Permitted Uses & Disclosures of PHI

Slides:



Advertisements
Similar presentations
Responding to Subpoenas and Law Enforcement Demands for PHI: An Overview Janet A. Newberg Chair, Health Law Section Felhaber Larson Fenlon & Vogt, P.A.
Advertisements

Minimum Necessary Standard Version 1.0
HIPAA: Privacy, Security, and HITECH, Oh My! Presented by Stephanie L. Ganucheau, Special Assistant Attorney General.
HIPAA – Privacy Rule and Research USCRF Research Educational Series March 19, 2003.
The Health Insurance Portability and Accountability Act of 1996– charged the Department of Health and Human Services (DHHS) with creating health information.
P E N N S Y L V A N I A C O A L I T I O N A G A I N S T D O M E S T I C V I O L E N C E P E N N S Y L V A N I A C O A L I T I O N A G A I N S T RAPE HIPAA.
North Carolina State University Health Information Privacy 4/16/03.
TM The HIPAA Privacy Rule: Safeguarding Health Information in Research and Public Health Practice Centers for Disease Control and Prevention Beverly A.
Copyright 2006 Rubin Law Firm, LLC Drafting HIPAA Compliant Subpoenas & Discovery Presented by:RACHEL B. RUBIN Kansas Bar Association Annual Meeting June.
 The Health Insurance Portability and Accountability Act of  Federal Law designed to protect sensitive information.  HIPAA violations are enforced.
Health Insurance Portability and Accountability Act (HIPAA)
Health Insurance Portability Accountability Act of 1996 HIPAA for Researchers: IRB Related Issues HSC USC IRB.
August 10, 2001 NESNIP PRIVACY WORKGROUP HIPAA’s Minimum Necessary Standard Presented by: Mildred L. Johnson, J.D.
HIPAA Compliance Strategies for Employers, METs, MEWAs and Taft Hartley Union Trust Funds The HIPAA Colloquium at Harvard University Presented by: Melissa.
Who Must Comply? When is a patient authorization NOT required?  As needed for the protection of federal and state elective constitutional officers and.
©2006 All rights reserved. Health Information Management Technology — Second Edition — An Applied Approach Chapter 15 Legal Issues in Health Information.
HIPAA Health Insurance Portability & Accountability Act of 1996.
Permitted Disclosures Under GLB & HIPAA Miriam J. Paramore PCI 9001 Shelbyville Road iTRC Building Louisville, KY
HIPAA – Health Insurance Portability & Accountability Act and the Privacy Act MSgt Nechele M. Chambers Senior Enlisted Liaison TRICARE Area Office-Europe.
HIPAA PRIVACY AND SECURITY AWARENESS.
1 Research & Accounting for Disclosures March 12, 2008 Leslie J. Pfeffer, BS, CHP Office of the Vice President for Research Administration Office of Compliance.
1 Disclosures © HIPAA Pros 2002 All rights reserved.
Office of the Secretary Office for Civil Rights (OCR) Indian Health Service HIPAA Training Hosted by the Aberdeen Area Office July 24, 2012.
Computerized Networking of HIV Providers Workshop Data Security, Privacy and HIPAA: Focus on Privacy Joy L. Pritts, J.D. Assistant Research Professor Health.
HIPAA – How Will the Regulations Impact Research?.
NE SNIP PRIVACY WORKGROUP Use and Disclosure of Protected Health Information Regarding a Deceased Individual.
HIPAAand Disaster Situations By LYNDA M. JOHNSON Friday, Eldredge & Clark.
Building a Privacy Foundation. Setting the Standard for Privacy Health Insurance Portability and Accountability Act (HIPAA) Patient Bill of Rights Federal.
Health Insurance Portability and Accountability Act (HIPAA) CCAC.
© 2013 The McGraw-Hill Companies, Inc. All rights reserved. Ch 8 Privacy Law and HIPAA.
PROTECTING CLIENT DATA HIPAA, HITECH AND PIPA PART 1B.
HIPAA THE PRIVACY RULE. 2 HISTORY In 2000, many patients that were newly diagnosed with depression received free samples of anti- depressant medications.
HIPAA and Human Subjects Research IRB Member CE May 2014 Slideshow by Sean Horkheimer.
Davis Wright Tremaine LLP The Seventh National HIPAA Summit HIPAA Privacy: Privacy Rule Compliance on Public Health Activities and Research Thomas E. Jeffry,
HIPAA Privacy Rule Implementation Status Report Richard M. Campanelli, J.D. Director, Office for Civil Rights Before the The Tenth National HIPAA Summit.
HIPAA Overview Why do we need a federal rule on privacy? Privacy is a fundamental right Privacy can be defined as the ability of the individual to determine.
HIPAA Privacy Rule Positive Changes Affecting Hospitals’ Implementation of the Rule.
Final PRIVACY RULE Presentation by Richard Campanelli, Director OCR/HHS at 5 th National HIPAA Summit Washington, D.C. October 31, 2002.
HIPAA TRIVIA QUEST December Edition. I’ll ask the questions - and you’ll give the answers.
Health Insurance Portability and Accountability Act (HIPAA) © 2013 Project Lead The Way, Inc.Principles of Biomedical Science.
COMMUNITY-WIDE HEALTH INFORMATION EXCHANGE: HIPAA PRIVACY AND SECURITY ISSUES Ninth National HIPAA Summit September 14, 2004 Prepared by: Robert Belfort,
Disclaimer This presentation is intended only for use by Tulane University faculty, staff, and students. No copy or use of this presentation should occur.
Final HIPAA Privacy Rule: The Research Provisions Julie Kaneshiro DHHS Office for Human Research Protections Phone: Fax:
HIPAA Training Workshop #2 Trainer: Kaye L. Rankin Rankin Healthcare Consultants, Inc.
Juvenile Legislative Update 2013 Confidential Records and Protected Disclosures.
HIPAA Privacy Rule Positive Changes Affecting Hospitals’ Implementation of the Rule Melinda Hatton -- Oct. 31, 2002.
HIPAA Training Workshop #3 Individual Rights Kaye L. Rankin Rankin Healthcare Consultants, Inc.
HIPAA 2017 JHSPH IRB Clarifications and Changes
Health Insurance Portability and Accountability Act
HIPAA Privacy Rule Training
Health Insurance Portability and Accountability Act of 1996
HIPAA THE PRIVACY RULE Reviewed December 2012.
Health Insurance Portability and Accountability Act
HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT (HIPAA)
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
The HIPAA Privacy Rule: Implications for Medical Research
HIPAA Administrative Simplification
RISK MANAGEMENT IN THE TREATMENT OF OPIOID DEPENDENCE
Health Insurance Portability and Accountability Act
HIPAA Pros - Disclosures
Confidential Records and Protected Disclosures
Disability Services Agencies Briefing On HIPAA
National Congress on Health Care Compliance
The Health Insurance Portability and Accountability Act
New School Violence Law; HIPAA Privacy Training
Issues in HIPAA Research Compliance
Health Insurance Portability and Accountability Act
HIPAA Do’s and Don'ts: What is Really Behind Protected Health Information (PHI) and Health Care Privacy Rules Paul Sisler, Director, Information Services;
Health Insurance Portability and Accountability Act
Presentation transcript:

Permitted Uses & Disclosures of PHI To the Individual Treatment, Payment, and Health Care Operations Opportunity to Agree or Object Incidental Use or Disclosure Public Interest & Benefit Limited Data Set for research/public health/health care operations June 2014 HIPAA - General Principles

HIPAA - General Principles 1. To the Individual Self-explanatory June 2014 HIPAA - General Principles

2. Treatment, Payment, and Health Care Operations A covered entity may use & disclose PHI for any of the above activities conducted on its own June 2014 HIPAA - General Principles

2. Treatment, Payment, and Health Care Operations A covered entity may also disclose PHI for: the treatment activities of any HCP the payment activities of another covered entity or any HCP the health care ops of another covered entity (involving either quality / competency assurance OR fraud/abuse detection & compliance activities) Caveat = both covered entities must HAVE or HAVE HAD a relationship with the individual and the PHI pertains to the relationship June 2014 HIPAA - General Principles

HIPAA - General Principles Treatment “ The provision, coordination, or management of health care and related services for an individual by one or more HCP, including consultation between providers and referral…” June 2014 HIPAA - General Principles

HIPAA - General Principles Payment “ Activities of a health plan to… and activities of a health care provider to obtain payment or be reimbursed for the provision of health care to an individual” June 2014 HIPAA - General Principles

Health Care Operations Quality assessment/improvement (incl. case mgmt / care coordination) Competency assurance (performance eval, credentialing, accreditation) Medical reviews/audits/legal services (fraud & abuse detection/compliance) Insurance – underwriting/risk rating Business planning/development/mgmt/admin General administrative activities of the entity June 2014 HIPAA - General Principles

Must I obtain consent for this? Consent = written permission from individuals to use/disclose their PHI Is OPTIONAL under the Privacy Rule If you elect to obtain consent for this use, the content of the form and the process are at YOUR discretion June 2014 HIPAA - General Principles

3. Opportunity to Agree or Object Informal permission by patient, obtained by asking them outright or by circumstance Covered entities may use professional judgment for best interest of patient when: Patient is incapacitated Emergency situation Patient not available Examples Pharmacy dispenses meds to a family member Provider informs family of patient’s general condition or location June 2014 HIPAA - General Principles

4. Incidental Use or Disclosure Privacy Rule recognizes that every risk of an incidental use/disclosure cannot be eliminated Use/disclosure as a result of another permitted use/disclosure is permitted if: Covered entity has reasonable safeguards as required in place PHI shared was limited to “minimum necessary” June 2014 HIPAA - General Principles

5. Public Interest & Benefit Required by Law – statute/regulation/court order Public Health activities Victims of abuse/neglect/domestic violence Health oversight activities Judicial & administrative proceedings Law enforcement June 2014 HIPAA - General Principles

5. Public Interest & Benefit Decedents – funeral directors / medical examiners Organ/tissue donation Research Serious threat to health or safety Essential government functions Workers’ compensation June 2014 HIPAA - General Principles

6. Limited Data Set for Research/Public Health/Health Care Operations Limited data set = PHI where specific direct identifiers have been removed Recipient of PHI must enter into a “data use agreement” promising specific safeguards for the PHI in the data set June 2014 HIPAA - General Principles