John Parmigiani President John C. Parmigiani & Associates, LLC

Slides:



Advertisements
Similar presentations
NISTs Role in Securing Health Information AMA-IEEE Medical Technology Conference on Individualized Healthcare Kevin Stine, Information Security Specialist.
Advertisements

© 2010 AT&T Intellectual Property. All rights reserved. AT&T and the AT&T logo are trademarks of AT&T Intellectual Property. AT&T Security Consulting Risk.
HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT OF 1996 (HIPAA)
Health information security & compliance
Assisting NCHICA members in transforming the US healthcare system through the effective use of information technology, informatics and analytics. Transitions.
Massachusetts privacy law and your business  Jonathan Gossels, President, SystemExperts Corporation  Moderator: Illena Armstrong  Actual Topic: Intersecting.
1 HIT Standards Committee Privacy and Security Workgroup: Recommendations Dixie Baker, SAIC Steven Findlay, Consumers Union August 20, 2009.
Health Information Security & Privacy February 9, 2014 ONC Policy HIT Policy Committee Privacy and Security Workgroup Denise Anthony Sociology and ISTS.
1. 2 Stimulus 101: The Basics What You Need To Know Glen Tullman, Chief Executive Officer, Allscripts David Merritt, Project Director, Center for Health.
WHY CHOOSE CEO-PE?  We employ International Association of Privacy Professionals (IAPP) Certified and Health Insurance Portability & Accountability Act.
The Twelfth National HIPAA Summit Security Rule Compliance Update John C. Parmigiani & Gary G. Christoph, Ph.D. April 11, 2006.
Privacy and Security Workgroup: Big Data Public Hearing December 8, 2014 Deven McGraw, chair Stan Crosley, co-chair.
LESSONS LEARNED FROM THE PIEDMONT HEALTHCARE HIPAA SECURITY AUDIT Ken Schwartz, Vice President, Compliance Piedmont Healthcare, Inc. Atlanta, GA Nadia.
COMPLYING WITH HIPAA BUSINESS ASSOCIATE REQUIREMENTS Quick, Cost Effective Solutions for HIPAA Compliance: Business Associate Agreements.
Navigating Privacy and Security Issues for HIE: A Consumer Perspective Deven McGraw Chief Operating Officer National Partnership for Women & Families
The Institutionalization of Business Ethics
Health Information Technology Nationwide Activities and Issues Roy H. Wyman, Jr. May 7, 2009.
Copyright © 2006 CyberRAVE LLC. All rights reserved. 1 Virtual Private Network Service Grid A Fixed-to-Mobile Secure Communications Framework Managed Security.
HIT Standards Committee Privacy and Security Workgroup: Standards for Consumer Engagement Dixie Baker, SAIC Steve Findlay, Consumers Union April 28, 2009.
Compliance Management Platform ™. Compliance Management Platform Compliance is the New Marketing – Position yourself to thrive in the new regulatory and.
HIT Standards Committee Privacy and Security Workgroup: Initial Reactions Dixie Baker, SAIC Steven Findlay, Consumers Union June 23, 2009.
April 14, A Watershed Date in HIPAA Privacy Compliance: Where Should You Be in HIPAA Security Compliance and How to Get There… John Parmigiani National.
Beyond the EMR – Exchanging Health Information Outside of Your Organization John W. Loonsk, MD, FACMI Office of the National Coordinator for Health Information.
HIPAA Michigan Cancer Registrars Association 2005 Annual Educational Conference Sandy Routhier.
Privacy and Security Risks to Rural Hospitals John Hoyt, Partner December 6, 2013.
HIT Standards Committee Privacy and Security Workgroup: Privacy and Security Workgroup: Update Dixie Baker, SAIC Steve Findlay, Consumers Union March 24,
Organizational and Legal Issues -- Developing organization and governance models for HIE Day 2 -Track 5 – SECOND SESSION – PRIVACY AND SECURITY CONNECTING.
The Fifteenth National HIPAA Summit Overview of Approaches to Security Officer Training John Parmigiani December 12, 2007.
Robert Guerra Director, CryptoRights Foundation Implementing Privacy Implementing Privacy: Rules of the Game for Developers Mac-Crypto Conference on Macintosh.
January 26, 2007 State Alliance for e-Health January 26, 2007 Robert M. Kolodner, MD Interim National Coordinator Office of the National Coordinator for.
Privacy, Security and Data Exchange Committee Annual Report 2009 PHDSC Home Page  PHDSC Annual Meeting November 12, 2009.
Energize Your Workflow! ©2006 Merge eMed. All Rights Reserved User Group Meeting “Energize Your Workflow” May 7-9, Security.
CIBC Global Services © 2006, Echoworx Corporation Ubiquity of Security Compliance and Content Management Stephen Dodd Director – Enterprise Accounts.
Patrick Sulzberger, CPA, CHC Compliance & The Board A Guide to Excellence.
Lessons Learned from Recent HIPAA Breaches HHS Office for Civil Rights.
HIT Policy Committee NHIN Workgroup HIE Trust Framework: HIE Trust Framework: Essential Components for Trust April 21, 2010 David Lansky, Chair Farzad.
Chris Apgar, CISSP President, Apgar & Associates, LLC December 12, 2007.
Moving the National Health Information Technology Agenda Forward The Fourth Health Information Technology Summit March 28, 2007 Robert M. Kolodner, MD.
HIT Policy Committee Meeting Nationwide Health Information Network Governance June 25, 2010 Mary Jo Deering, PhD ONC, Office of Policy and Planning NHIN.
Organizing a Privacy Program: Administrative Infrastructure and Reporting Relationships Presented by: Samuel P. Jenkins, Director Defense Privacy Office.
Healthcare Security Professional Roundtable John Parmigiani National Practice Director Regulatory and Compliance Services CTG HealthCare Solutions, Inc.
Roundtable on Privacy in Transition: Is Privacy Policy Working in the Healthcare Sector?
Case Study: Applying Authentication Technologies as Part of a HIPAA Compliance Strategy.
Corporate Citizenship: Voices for Innovation: Shaping our environment John Galligan Director, Corporate Affairs & Citizenship
MIS5001: Information Technology Management Ethics and Continuity Management Larry Brandolph
Your Cyber Security: The scope of your risk is broad and growing To understand the nature of the risk landscape look at the presentations here today-begin.
AND CE-Prof, Inc. January 28, 2011 The Greater Chicago Dental Academy 1 Copyright CE-Prof, Inc
Terminology in Healthcare and Public Health Settings Electronic Health Records Lecture b – Definitions and Concepts in the EHR This material Comp3_Unit15.
© 2014 By Katherine Downing, MA, RHIA, CHPS, PMP.
Connecting Technology: Achieving Better Health for Patients and Pharmacy Marsha K. Millonig, MBA, BSPharm Catalyst Enterprises, LLC 1 American Society.
An Information Security Management System
The Institutionalization of Business Ethics
The Pro and Cons of the Electronic Health Records (EHR)
Risk Management and Compliance
Standards and the National HIT Agenda John W. Loonsk, MD
Quality, Evidence, and Drug Safety: Health Information Exchange November 1, 2005 Avalere Health LLC.
Taconic Health Information Network & Community
Thank you for joining. This presentation will begin shortly.
EHRs and HIPAA: Steps to Maintain Privacy and Security of Patient Data
The Practical Side of Meaningful Use:
Issues for HIPAA Compliance Gary G. Christoph, Ph.D.
The Tenth National HIPAA Summit April 7, 2005
HIPAA Compliance Services CTG HealthCare Solutions, Inc.
Objectives Describe the purposes of the Health Information Technology for Economic and Clinical Health (HITECH) Act of 2009 Explore how the HITECH Act.
Privacy in Nationwide Health IT
Research Compliance: The Research/Privacy Nexus
Healthcare Security Rule Compliance: Afternoon Plenary Session
Non-HIPAA Governmental Regulation of Healthcare Privacy and Security
HIPAA Privacy and Security Update - 5 Years After Implementation
Taconic Health Information Network & Community
Presentation transcript:

John Parmigiani President John C. Parmigiani & Associates, LLC The Sixteenth National HIPAA Summit HIPAA Afternoon Track I: Advanced Issues in HIPAA Security Compliance John Parmigiani President John C. Parmigiani & Associates, LLC © John Parmigiani, 2008

This Afternoon’s Agenda John Parmigiani: Introduction and Overview Kate Borten: Out of Sight, Out of Mind: Risks of Working Offsite Holt Anderson: Pulling It All Together for Secure Health Information Technology (HIE) ~Break~ Timothy Rearick: Risk Assessment: Key to a Successful Risk Management Program Walter Suarez: HITSP Interoperable Standards for Privacy and Security © John Parmigiani, 2008 T

HIPAA Security… Today Spotty compliance Is 2008 a “Perfect Storm” year for enforcement? Federal audits OIG/CMS State data protection laws Changing political pressures GAO/OMB scrutiny © John Parmigiani, 2008

HIPAA Security… Today Increasing number of breaches Identity theft/medical identity theft Changing technology Mobile devices Remote access Changing regulatory landscape E-discovery National Privacy © John Parmigiani, 2008

HIPAA Security… Today Push toward E-Health EHRs, PHRs, HIEs, … Whose data is it? … MS/Google/Dossia Responsibility for safeguarding E-prescribing CPOE HIT initiatives Quality outcomes Pay-for-performance/reducing costs Etc. © John Parmigiani, 2008

HIPAA Security Tomorrow Reasons to comply New approaches/safeguards Corporate governance/compliance becoming performance metrics Incentives Patient safety Consumer-driven healthcare New approaches/safeguards © John Parmigiani, 2008

In Conclusion… We hope that this afternoon that we can explore some of the issues and come up with some of the answers to the changing world of healthcare security and, in particular, what constitutes good HIPAA Security. We encourage you to listen, think, and contribute your thoughts and perspectives during the course of the afternoon’s sessions and throughout and after the conference. © John Parmigiani, 2008

Thank You ! Questions? John C. Parmigiani 410-750-2497 jcparmigiani@comcast.net www.johnparmigiani.com © John Parmigiani, 2008