Electronic Medical Records: Implications of HIPAA for Selecting and Implementing an EMR Todd Frech Senior Partner www.ociusmedinfo.com.

Slides:



Advertisements
Similar presentations
Tamtron Users Group April 2001 Preparing Your Laboratory for HIPAA Compliance.
Advertisements

H = P = A = HIPAA DEFINED HIPAA … A Federal Law Created in 1996 Health
HIPAA Security Presentation to The American Hospital Association Dianne Faup Office of HIPAA Standards November 5, 2003.
Todd Frech Ocius Medical Informatics 6650 Rivers Ave, Suite 137 North Charleston, SC Health Insurance Portability.
Health Insurance Portability and Accountability Act (HIPAA)HIPAA.
HIPAA How It Is Affecting Information Systems Within Companies Around Us.
HIPAA Security Regulations Jean C. Hemphill Ballard Spahr Andrews & Ingersoll, LLP November 30, 2004.
The importance of a Compliance program is to ensure that our agency meets the highest possible standards for all relevant federal, state and local regulations,
Methods of Administration MOA Element 7 Monitoring and Compliance.
Security Controls – What Works
ISO 17799: Standard for Security Ellie Myler & George Broadbent, The Information Management Journal, Nov/Dec ‘06 Presented by Bhavana Reshaboina.
First Practice - Information Security Management System Implementation and ISO Certification.
Information Asset Classification
INFORMATION SECURITY GOVERNANCE (ISG) Relates to the security of information systems Is an element of corporate governance.
Company Confidential How to implement privacy and security requirements in practice? Tobias Bräutigam, OTT Senior Legal Counsel, Nokia 8 October
“ Technology Working For People” Intro to HIPAA and Small Practice Implementation.
WORKSHOP IV Integrating Ethics, Compliance, Privacy and Security into a Single Organizational Initiative Geralyn Kidera JD Senior Vice President Council.
HIPAA COMPLIANCE PROTECT INFORMATION INCREASE RECYCLING SAVE MONEY.
State of Iowa Enterprise HIPAA Compliance
HIPAA Presented by: Riley Schiefelbein. HIPAA Defined Health Insurance Portability and Accountability Act (1996) Title 1 – Group health plans Title 2.
Global Privacy and Information Quality Working Group.
April 14, A Watershed Date in HIPAA Privacy Compliance: Where Should You Be in HIPAA Security Compliance and How to Get There… John Parmigiani National.
Privacy Project Framework & Structure HIPAA Summit Brent Saunders
LeToia Crozier, Esq., CHC Vice President, Compliance & Regulatory Affairs Corey Wilson Director of Technical Services & Security Officer Interactive Think.
1.Summary of Needs Analysis 2.Summary of Action Plan 3.Systems Analysis between Microsoft SharePoint® and OpenText Content Server 4.System Recommendation.
Eliza de Guzman HTM 520 Health Information Exchange.
September 12, 2004 Simplifying the Administration of HIPAA Security Angel Hoffman, RN, MSN Director, Corporate Compliance University of Pittsburgh Medical.
Organizational and Legal Issues -- Developing organization and governance models for HIE Day 2 -Track 5 – SECOND SESSION – PRIVACY AND SECURITY CONNECTING.
The Fifth National HIPAA Summit – October 30, 2002 What to Do Now: Operational Implementation of HIPAA Privacy and Security Training Presented by: Steven.
1 National Audioconference Sponsored by the HIPAA Summit June 6, 2002 Chris Apgar, CISSP Data Security & HIPAA Compliance Officer Providence Health Plan.
Connecting the Dots A Practical Approach to Integrating Compliance, Risk and Quality Jody Ann Noon RN, JD Partner Health Care Regulatory Practice.
Patient Confidentiality and Electronic Medical Records Ann J. Olsen, MBA, MA Information Security Officer and Director, Information Management Planning.
Security and Privacy Workgroup SMALL PRACTICE IMPLEMENTATION WEDI/SNIP Security and Privacy Workgroup White Paper Version 2.0 – Dated April 2004.
HIPAA Security A Quantitative and Qualitative Risk Assessment Rosemary B. Abell Director, National Healthcare Vertical Keane, Inc. HIPAA Summit VII September.
Copyright © Emerson Strategic Group, Inc. All Rights Reserved 1 Ninth National HIPAA Summit Auditing for Privacy Compliance: A Case Study September.
1 Privacy Plan of Action © HIPAA Pros 2002 All rights reserved.
Integrated and Planned Enforcement of Environmental Law Phare Twinning Project CZ03/IB/EN/01 1 EMS as part of Integrated permitting and inspections Rob.
Patrick Sulzberger, CPA, CHC Compliance & The Board A Guide to Excellence.
1 1 Building RIM Programs Chattanooga Chapter of ARMA International by Helen Streck President and CEO Kaizen InfoSource LLC.
HIPAA Security Final Rule Overview
Chapter 8 Auditing in an E-commerce Environment
ISO CONCEPTS Is a management standard, it is not performance or product standard. The underlying purpose of ISO 1400 is that companies will improve.
March 19, 2003 Audioconference Approaches to Compliance with the HIPAA Privacy and Security Workforce Training Requirements Presented by: Steven S. Lazarus,
Strategic Agenda We want to be connected to the internet……… We may even want to host our own web site……… We must have a secure network! What are the.
Healthcare Security Professional Roundtable John Parmigiani National Practice Director Regulatory and Compliance Services CTG HealthCare Solutions, Inc.
CO – CART Project Status Protocol Revision Subcommittee Update 08/17/2006.
California Department of Public Health / 1 CALIFORNIA DEPARTMENT OF PUBLIC HEALTH Standards and Guidelines for Healthcare Surge during Emergencies How.
The Health Insurance Portability and Accountability Act of 1996 “HIPAA” Public Law
HIPAA Yesterday, Today and Tomorrow? Dianne S. Faup Office of HIPAA Standards Centers for Medicare & Medicaid Services.
April 14, 2003 – HIPAA Privacy Audioconference The Importance of April 14, 2003: Where you should be regarding HIPAA privacy policies and procedures and.
Integrated permitting and inspections
Microsoft 365 Get help with regulatory compliance
Policy & Procedure Writing
Introduction to the Federal Defense Acquisition Regulation
Paul T. Smith Davis Wright Tremaine LLP
Health Insurance Portability and Accountability Act
Utah Health Information Network A Community-Based HIPAA Implementation
Privacy Project Framework & Structure
Case Study: Vendor Readiness for HIPAA Compliance
Countdown to Compliance
Health Insurance Portability and Accountability Act
Health Care: Privacy in a Digital Age
Presented by: Steven S. Lazarus, PhD, FHIMSS
HIPAA Security Standards Final Rule
HIPAA Policy & Procedure Strategies
Making Your IRBs and Clinical Investigators HIPAA-Ready
HIPAA Security A Quantitative and Qualitative Risk Assessment
Auditing Compliance with the Privacy Rule
HIPAA Compliance Services CTG HealthCare Solutions, Inc.
Changes in ISO The following are the changes in ISO In most cases, the 1996 wording is not provided. Not all changes are listed. For example,
Presentation transcript:

Electronic Medical Records: Implications of HIPAA for Selecting and Implementing an EMR Todd Frech Senior Partner

System Selection No system is HIPAA compliant Evaluate vendors on software as well their ability to support your organizations compliance efforts Include a HIPAA timeline in the contract Chain of Trust Agreement Review vendor implementation documentation

General Issues Interpretation and integration of new regulations Developing new integrated policies and procedures Staffing issues Employee training

Interpretation and Integration HIPAA constant delay has caused many organization to delay their compliance projects Privacy and Security regulations will require new organizational behaviors Many organizations are appointing their legal departments to lead compliance efforts

Integrated Policies and Procedures Rules will require a significant number of new polices and procedures The integration requirements will be a significant impact on staffing New polices will impact all aspects of the organization Polices and Procedures will need to be integrated with system operation

Staffing Issues Implementation project plans will expand –New policies and procedures –More complex training programs –Compliance programs HCO resources will be spread across many HIPAA projects

Employee Training All employees will need training System training will need to integrate new polices and procedures New methods of training will be required

Solutions Interpretation and Integration Employee education programs Develop a resource list Ask your vendor for a software compliance guide Integrated Polices and Procedures Develop a list of system polices and procedures that are required for go-live Obtain sample policies Staffing HIPAA aware project plans System checklist for HIPAA compliance Spread out projects Employee Training HIPAA aware employee training programs Separate training for HIPAA and software Include HIPAA elements in system training outline