HIPAA Health Insurance Portability and Accountability Act.

Slides:



Advertisements
Similar presentations
The HIPAA Privacy Rule And Its Impact On Agents And Employers National Association of Health Underwriters Capitol Conference March 23, 2003 Joseph T. Holahan,
Advertisements

Presented by Elena Chan, UCSF Pharm.D. Candidate Tiffany Jew, USC Pharm.D. Candidate March 14, 2007 P HARMACEUTICAL C ONSULTANTS, I NC. P RO P HARMA HIPAA.
1 The Health Insurance Portability and Accountability Act (HIPAA) A guided tutorial for GVSU employees.
HIPAA Basics Brian Fleetham Dickinson Wright PLLC.
HIPAA: Privacy, Security, and HITECH, Oh My! Presented by Stephanie L. Ganucheau, Special Assistant Attorney General.
HIPAA Privacy Training. 2 HIPAA Background Health Insurance Portability and Accountability Act of 1996 Copyright 2010 MHM Resources LLC.
HIPAA. What Why Who How When What Is HIPAA? Health Insurance Portability & Accountability Act of 1996.
Confidentiality and HIPAA
HIPAA Privacy Rule Training
COBB/DOUGLAS COMMUNITY SERVICES BOARD Confidentiality and Privacy of Consumer Information.
HIPAA Privacy Training Your Name Here. © 2004 MHM Resources Inc.2 HIPAA Background Health Insurance Portability and Accountability Act of 1996.
HIPAA – Privacy Rule and Research USCRF Research Educational Series March 19, 2003.
Increasing public concern about loss of privacy Broad availability of information stored and exchanged in electronic format Concerns about genetic information.
P E N N S Y L V A N I A C O A L I T I O N A G A I N S T D O M E S T I C V I O L E N C E P E N N S Y L V A N I A C O A L I T I O N A G A I N S T RAPE HIPAA.
HIPAA PRIVACY REQUIREMENTS Dana L. Thrasher Constangy, Brooks & Smith, LLC (205) ; Victoria Nemerson.
HIPAA Health Insurance Portability and Accountability Act.
What is HIPAA? This presentation was created by The University of Arizona Privacy Office, The Office for the Responsible Conduct of Research on March 5,
Health Insurance Portability and Accountability Act (HIPAA)HIPAA.
HIPAA The Hidden Beast June Kissinger Director, Risk Management Support Services March 12, 2003.
Managing Access to Student Health Information per Federal HIPAA Guidelines Joan M. Kiel, Ph.D., CHPS Duquesne University Pittsburgh, Penna
Presented by the Office of the General Counsel An Overview of HIPAA.
TM The HIPAA Privacy Rule: Safeguarding Health Information in Research and Public Health Practice Centers for Disease Control and Prevention Beverly A.
ITEC 6324 Health Insurance Portability and Accountability (HIPAA) Act of 1996 Instructor: Dr. E. Crowley Name: Victor Wong Date: 2 Sept
Reviewing the World of HIPAA Stephanie Anderson, CPC October 2006.
HIPAA Privacy Rule Compliance Training for YSU April 9, 2014.
 The Health Insurance Portability and Accountability Act of  Federal Law designed to protect sensitive information.  HIPAA violations are enforced.
COMPLYING WITH HIPAA PRIVACY RULES Presented by: Larry Grudzien, Attorney at Law.
Are you ready for HIPPO??? Welcome to HIPAA
HIPAA HIPAA Health Insurance Portability and Accountability Act of 1996.
Overview of HIPAA Administrative Simplification and Privacy Regulations Darrel J. Grinstead, Partner Amy B. Kiesel, Associate Hogan & Hartson L.L.P.
Health Insurance Portability Accountability Act of 1996 HIPAA for Researchers: IRB Related Issues HSC USC IRB.
August 10, 2001 NESNIP PRIVACY WORKGROUP HIPAA’s Minimum Necessary Standard Presented by: Mildred L. Johnson, J.D.
HIPAA Compliance Strategies for Employers, METs, MEWAs and Taft Hartley Union Trust Funds The HIPAA Colloquium at Harvard University Presented by: Melissa.
HIPAA Health Insurance Portability & Accountability Act of 1996.
HIPAA – Health Insurance Portability & Accountability Act and the Privacy Act MSgt Nechele M. Chambers Senior Enlisted Liaison TRICARE Area Office-Europe.
Proprietary and confidential and may not be reproduced or distributed without the express consent of Cap Gemini Ernst & Young U.S. LLC and Ernst & Young.
HIPAA PRIVACY AND SECURITY AWARENESS.
1 HIPAA OVERVIEW ETSU. 2 What is HIPAA? Health Insurance Portability and Accountability Act.
Health Insurance Portability and Accountability Act (HIPAA)
Compliance and Enforcement of the Privacy Rule. HHS/OCR February/March Compliance Date  April 14, 2003 – Compliance for all but small health plans.
PRIVACY AND HIPAA THE RIGHT THING TO DO. WHAT’S WRONG WITH THIS PICTURE? ? “ Did you hear that Jane from the 5 th floor is in the hospital?” “No!! Let’s.
Computerized Networking of HIV Providers Workshop Data Security, Privacy and HIPAA: Focus on Privacy Joy L. Pritts, J.D. Assistant Research Professor Health.
HIPAA (health insurance portability and accountability act)
HIPAA Michigan Cancer Registrars Association 2005 Annual Educational Conference Sandy Routhier.
Speak HIPAA Like a Native A Guide to Common HIPAA Nomenclature University of Miami Ethics Programs.
Securing Patient-Related Data: The Impact of HIPAA Module VI NUR 603 Russ McGuire.
Health Insurance Portability and Accountability Act (HIPAA) CCAC.
Davis Wright Tremaine LLP Case Study: Small Group Health Plan HIPAA Privacy Compliance for Employers September 15, 2003 Speaker Jason Froggatt Becky Williams.
Health Insurance Portability and Accountability Act of 1996 HIPAA Privacy Training for County Employees.
Understanding HIPAA (Health Insurandce Portability and Accountability Act)
FleetBoston Financial HIPAA Privacy Compliance Agnes Bundy Scanlan Managing Director and Chief Privacy Officer FleetBoston Financial.
Health Insurance portability and Accountability Act (HIPAA)‏
HIPAA Certified LLC 1 6th National HIPAA Summit JCAHO and NCQA and HIPAA Business Associates Friday, March 28, 2003.
HIPAA Health Insurance Portability and Accountability Act.
HIPAA Overview Why do we need a federal rule on privacy? Privacy is a fundamental right Privacy can be defined as the ability of the individual to determine.
HIPAA/HITECH TRAINING. Why are we here?  HIPAA  HITECH  PHI  Minimum Necessary “Need to Know”  Breaches and Fines.
HIPAA HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT UI EMS Training Dept.
 Health Insurance and Accountability Act Cornelius Villalon Jr.
The Health Insurance Portability and Accountability Act of 1996 “HIPAA” Public Law
The Medical College of Georgia HIPAA Privacy Rule Orientation.
HIPAA Privacy Rule Training
BENEFITS COMPLIANCE CHECKLIST
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
HIPAA CONFIDENTIALITY
Disability Services Agencies Briefing On HIPAA
2003 Immunization Registry Conference
The Health Insurance Portability and Accountability Act
Compliance and Enforcement of the Privacy Rule
WELCOME.
The Health Insurance Portability and Accountability Act
Presentation transcript:

HIPAA Health Insurance Portability and Accountability Act

Applicability and Compliance Dates Applicability: Health care providers who perform one of the enumerated transactions electronically Health care clearinghouses – translators Business Associates- limited to contractual requirement.

Applicability and Compliance Dates Compliance dates: Transaction Standards – October 2002, unless applied for an extension October Privacy Standards – April 2003 (“small plans”) –under $5 million in premiums (insured) or claims (self-insured) – until April 2004)

What is a “Health Plan” An individual or group plan that provides, or pays the cost of, medical care, including; A group health plan; A health insurance issuer, A health maintenance organization, Medicare and Medicaid programs, and

What is a “Health Plan” Any other individual or group plan or combination of individual or group plans that provides or pays for the cost of medical care. Employer’s ERISA plans and MEWA’s are likely covered entities.

What is a “Health Plan” Included: Health Health Reimbursement Accounts DentalPrescription / MHSA cave outs VisionSome EPA’s

What is a “Health Plan” Excluded: Workers Compensation Disability Auto Life Pension

Plan Sponsor v. Health Plan Legal fiction separateness within an organization (HR/benefits people and management / workforce) Significantly limits flow of information between those in “health plan” box and others, including management / workforce

Privacy Standards Administrative Requirements / Notice of Privacy Practices – impact dependent upon the nature of the plan (insured v. self- insured) and the scope of the information that the employer wants to receive from the sponsored health plan. Use and Disclosure – Health plan can use and disclose PHI only for limited purposes Individual Rights – New set of individual rights regarding their PHI

Privacy Standards – Administrative Requirements Self-insured Plan Privacy official and compliant contact Train workforce and document training. Implement appropriate administrative, technical and physical safeguards. Fully-insured Plans Group health plan does not create or receive PHI, other than summary health information (i.e., non- identifiable, but for 5- digit zip code) and enrollment/disenrollmen t PHI: No retaliatory acts/waiver of rights to receive benefits

Privacy Standards – Notice of Privacy Practices Self-insured Plan Group health plan must provide a notice to enrollees in plain language regarding: Uses and disclosures of PHI Explanation of individual rights Details of health plan Fully-insured Plans Only uses summary health information Insure or HMO must provide notice of privacy practices. Group health plan must maintain a notice of privacy practice and provide it upon request.

Privacy Standards – Uses and Disclosure Plan Sponsors (employers) need information for a variety of reasons: Need information to design, price and implement group health plan Need health information for other benefit plans Need health information for ADA, FMLA sick leave purposes May provide medical services to employees

Privacy Standards – Uses and Disclosure “What is PHI” Protected Health Information is information: Whether oral or recorded in any form of medium (no longer just electronic That relates to the individual’s health, healthcare treatment or payment That identifies an individual in any way Broader concept that traditional focus on medical record information

Privacy Standards – Uses and Disclosure “Limits” Group health plan can only use or disclose PHI, absent a specific written authorization from the subject, for Treatment, payment or health care operations purposes; For certain public policy related purposes; and Where the beneficiary has been told about plan policy of disclosures to certain persons involved in the beneficiaries’ care (right to opt out)

Privacy Standards – Uses and Disclosure “Minimum Necessary” Group health plans (like other covered entities) have to use reasonable efforts to limit PHI to the minimum necessary to accomplish the intended purpose whenever using or disclosing PHI or requesting PHI from another covered entity Disclosures to plan sponsor are governed by minimum necessary necessary requirement

HIPPAA Statutory Penalties Criminal Penalties: Wrongful Use/Disclosure of Individually Identifiable Health Information Knowingly using a “Unique health identifier” or knowingly obtaining or disclosing individually identifiable health information to another person: $50,000 Maximum penalty 1 year of imprisonment OR both

HIPPAA Statutory Penalties Offenses committed under “false pretenses” $100,000 maximum penalty Five (5) years maximum imprisonment or both Offenses committed with the intent to sell, transfer or use individually identifiable health information for commercial advantage, personal gain or malicious harm $250,000 maximum penalty Ten (10) years maximum imprisonment or both