“ Technology Working For People” Intro to HIPAA and Small Practice Implementation.

Slides:



Advertisements
Similar presentations
Tamtron Users Group April 2001 Preparing Your Laboratory for HIPAA Compliance.
Advertisements

H = P = A = HIPAA DEFINED HIPAA … A Federal Law Created in 1996 Health
HIPAA Security Presentation to The American Hospital Association Dianne Faup Office of HIPAA Standards November 5, 2003.
Todd Frech Ocius Medical Informatics 6650 Rivers Ave, Suite 137 North Charleston, SC Health Insurance Portability.
Security Vulnerabilities and Conflicts of Interest in the Provider-Clearinghouse*-Payer Model Andy Podgurski and Bret Kiraly EECS Department & Sharona.
HIPAA Basics Brian Fleetham Dickinson Wright PLLC.
HIPAA Privacy Training. 2 HIPAA Background Health Insurance Portability and Accountability Act of 1996 Copyright 2010 MHM Resources LLC.
Copyright Eastern PA EMS Council February 2003 Health Information Portability and Accountability Act It’s the law.
HIPAA Privacy Training Your Name Here. © 2004 MHM Resources Inc.2 HIPAA Background Health Insurance Portability and Accountability Act of 1996.
National Health Information Privacy and Security Week Understanding the HIPAA Privacy and Security Rule.
HIPAA Security NWOAHU Presented by Barb Gerken 11/12/2013.
HIPAA Security Training 2005
HIPAA PRIVACY REQUIREMENTS Dana L. Thrasher Constangy, Brooks & Smith, LLC (205) ; Victoria Nemerson.
Information Risk Management Key Component for HIPAA Security Compliance Ann Geyer Tunitas Group
Health Insurance Portability and Accountability Act (HIPAA)HIPAA.
Presented by the Office of the General Counsel An Overview of HIPAA.
NAU HIPAA Awareness Training
HIPAA Security Regulations Jean C. Hemphill Ballard Spahr Andrews & Ingersoll, LLP November 30, 2004.
Reviewing the World of HIPAA Stephanie Anderson, CPC October 2006.
HIPAA: FEDERAL REGULATIONS REGARDING PATIENT SECURITY.
Topics Rule Changes Skagit County, WA HIPAA Magic Bullet HIPAA Culture of Compliance Foundation to HIPAA Privacy and Security Compliance Security Officer.
HIPAA Privacy Rule Compliance Training for YSU April 9, 2014.
Privacy, Security, Confidentiality, and Legal Issues
1 HIPAA Privacy & Security Overview Know HIPAA Presents.
© Copyright 2014 Saul Ewing LLP The Coalition for Academic Scientific Computation HIPAA Legal Framework and Breach Analysis Presented by: Bruce D. Armon,
Implementing a HIPAA Security Rule Training Program for System Administrators at East Carolina University Copyright: Carol Davis, 2006EDUCAUSE 2006 Security.
HIPAA COMPLIANCE IN YOUR PRACTICE MARIBEL VALENTIN, ESQUIRE.
HIPAA – Health Insurance Portability & Accountability Act and the Privacy Act MSgt Nechele M. Chambers Senior Enlisted Liaison TRICARE Area Office-Europe.
IT’S OFFICIAL: GOVERNMENT AUDITING OF SECURITY RULE COMPLIANCE Nancy Davis, MS, RHIA Director of Privacy/Security Officer, Ministry Health Care & Catherine.
What is HIPAA? H ealth I nsurance P ortability and A ccountability A ct (Kennedy-Kassenbaum Bill) nAdministrative Simplification –Privacy –Transactions.
HIPAA PRIVACY AND SECURITY AWARENESS.
Health Insurance Portability and Accountability Act (HIPAA)
HIPAA – Developing an Understanding
Copyright ©2011 by Pearson Education, Inc. Upper Saddle River, New Jersey All rights reserved. Health Information Technology and Management Richard.
Health Insurance Portability and Accountability Act of 1996 (HIPAA) Proposed Rule: Security and Electronic Signature Standards.
How Hospitals Protect Your Health Information. Your Health Information Privacy Rights You can ask to see or get a copy of your medical record and other.
April 14, A Watershed Date in HIPAA Privacy Compliance: Where Should You Be in HIPAA Security Compliance and How to Get There… John Parmigiani National.
HIPAA Michigan Cancer Registrars Association 2005 Annual Educational Conference Sandy Routhier.
LeToia Crozier, Esq., CHC Vice President, Compliance & Regulatory Affairs Corey Wilson Director of Technical Services & Security Officer Interactive Think.
Securing Patient-Related Data: The Impact of HIPAA Module VI NUR 603 Russ McGuire.
Copyright © 2009 by The McGraw-Hill Companies, Inc. All Rights Reserved. McGraw-Hill Chapter 6 The Privacy and Security of Electronic Health Information.
Health Insurance Portability and Accountability Act of 1996 HIPAA Privacy Training for County Employees.
Eliza de Guzman HTM 520 Health Information Exchange.
Ali Pabrai, CISSP, CSCS ecfirst, chairman & ceo Preparing for a HIPAA Security Audit.
The Culture of Healthcare Privacy, Confidentiality, and Security Lecture d This material (Comp2_Unit9d) was developed by Oregon Health and Science University,
1 HIPAA Administrative Simplification Standards Yesterday, Today, and Tomorrow Stanley Nachimson CMS Office of HIPAA Standards.
Working with HIT Systems
Copyright ©2014 by Saunders, an imprint of Elsevier Inc. All rights reserved 1 Chapter 02 Compliance, Privacy, Fraud, and Abuse in Insurance Billing Insurance.
Component 8/Unit 6aHealth IT Workforce Curriculum Version 1.0 Fall Installation and Maintenance of Health IT Systems Unit 6a System Security Procedures.
HIPAA Health Insurance Portability and Accountability Act of 1996.
HIPAA History March 3, HIPAA Ruling Health Insurance Portability Accountability Act Health Insurance Portability Accountability Act Passed by Congress.
Case Study: Applying Authentication Technologies as Part of a HIPAA Compliance Strategy.
Table of Contents. Lessons 1. Introduction to HIPAA Go Go 2. The Privacy Rule Go Go.
The Health Insurance Portability and Accountability Act of 1996 “HIPAA” Public Law
HIPAA Yesterday, Today and Tomorrow? Dianne S. Faup Office of HIPAA Standards Centers for Medicare & Medicaid Services.
What is HIPAA? Health Insurance Portability and Accountability Act of HIPAA is a major law primarily concentrating on the prolongation of health.
HIPAA: So You Think You’re Compliant September 1, 2011 Carolyn Heyman-Layne, J.D.
Installation and Maintenance of Health IT Systems System Security Procedures and Standards Lecture a This material Comp8_Unit6a was developed by Duke University,
The Health Insurance Portability and Accountability Act 
Health Insurance Portability and Accountability Act HIPAA 101
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
Health Insurance Portability and Accountability Act
Disability Services Agencies Briefing On HIPAA
Final HIPAA Security Rule
Health Insurance Portability and Accountability Act
HIPAA Privacy and Security Summit 2018 HIPAA Privacy Rule: Compliance Plans, Training, Internal Audits and Patient Rights Widener University Delaware.
HIPAA Security Standards Final Rule
HIPAA Privacy & Security Overview
HIPAA Compliance Services CTG HealthCare Solutions, Inc.
HIPAA Compliance Services CTG HealthCare Solutions, Inc.
Presentation transcript:

“ Technology Working For People” Intro to HIPAA and Small Practice Implementation

“ Technology Working For People” Overview What is HIPAA? Transactions Privacy Security Implementation Manual/Process

“ Technology Working For People” Insurance Reform [Portability] Insurance Reform [Portability] Administrative Simplification [Accountability] Health Insurance Portability and Accountability Act (HIPAA) Transactions, Compliance Date: 10/16/2003 Privacy Compliance Date: 4/14/2003 Security Compliance Date: 4/21/2005 What is HIPAA?

“ Technology Working For People” Who is affected ? “Covered Entities” which include: Health Plans Healthcare Clearinghouse Healthcare Provider who transmits health information in electronic format (Us )

“ Technology Working For People” Is it Mostly Process Or Mostly “Things” to purchase?

“ Technology Working For People” HIPAA Compliance Deadlines Transaction & Code Sets October 16, 2003 (with extension) Privacy Regulation April 14, 2003 Security Regulations April 21, 2005 or April 21, 2006 for small health plans

“ Technology Working For People” COMPLY? $100 for each violation Maximum of $25,000 per year per specific provision  Penalties up to $250,000 u Prison time up to 10 years Non-Compliance Unauthorized Disclosure or Misuse of Patient Information

“ Technology Working For People” Transactions, Codes, & Identifiers What are they, and why do we care ? Is it something I control ? How do we comply?

“ Technology Working For People” Transaction, Codes, and Identifiers Verify your vendor or clearinghouse has been certified? Tested your electronic claims submission for accuracy?

“ Technology Working For People” Privacy Regulations Require Designating a Privacy Officer Educate the Privacy Officer Take this training module Become familiar with helpful web sites Begin Implementing the new Procedures & Policies

“ Technology Working For People” Privacy Regulation The Privacy Rule has 3 General Areas Patient Rights Communications Administration

“ Technology Working For People” Privacy Regulation Patient Rights Notice of Privacy Practice Authorization Form Access and Amendment Policy Accounting and Restrictions Policy

“ Technology Working For People” Privacy Regulation Communications Phone and Face-to-Face Policy (Optional) Fax Policy Medical Records De-Identification

“ Technology Working For People” Privacy Regulation Administration Privacy Officer Business Associate Privacy Contract Tracking Safeguards Pre-emption of State Law Training

“ Technology Working For People” Security Regulation Three Categories of Security Standards Administrative Physical Technical

“ Technology Working For People” Security Regulation In All 3 Categories, the Standards are: Required or Addressable

“ Technology Working For People” Security - General Rule Ensure the confidentiality, integrity and availability of all EPHI Protect against any reasonably anticipated threat or hazard to security or integrity Protect against reasonably anticipated uses or disclosure that are nor permitted under the Privacy Rule Ensure compliance by your workforce

“ Technology Working For People” Security Flexibility Size, complexity and capabilities of office Technical infrastructure, hardware and software security capability of office Costs of security measures Probability and criticality of potential risks

“ Technology Working For People” Security – Administrative Security Management Responsibility Workforce Security Information Access Management Security Awareness & Training Incident Procedures Contingency Plan Evaluation Business Associate Contract

“ Technology Working For People” Security - Physical Facility Access Control Workstation Use Workstation Security Device & Media Controls

“ Technology Working For People” Security - Technical Access Control Audit Controls Integrity Entitiy Authentication Transmission Security

“ Technology Working For People” Implementation The Head of Practice Overview Office Manager Steps Transaction/Code Certification Staff Training Privacy Security Maintenance

“ Technology Working For People” Office Manager Steps Appointed Privacy & Security Officer Studies the HIPAA Office Manual Makes any modifications to the forms, policies and procedures for this specific practice Calls a staff meeting for HIPAA training

“ Technology Working For People” Transaction/Code Certification Obtain certification of compliance from Billing/Admin software vendor Obtain certification of compliance from all clearinghouse vendors Confirm accuracy of transactions

“ Technology Working For People” Staff Training Staff read the awareness essay Read and sign employee confidentiality form Attend the HIPAA overview training Attend Security Awareness Training

“ Technology Working For People” Privacy Post Privacy Notice Process for patients receiving and signing Notice of Privacy Practice Post Fax and Policies Create “Entities” log Issue/Collect Business Associate contracts

“ Technology Working For People” Security VeroTek & Office Manager Produce: Risk Assessment/Plan Access Control Workstation Security Staff Security Training Anti-Virus Procedures Backup Procedures Internet/Firewall System Disaster Recovery Plan

“ Technology Working For People” Maintenance Quarterly review by Office Manager for compliance Bi-Annual Security Audit by VeroTek “As Required” updates as regulations change

“ Technology Working For People” Questions? Call or