EHR & BIG DATA – RISKS AND ADVANTAGES OF AMASSING MEDICAL DATABASES Sandra Gardiner Technology Law Section October 24, 2014.

Slides:



Advertisements
Similar presentations
Todd Frech Ocius Medical Informatics 6650 Rivers Ave, Suite 137 North Charleston, SC Health Insurance Portability.
Advertisements

HIPAA Privacy Rule “Standards for Privacy of Individually Identifiable Health Information” 45 CFR 160 and 164* *
HIPAA Basics Brian Fleetham Dickinson Wright PLLC.
1. As a Florida KidCare community partner families entrust you to not only help them navigate the Florida KidCare system but to keep the information they.
Health Insurance Portability and Accountability Act HIPAA Education for Volunteers and Students.
Confidentiality and HIPAA
COBB/DOUGLAS COMMUNITY SERVICES BOARD Confidentiality and Privacy of Consumer Information.
The Health Insurance Portability and Accountability Act Basic HIPAA Training For CMU workforce with access to PHI.
HIPAA – Privacy Rule and Research USCRF Research Educational Series March 19, 2003.
Increasing public concern about loss of privacy Broad availability of information stored and exchanged in electronic format Concerns about genetic information.
National Cancer Institute Cancer Therapy Evaluation Program (CTEP) presents: How to Obtain Protected Health Information (PHI) from an Outside Healthcare.
WORKFORCE CONFIDENTIALITY HIPAA Reminders. HIPAA 101 The Health Insurance Portability and Accountability Act (HIPAA) protects patient privacy. HIPAA is.
HIPAA Health Insurance Portability and Accountability Act.
Dr. Yaseen Hayajneh Health Insurance Portability and Accountability Act Yaseen HayajnehYaseen Hayajneh RN, MPH, PhD.
Stony Brook Health Sciences Center Melissa Pinero HIPAA Privacy Officer
NAU HIPAA Awareness Training
HIPAA Privacy Keys to Success Education for Nursing and all other Clinical Students Effective January 2010 HIPAA Job Specific Education1.
CHAPTER © 2011 The McGraw-Hill Companies, Inc. All rights reserved. 2 The Use of Health Information Technology in Physician Practices.
Informed Consent.
 The Health Insurance Portability and Accountability Act of  Federal Law designed to protect sensitive information.  HIPAA violations are enforced.
© 2011 The McGraw-Hill Companies, Inc. All rights reserved. 2.5 HIPAA Legislation and its Impact on Physician Practices 2-15 The Health Insurance Portability.
Health Insurance Portability & Accountability Act “HIPAA” To every patient, every time, we will provide the care that we would want for our own loved ones.
Professional Nursing Services.  Privacy and Security Training explains:  The requirements of the federal HIPAA/HITEC regulations, state privacy laws.
HIPAA Training Presentation for New Employees How did we get here? HIPAA Police 1.
Health information security & compliance
Nora B. McCann Privacy Manager Corporate Compliance Fox Chase Cancer Center
What does this form mean? HIPAA Authorization means prior written permission for use and disclosure of protected health information (PHI) from the information’s.
HIPAA, Researchers and the IRB Alan Homans, IRB Chair and Nancy Stalnaker, IRB Administrator.
HIPAA COMPLIANCE IN YOUR PRACTICE MARIBEL VALENTIN, ESQUIRE.
HIPAA Health Insurance Portability & Accountability Act of 1996.
Protected Health Information (PHI). Privileged Communication An exchange of information between two individuals in a confidential relationship. (Examples:
University of Miami1 Privacy, Confidentiality & Security Marisabel Davalos, M.S.Ed., CIP Associate Director of Educational Initiatives November, 2008.
Paula Peyrani, MD Medical/Project Director, HIV Program at the 550 Clinic Assistant Director, Research Design and Development Clinical and Translational.
The Use of Health Information Technology in Physician Practices
“ Technology Working For People” Intro to HIPAA and Small Practice Implementation.
HIPAA Business Associates Leadership Group Meeting June 28, 2001.
1 Research & Accounting for Disclosures March 12, 2008 Leslie J. Pfeffer, BS, CHP Office of the Vice President for Research Administration Office of Compliance.
1 HIPAA OVERVIEW ETSU. 2 What is HIPAA? Health Insurance Portability and Accountability Act.
HIPAA Privacy and Research August 21, 2015
Health information that does not identify an individual and with respect to which there is no reasonable basis to believe that the information can be.
HIPAA Training Developed for Ridgeview Institute 2012 Hospital Wide Orientation.
PwC Tissue Banking and Repositories – Human Subject Protections Privacy Protections Medical Research Summit Tom Puglisi, Ph.D. Friday March 7 – 9:15 am.
© 2009 The McGraw-Hill Companies, Inc. All rights reserved. 1 McGraw-Hill Chapter 2 The HIPAA Privacy Standards HIPAA for Allied Health Careers.
Medical Law and Ethics, Third Edition Bonnie F. Fremgen Copyright ©2009 by Pearson Education, Inc. Upper Saddle River, New Jersey All rights reserved.
Health Insurance Portability and Accountability Act (HIPAA) CCAC.
HIPAA Health Insurance Portability and Accountability Act of 1996.
Configuring Electronic Health Records Privacy and Security in the US Lecture b This material (Comp11_Unit7b) was developed by Oregon Health & Science University.
CH 10. Confidentiality A. Confidentiality about sensitive medical information is necessary to preserve the patient’s dignity. B. In order to receive payment.
The Information Age Redefining the Rules of Business.
© 2014 By Katherine Downing, MA, RHIA, CHPS, PMP.
Teaching & POEMs and DOEs in an Online Classroom Jacob Reider, MD David C Ross Albany Medical College.
Final HIPAA Privacy Rule: The Research Provisions Julie Kaneshiro DHHS Office for Human Research Protections Phone: Fax:
Privacy: HIPAA Emerson Murphy-Hill. Rosie Callender, RHIA, web.msm.edu/hipaa/An%20Introduction%20to%20HIPAA.ppt What is HIPAA? A Federal Law Created in.
HIPAA and RESEARCH 5 th Thursday May 31, Page 2.
Developed for Ridgeview Institute 2015 Hospital Wide Orientation
ELECTRONIC HEALTH RECORD PRIVACY TRAINING
HIPAA PRIVACY & SECURITY TRAINING
Protecting our members, our company, and our selves
No No, Yes Yes: Simple Privacy & Information Security Tips Krista Barnes, J.D. Senior Legal Officer and Director, Privacy & Information Security, Institutional.
Disability Services Agencies Briefing On HIPAA
Transfer of Materials, Confidential Information, and Data
The Health Insurance Portability and Accountability Act Basic HIPAA Training For CMU workforce with access to PHI.
The Health Insurance Portability and Accountability Act
New School Violence Law; HIPAA Privacy Training
HIPAA & PHI TRAINING & AWARENESS
The Health Insurance Portability and Accountability Act
DSHS, Environmental & Injury Epidemiology and Toxicology
Case Study Template Kerecis Aurora Awards
The Health Insurance Portability and Accountability Act
From Baby Boomers to Millennials
Presentation transcript:

EHR & BIG DATA – RISKS AND ADVANTAGES OF AMASSING MEDICAL DATABASES Sandra Gardiner Technology Law Section October 24, 2014

A GENDA Intersection of the Healthcare industry and technology Regulatory Touchstone – HIPAA, HITECH and the Omnibus Rule at a glance Data use in Research Data use in Commercial Settings

H EALTHCARE I NDUSTRY Why your technology clients continue to be interested in servicing healthcare:

H EALTHCARE INDUSTRY Many big data opportunities in healthcare market Enterprise HIE - Large Health Systems want visibility across their system at all levels Physician Alignment – use a common technology platform to improve ease of doing business with a health system and to communicate with affiliated practices and facilities Care Coordination – enables entire patient record to be shared and viewed by all care providers; requires access to health care records across disparate technology systems/providers Population Management - address/manage health outcomes of a group, relies heavily on data analytics ACO/Outcome Reimbursement - reimbursement and payment models based on outcomes for physicians or facilities, relies on data analytics and tracking data across providers/points of care

D EFINING BIG DATA Big data is an all-encompassing term for any collection of data sets so large and complex that it becomes difficult to process using traditional data processing applications. The challenges include analysis, capture, curation, search, sharing, storage, transfer, visualization, and privacy violations. Analytics of large related data sets can allow for correlations to be found

URE

R EGULATORY LANDSCAPE Federal Legislation : HIPAA HITECH Privacy Rule Safeguards Rule Omnibus Rule State legislation – can include more obligations more protective of PHI, esp. around sensitive conditions (such as HIV or mental health) and minors Net, Net: Technology vendors with access to PHI are Business Associates, and now have direct liability for compliance with federal HIPAA requirements

H EALTHCARE INDUSTRY EMR – Electronic Medical Record PHI – Protected Health Information o Names; All geographical subdivisions smaller than a State, including street address, city, county, precinct, zip code, and their equivalent geocodes, All elements of dates (except year) for dates directly related to an individual, including birth date, admission date, discharge date, date of death; and all ages over 89 and all elements of dates (including year) indicative of such age, except that such ages and elements may be aggregated into a single category of age 90 or older; Phone numbers; Fax numbers; Electronic mail addresses; Social Security numbers; Medical record numbers; Health plan beneficiary numbers; Account numbers; Certificate/license numbers; Vehicle identifiers and serial numbers, including license plate numbers; Device identifiers and serial numbers; Web Universal Resource Locators (URLs)

R EGULATORY LANDSCAPE Fast tour of HIPAA requirements: Requires patient notifications and consent to the collection, use and disclosure of PHI to allow for meaningful consent Technical, physical and administrative safeguards Provide notices of security breaches/incidents Thou shall not sell PHI Fines and penalties for violations

C ASE S TUDY B.I.G. Data Company is an emerging tech company with a business intelligence technology offering (i.e. data collection and analytics). For performance, infrastructure, cost and redundancy, B.I.G. Data’s technology resides in a Amazon Tier 1 data center. To date, the company has a successful track record with a number of marquee clients outside of the healthcare industry. The CEO of B.I.G. Data had a college roommate who is now the CIO at a large, multi-facility health system. Some of the facilities are owned in whole or part by the parent corporation, some are affiliated by contract. The CIO has been told by the Board to use technology to: a. Facilitate care coordination, which requires all employed and affiliated physicians to access patient data across the entire enterprise b. Provide data analytics to allow for pay for performance or accountable care at the physician level and department level c. Provide data analytics to provide visibility on how various aspects of the enterprise are performing and benchmark them across the organization The CEO of B.I.G. Data has called you – what are some of the challenges unique in the healthcare setting?

C HALLENGESONE OF THE CHALLENGES Technology is only one of the challenges