annual hipaa education

Post on 05-Jul-2015

3.027 Views

Category:

Education

0 Downloads

Preview:

Click to see full reader

TRANSCRIPT

Has been a federal privacy regulation since 2003. Covers privacy and security of health information.

Reviewed in annual education

Taught in new employee orientation

The facility Security Officer is Michael Boudreaux

The facility Privacy Officer is Alane Bryan

Does not replace HIPAA—it gives it TEETH!

Requires a breach notification policy

Encourages EHR adoption

Provides strict data protection regulations for more secure patient privacy

Violation Type Each Violation Repeat Violations/Yr.

Did not know $100 - $50,000 $1.5 million

Reasonable Cause $1,000 - $50,000 $1.5 million

Willful Neglect – Corrected $10,000 - $50,000 $1.5 million

Willful Neglect – Not Corrected

$50,000 $1.5 million

•Healthcare organizations or providers may be held liable for violations.

•Individual employees may be prosecuted or may be sued for civil penalties.

Must notify individuals and HHS and, in some cases the media, of any substantiated breaches within 60 days.

Breaches affecting 500 or more patients will be posted to the HHS.gov website.

Four factors are used to determine if low to high probability of PHI is compromise:

1. The nature and extent of the PHI involved in the incident Is the PHI sensitive information i.e. Social Security Numbers, or

infectious disease test results2. The unauthorized recipient of the PHI

Is another physician receiving the PHI?3. Whether the PHI was actually acquired or viewed4. The extent to which the risk to the PHI has been mitigated

Was it immediately destroyed?

End of presentation

top related