgement of receipt of Notice of Privacy Practices N/A Obtain Patient Authorizations for use and disclosure of PHI 94% Enable mandated patients’ rights (review, amend, restrict records) 95% Provide ongoing Privacy training Maintain Accounting of Disclosures 88% 96% Document Privacy policies and practices 87% 93% Use “Minimum Necessary” Restrictions 83% Provide overall workforce Privacy training updates 80% 85% Implement security protections as required under the Privacy Rule 79% Monitor organizational compliance with Privacy regulations 65% 76% Have obtained all required Business Associate Agreements 61% 74%

Transactions & Code Sets Expected Progress Ready for One Ready for All Down From Payer 82% 62% 79% Vendor 67% 46% 68% Clearing- House 88% 63% 86%

Transactions & Code Sets Progress 81% of providers have either completed or expect to have completed their TCS gap analysis before October. 74% of Providers state they will have implemented all TCS changes by October “Not enough time” listed as the major roadblock Lack of cooperation/ communication among industry segments remains an ongoing impediment

Transactions Ready by October Provider Payer 837 76% 84% 835 55% 80% 270/271 32% 71% 276/277 29% 66% 834 13% 56% 820 6% 45% None 1% 3%

Provider Obstacles Provider obstacle Percent citing Payer not ready to test 48% Payer not ready for transaction 37% Non-compliant software 29% Internal data collection 27%

Security Progress

Security Progress Security remediation efforts are progressing slowly – focus is currently on TCS and Privacy 20% did not know at time of survey when they will complete remediation efforts “New” security rule clearly a factor 20% believe that they don’t meet the security provisions of the privacy rule

Consultant Support 45% of participants reported currently using outside consultants: 50% reported consulting used for awareness, assessment, implementation of Privacy 48% reported consulting for TCS compliance Payers and large hospitals are most likely to engage outside assistance

HIPAA Budget Highlights Hospital budgets for HIPAA compliance in 2003 are generally higher than 2002 HIPAA budgets. However, spending seems to be leveling off. Budget figures for this quarter are actually lower in most cases than Springs Especially among small to medium-sized hospitals.

Summary Main focus is on Transactions compliance, with Security compliance a secondary priority Privacy compliance is not complete, and providers are now trailing the industry A significant number of those reporting complete still have issues All parts of the industry must be ready for transactions to work, and clearly that won’t happen in October Security compliance is at least a year off for many Spending is leveling off

Complete Survey Results Composite summary of the survey results are available at this session Survey information is be published at www.HIPAAdvisory.com, -- compare results with previous surveys!

Questions About Survey For further information about the Quarterly Industry HIPAA Surveys, contact: Phoenix Health Systems 9200 Wightman Road, Suite 400 Montgomery Village, MD 20886 301-869-7300 / Fax: 301-869-0788 http://www.phoenixhealth.com info@phoenixhealth.com