HIPAA - What RNs Need to Know From National Nurse Presented by Kip Klingman.

Slides:



Advertisements
Similar presentations
Presented by Elena Chan, UCSF Pharm.D. Candidate Tiffany Jew, USC Pharm.D. Candidate March 14, 2007 P HARMACEUTICAL C ONSULTANTS, I NC. P RO P HARMA HIPAA.
Advertisements

1 The Health Insurance Portability and Accountability Act (HIPAA) A guided tutorial for GVSU employees.
HIPAA Basics Brian Fleetham Dickinson Wright PLLC.
HIPAA Privacy Training. 2 HIPAA Background Health Insurance Portability and Accountability Act of 1996 Copyright 2010 MHM Resources LLC.
HIPAA. What Why Who How When What Is HIPAA? Health Insurance Portability & Accountability Act of 1996.
Confidentiality and HIPAA
HIPAA Privacy Rule Training
National Health Information Privacy and Security Week Understanding the HIPAA Privacy and Security Rule.
Increasing public concern about loss of privacy Broad availability of information stored and exchanged in electronic format Concerns about genetic information.
The Health Insurance Portability and Accountability Act of 1996– charged the Department of Health and Human Services (DHHS) with creating health information.
HIPAA PRIVACY REQUIREMENTS Dana L. Thrasher Constangy, Brooks & Smith, LLC (205) ; Victoria Nemerson.
HIPAA In The Workplace What Every Employee Should Know and Remember.
HIPAA Health Insurance Portability and Accountability Act.
What Nurses Assistants Need to Know about HIPAA
What is HIPAA? This presentation was created by The University of Arizona Privacy Office, The Office for the Responsible Conduct of Research on March 5,
NAU HIPAA Awareness Training
HIPAA Health Insurance Portability and Accountability Act.
© 2009 The McGraw-Hill Companies, Inc. All rights reserved 3-1 LEGAL AND ETHICAL ISSUES in Medical Practice, Including HIPAA PowerPoint® presentation.
HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT OF 1996 (HIPAA)
COMPLYING WITH HIPAA PRIVACY RULES Presented by: Larry Grudzien, Attorney at Law.
HIPAA THE PRIVACY RULE Reviewed December HISTORY In 2000, many patients that were newly diagnosed with depression received free samples of anti-
Are you ready for HIPPO??? Welcome to HIPAA
Free HIPAA Training BCI Computers Free HIPAA Training (c) 2014 BCI Computers all rights reserved.
HIPAA HIPAA Health Insurance Portability and Accountability Act of 1996.
Professional Nursing Services.  Privacy and Security Training explains:  The requirements of the federal HIPAA/HITEC regulations, state privacy laws.
HIPAA COMPLIANCE IN YOUR PRACTICE MARIBEL VALENTIN, ESQUIRE.
HIPAA Health Insurance Portability & Accountability Act of 1996.
The University of Kansas Medical Center Shadow Experience Training.
HIPAA PRIVACY AND SECURITY AWARENESS.
“ Technology Working For People” Intro to HIPAA and Small Practice Implementation.
HIPAA OBJECTIVES  Define HIPAA  Define PHI  Use of PHI  Your rights  Your responsibilities.
Health Insurance Portability and Accountability Act (HIPAA)
PRIVACY AND HIPAA THE RIGHT THING TO DO. WHAT’S WRONG WITH THIS PICTURE? ? “ Did you hear that Jane from the 5 th floor is in the hospital?” “No!! Let’s.
How Hospitals Protect Your Health Information. Your Health Information Privacy Rights You can ask to see or get a copy of your medical record and other.
Established in 1996 to enforce standards for electronic health information & enhance the security and privacy of health information.
HIPAA Michigan Cancer Registrars Association 2005 Annual Educational Conference Sandy Routhier.
HIPAAand Disaster Situations By LYNDA M. JOHNSON Friday, Eldredge & Clark.
Speak HIPAA Like a Native A Guide to Common HIPAA Nomenclature University of Miami Ethics Programs.
Building a Privacy Foundation. Setting the Standard for Privacy Health Insurance Portability and Accountability Act (HIPAA) Patient Bill of Rights Federal.
Health Insurance Portability and Accountability Act (HIPAA) CCAC.
Health Insurance Portability and Accountability Act of 1996 HIPAA Privacy Training for County Employees.
Understanding HIPAA (Health Insurandce Portability and Accountability Act)
Mr. Fleming.  Law passed by Congress in  Right to Privacy ◦ Medical information of patient can only be shared with doctor and professionals administering.
© 2013 The McGraw-Hill Companies, Inc. All rights reserved. Ch 8 Privacy Law and HIPAA.
HIPAA THE PRIVACY RULE. 2 HISTORY In 2000, many patients that were newly diagnosed with depression received free samples of anti- depressant medications.
Copyright ©2014 by Saunders, an imprint of Elsevier Inc. All rights reserved 1 Chapter 02 Compliance, Privacy, Fraud, and Abuse in Insurance Billing Insurance.
HIPAA LAWS.  Under the privacy rule, the patient must give consent to use his or her Protected Health Information.  Examples in which consent must be.
C HAPTER 34 Code Blue Health Sciences Edition 4. Confidentiality of sensitive information is an important issue in healthcare. Breaches of confidentiality.
Copyright © 2016 McGraw-Hill Education. All rights reserved. No reproduction or distribution without the prior written consent of McGraw-Hill Education.
Copyright © 2015 by Saunders, an imprint of Elsevier Inc. All rights reserved. Chapter 3 Privacy, Confidentiality, and Security.
Medical Documentation
HIPAA Overview Why do we need a federal rule on privacy? Privacy is a fundamental right Privacy can be defined as the ability of the individual to determine.
CH 10. Confidentiality A. Confidentiality about sensitive medical information is necessary to preserve the patient’s dignity. B. In order to receive payment.
Human Subjects Update E. Wethington, Chair, UCHS.
HIPAA/HITECH TRAINING. Why are we here?  HIPAA  HITECH  PHI  Minimum Necessary “Need to Know”  Breaches and Fines.
 Health Insurance and Accountability Act Cornelius Villalon Jr.
The Health Insurance Portability and Accountability Act of 1996 “HIPAA” Public Law
Disclaimer This presentation is intended only for use by Tulane University faculty, staff, and students. No copy or use of this presentation should occur.
HIPAA Privacy Rule Training
Health Insurance Portability and Accountability Act of 1996
HIPAA PRIVACY & SECURITY TRAINING
HIPAA THE PRIVACY RULE Reviewed December 2012.
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
Disability Services Agencies Briefing On HIPAA
Introduction to General Medical Conditions
HIPAA SECURITY RULE Copyright © 2008, 2006, 2004 by Saunders an imprint of Elsevier Inc. All rights reserved.
The Health Insurance Portability and Accountability Act
South Jordan City Fire Department
Presentation transcript:

HIPAA - What RNs Need to Know From National Nurse Presented by Kip Klingman

HIPAA Regulations “HIPAA regulations were instituted to protect the privacy of individuals by safeguarding individually identifiable healthcare records, including those housed in electronic media.” Establishes limits for release of information Provides individuals with more control Requires providers and agents to safeguard privacy Holds regulation violators accountable

Patient Rights Right to privacy/confidentiality Right to access to medical records Right to amend medical record Right to accounting of disclosures

Enforcement: Criminal Penalties Individuals, who “knowingly” obtain or disclose individually identifiable health information can face a fine of up to $50,000, as well as imprisonment up to one year. Offenses committed under false pretenses allow penalties to be increased to a $100,000 fine, with up to five years in prison. Offenses committed with the intent to sell, transfer, or use individually identifiable health information for commercial advantage, personal gain, or malicious harm can receive fines of $250,000, and imprisonment for up to 10 years.

Enforcement HIPAA ViolationMinimum PenaltyMaximum Penalty Individual did not know (and by exercising reasonable diligence would not have known) that he/she violated HIPAA $100 per violation, with an annual maximum of $25,000 for repeat violations (Note: maximum that can be imposed by state attorneys general regardless of the type of violation) $50,000 per violation, with an annual maximum of $1.5 million HIPAA violation due to reasonable cause and not due to willful neglect $1,000 per violation, with an annual maximum of $100,000 for repeat violations $50,000 per violation, with an annual maximum of $1.5 million HIPAA violation due to willful neglect but violation is corrected within the required time period $10,000 per violation, with an annual maximum of $250,000 for repeat violations $50,000 per violation, with an annual maximum of $1.5 million HIPAA violation is due to willful neglect and is not corrected $50,000 per violation, with an annual maximum of $1.5 million $50,000 per violation, with an annual maximum of $1.5 million

Violations in the News September 2007: A hospital in New Jersey suspended 27 staff members for one month without pay for looking at George Clooney’s medical records involving a motorcycle accident. February 2009: A hospital in Wisconsin was referred to the FBI for pictures taken by a nurse in the emergency room and posted to her Facebook page. The photos were that of a man with a sex toy lodged inside his rectum.

Violations Cont. July 2009: A hospital in Arkansas fired two employees in the ER for looking at a patient’s record without necessity. Furthermore, the administrator looked at the same record and was suspended for 2 weeks and required to review a HIPAA training module. All 3 employees pleaded guilty to a misdemeanor charge and faced 1-year in jail and up to $50,000 fine.

Duty and Responsibility Electronic health records, computerized physician order entry systems, and health information technology should be utilized to enhance the provision of safe, therapeutic, and effective nursing care in the exclusive interests of the patient. Information and data collection, storage, retrieval, and transmission technologies must not interfere with the establishment of the RN-patient relationship or override the ability of the RN to document the nursing process, including physical exam and assessment, care planning, implementation, response to treatment interventions and evaluation of care, and documentation of advocacy activities and consultation with other treatment team personnel.

Avoiding Breaches in Confidentiality "Electronic records make it easier to snoop or engage in chart browsing, which creates some concerns since hospital mergers have made it more likely that employees will receive medical care from their own institution. The most likely targets are certain patients, hospital employees, celebrities, and patients with a sensitive diagnosis.“ No disclosures of health information or genetic information without informed consent of patient and affected parties. Under no circumstances can health information be used for hiring, firing, promotion or to deny affordable health insurance or in any other way infringe on one’s civil rights.

Avoiding Breaches Cont. Individuals or entities who legally receive health information must be required to safeguard the information or be subjected to legal or disciplinary sanctions. There will be no sanctions against registered nurses or other healthcare workers for disclosing health information or records to authorized public officials for the purpose of patient advocacy and protecting the public interest. Encourage the use of technical security safeguards like audit trails, security codes, scrambling devices, passwords, or electronic blocks.

Questions and Answers Q: Can healthcare workers speak freely when they may be overheard by others? A: Yes, HIPAA recognizes that a nurse needs to have the ability to communicate in treatment settings. – Healthcare staff may orally coordinate services at hospital nursing stations. – Nurses or other healthcare professionals may discuss a patient's condition over the phone with the patient, a provider, or a family member.

Questions and Answers Cont. Q: May mental health practitioners or other specialists provide therapy to patients in a group setting where other patients and family members are present? A: Yes. Disclosures of protected health information in a group therapy setting are treatment disclosures and, thus, may be made without an individual's authorization. Q: May physicians' offices use patient sign-in sheets or call out the names of their patients in their waiting rooms? A: Yes. Covered entities, such as physicians' offices, may use patient sign-in sheets or call out patient names in waiting rooms, so long as the information disclosed is appropriately limited.

Conclusion When it comes to information, whether high tech or low tech, taking appropriate security measures to protect patient privacy and confidentiality remains a priority. Nurses must rigorously follow all HIPAA guidelines outlined by their employers and take every reasonable action to prevent unauthorized people from viewing or having access to protected patient health data. The end.

References HIPAA -- the health insurance portability and accountability act: what RNs need to know about privacy rules and protected electronic health information. (2011). National Nurse, 107(6), McEwen, D., & Dumpel, H. (2011). HIPAA -- the health insurance portability and accountability act: what RNs need to know about privacy rules and protected health information. National Nurse, 107(7),