 The Health Insurance Portability and Accountability Act of 1996.  Federal Law designed to protect sensitive information.  HIPAA violations are enforced.

Slides:



Advertisements
Similar presentations
Independent Contractor Orientation HIPAA What Is HIPAA? Health Insurance Portability and Accountability Act of 1996 The Health Insurance Portability.
Advertisements

HIPAA and Privacy An Overview of the New Federal Requirements of the Health Insurance Portability and Accountability Act (HIPAA) Reid Cushman, UM Ethics.
HIPAA Privacy Training. 2 HIPAA Background Health Insurance Portability and Accountability Act of 1996 Copyright 2010 MHM Resources LLC.
Health Insurance Portability and Accountability Act HIPAA Education for Volunteers and Students.
The Health Insurance Portability and Accountability Act - HIPAA
HIPAA Privacy Rule Training
Copyright Eastern PA EMS Council February 2003 Health Information Portability and Accountability Act It’s the law.
COBB/DOUGLAS COMMUNITY SERVICES BOARD Confidentiality and Privacy of Consumer Information.
The Health Insurance Portability and Accountability Act Basic HIPAA Training For CMU workforce with access to PHI.
Increasing public concern about loss of privacy Broad availability of information stored and exchanged in electronic format Concerns about genetic information.
The Health Insurance Portability and Accountability Act of 1996– charged the Department of Health and Human Services (DHHS) with creating health information.
HIPAA Health Insurance Portability and Accountability Act.
What is HIPAA? This presentation was created by The University of Arizona Privacy Office, The Office for the Responsible Conduct of Research on March 5,
1 HIPAA Education CCAC Professional Development Training September 2006 CCAC Professional Development Training September 2006.
NAU HIPAA Awareness Training
HIPAA Basics A Matter of Integrity. Introduction “A Matter of Integrity” defines HIPAA and protecting patient health information. Success depends on our.
HIPAA Health Insurance Portability and Accountability Act.
HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT OF 1996 (HIPAA)
HIPAA Privacy Rule Compliance Training for YSU April 9, 2014.
Health Insurance Portability & Accountability Act “HIPAA” To every patient, every time, we will provide the care that we would want for our own loved ones.
Are you ready for HIPPO??? Welcome to HIPAA
HIPAA HIPAA Health Insurance Portability and Accountability Act of 1996.
Professional Nursing Services.  Privacy and Security Training explains:  The requirements of the federal HIPAA/HITEC regulations, state privacy laws.
HIPAA Training Presentation for New Employees How did we get here? HIPAA Police 1.
HIPAA COMPLIANCE IN YOUR PRACTICE MARIBEL VALENTIN, ESQUIRE.
HIPAA Health Insurance Portability & Accountability Act of 1996.
HIPAA – Health Insurance Portability & Accountability Act and the Privacy Act MSgt Nechele M. Chambers Senior Enlisted Liaison TRICARE Area Office-Europe.
The University of Kansas Medical Center Shadow Experience Training.
Paula Peyrani, MD Medical/Project Director, HIV Program at the 550 Clinic Assistant Director, Research Design and Development Clinical and Translational.
HIPAA PRIVACY AND SECURITY AWARENESS.
HIPAA Business Associates Leadership Group Meeting June 28, 2001.
1 Research & Accounting for Disclosures March 12, 2008 Leslie J. Pfeffer, BS, CHP Office of the Vice President for Research Administration Office of Compliance.
HIPAA OBJECTIVES  Define HIPAA  Define PHI  Use of PHI  Your rights  Your responsibilities.
1 HIPAA OVERVIEW ETSU. 2 What is HIPAA? Health Insurance Portability and Accountability Act.
Health Insurance Portability and Accountability Act (HIPAA)
HIPAA Training Developed for Ridgeview Institute 2012 Hospital Wide Orientation.
HIPAA (health insurance portability and accountability act)
Building a Privacy Foundation. Setting the Standard for Privacy Health Insurance Portability and Accountability Act (HIPAA) Patient Bill of Rights Federal.
Health Insurance Portability and Accountability Act of 1996 HIPAA Privacy Training for County Employees.
Understanding HIPAA (Health Insurandce Portability and Accountability Act)
© 2013 The McGraw-Hill Companies, Inc. All rights reserved. Ch 8 Privacy Law and HIPAA.
HIPAA BASIC TRAINING Presented by Anderson Health Information Systems, Inc.
A Road Map to Research at Jefferson: HIPAA Privacy and Security Rules for Researchers Presented By: Privacy Officer/Office of Legal Counsel October 2015.
Western Asset Protection
HIPAA Health Insurance Portability and Accountability Act.
Configuring Electronic Health Records Privacy and Security in the US Lecture b This material (Comp11_Unit7b) was developed by Oregon Health & Science University.
HIPAA Overview Why do we need a federal rule on privacy? Privacy is a fundamental right Privacy can be defined as the ability of the individual to determine.
HIPAA/HITECH TRAINING. Why are we here?  HIPAA  HITECH  PHI  Minimum Necessary “Need to Know”  Breaches and Fines.
 Health Insurance and Accountability Act Cornelius Villalon Jr.
HIPAA Training. What information is considered PHI (Protected Health Information)  Dates- Birthdays, Dates of Admission and Discharge, Date of Death.
The Medical College of Georgia HIPAA Privacy Rule Orientation.
The Health Insurance Portability and Accountability Act (HIPAA) requires Plumas County to train all employees in covered departments about the County’s.
Copyright © 2009 by The McGraw-Hill Companies, Inc. All Rights Reserved. McGraw-Hill/Irwin Chapter 6 The Privacy and Security of Electronic Health Information.
UC Riverside Health Training and Development
HIPAA 2017 JHSPH IRB Clarifications and Changes
HIPAA Privacy Rule Training
Health Insurance Portability and Accountability Act of 1996
HIPAA PRIVACY & SECURITY TRAINING
HIPAA Privacy & Security
What is HIPAA? HIPAA stands for “Health Insurance Portability & Accountability Act” It was an Act of Congress passed into law in HEALTH INSURANCE.
HIPAA Update J. T. Ash University of Hawaii System
Disability Services Agencies Briefing On HIPAA
The Health Insurance Portability and Accountability Act Basic HIPAA Training For CMU workforce with access to PHI.
The Health Insurance Portability and Accountability Act
HIPAA Privacy & Security
The Health Insurance Portability and Accountability Act
HIPAA & PHI TRAINING & AWARENESS
The Health Insurance Portability and Accountability Act
The Health Insurance Portability and Accountability Act
Presentation transcript:

 The Health Insurance Portability and Accountability Act of  Federal Law designed to protect sensitive information.  HIPAA violations are enforced by the Department of Health and Human Services.

 Virtually ALL health information, or protected health information (PHI) in any format, to include:  Paper  Electronic  Oral

 Social Security number  Credit Card numbers  Driver’s License  Research data  Computer passwords  Individual identifiable health information  Personal information

 Health care providers provide them to patients.  They describe how the HIPAA-covered entity uses and discloses health information.

 The Standards for Privacy of Individually Identifiable Health Information (Privacy Rule) establishes a set of national standards for the protection of certain health information.  The U.S Department of Health and Human Services (HHS) issued the Privacy Rule to implement the requirement of the Health Insurance Portability and Accountability Act of 1996 (HIPAA)  Addresses the use and disclosure of individuals health information called “PHI” (protected health information) by covered entities subject to the Privacy Rule.

 A covered entity is any person or organization that furnishes, bills or is paid for health care services in the normal course of the business.  Pursuant to HIPAA, individually identifiable health information collected or created in a covered entity is considered “protected health information” (PHI)

 Health Care Provider  Health Plan  Health Care Clearinghouse

 This includes providers such as..  Doctors  Clinics  Psychologists  Dentists  Chiropractors  Nursing Homes  Pharmacies ...but only if they transmit any information in an electronic form in connection with a transaction for which HHS has adopted a standard.

 This includes…  Health insurance companies  HMOs  Company health plans  Government programs that pay for health care, such as Medicare, Medicaid, and the military and veterans health care programs

 This includes entities that process nonstandard health information they receive from another entity into a standard (i.e., standard electronic format or data content), or vice versa.

 Protected Health information.  Any information that can be used to identify a patient (whether living or deceased) and which relates to the patient’s past, present, or future physical or mental health or condition, including healthcare services provided and the payment for those services.

 Patient name  Telephone number  Social Security number  Fax number  Vehicle identification number  address  Web URL’s  Dates  Names of relatives  Full face photograph or images  Health care record number  Account number  Biometric identifier  Device identifier  Health plan beneficiary number  Certificate or license number  Any other unique number, code, or characteristic that can be linked to an individual.

 To define and limit the circumstances in which an individual’s PHI may be used or disclosed by covered entities.  A covered entity may not use or disclose protected health information, except either:  as the Privacy Rule permits or requires.  as the individual who is the subject of the information (or the individual’s personal representative) authorizes in writing.

An employee may only access or disclose a patient’s PHI when this access is part of the employee’s job duties.

 It is never acceptable for an employer to look at PHI “just out of curiosity” even if no harm is intended.  All information is entitled to the same protection whether it may be from a close friend or family and must be kept private.

 Covered entity may use/disclose PHI to carry out essential health care functions. Treatment Payment Health care operations Disclosures for other purposes usually require a specific, written authorization from the individual of the information.

Treatment means the provision, coordination, or management of health care by one or more health care providers, including:  Consultation between health care providers; or  Patient referrals

Payment means activities of:  Health care providers to obtain payment or be reimbursed for their services.  Health plans to obtain premiums, fulfill coverage responsibilities, or provide reimbursement for the provision of health care.

 Health care operations are administrative, financial, legal and quality improvement activities  Necessary to run business and to support core functions of treatment and payment  Quality assessment and improvement activities  Training, accreditation, certification, credentialing, licensing, reviewing competence, evaluating performance  Fraud and abuse detection

 Only members of the workforce who need protected health information may have access to it.  You should only have access to the “minimum necessary” amount of PHI to do their job.

 You can disclose PHI to a person authorized to have the PHI.  You may need to verify that the individual really is who they claim to be.

 A breach occurs when information that by law must be protected is:  Lost, stolen, or improperly disposed of (i.e. paper or device upon which the information is recorded cannot be accounted for  Hacked into by people or mechanized programs that are not authorized to have access  Communicated or sent to others who have no official need to receive it (for example, gossip from information learned of a medical record)

 Do not share PHI of your client with anybody who does not need to know, such as your family and friends.  Do not save PHI of your client to your laptop, flash drive or other electronic media unless you are required to do so.  Do not leave PHI out for everyone to see. Do not leave PHI in a voic message. Do not put PHI in a trash or recycle bin, but make sure it is shredded.

 HIPAA is a Federal Law.  HIPAA mistakes can have the same types of consequences as any mistakes you may make at work.  Purposely disclosing PHI to unauthorized individuals is a criminal offense.

Spot the HIPAA violation (8min) KU The Omnibus Rule (3min) QL9PoePU HIPAA Training for Caregivers (23min) fk