Download presentation
Presentation is loading. Please wait.
1
Privacy Project Framework & Structure
HIPAA Summit Brent Saunders
2
Philosophy and Approach to Privacy
Six key concepts drive the project philosophy: Primary focus on business drivers, secondary on regulatory drivers Privacy and security programs should be well coordinated (information protection) Good faith efforts and documentation are essential to demonstrate compliance Approach privacy as a series of manageable implementation projects Integrate privacy and security programs into existing organizational structure and reporting realities Partner compliance and business resources The approach recognizes that, beyond legal and regulatory requirements, information protection is an emerging business imperative, whether it’s employee, patients, members, clinical and/or corporate information
3
An Approach – Implementing a Privacy Program
Assessment vs. Implementation Projects should be developed by teams and refined with the business people/department to meet your organization’s business needs, processes and environment An “implementation” approach can be broken down into the following phases: Project Organization and Impact Program and Project Structure Refinement Detail Planning/Rollout Implementation
4
The 4 Phases Project Management and Quality Assurance
Phase II – Program and Project Structure Refinement Phase III – Detail Planning and Rollout Phase I – Project Organization Phase IV – Implementation Set Expectations, Objectives, Approach Goals & Strategic Direction Build Detailed Project Plans Project Management Organizational and Legal Analysis Document Review Develop Integrated Project Plan Ongoing Oversight (as needed) Project Management Setup and Initiation Information Flow Analysis Assign Project Accountability Specific Project Assistance (as needed) Privacy Laws and Regulations - Impact Analysis Needs Assessment Finalize Project Management Structure Progress Validation (as needed) Awareness Training (as needed) Project Identification Launch Privacy & related Security Projects Compliance Maintenance Project Management and Quality Assurance
5
Steering Committee Work Groups Project Management Privacy Office
V.P.-level members from Compliance, Legal, and Functional areas Establish mission Obtain support from senior management Oversight Oversight Strategy Work Groups Work Groups established for each functional area, e.g., medical records, finance Report findings Project Management Privacy Office Develop and coordinate risk-management and compliance activities Strategy Data mapping Gap analysis Monitor compliance Implementation Develop and oversee training Business Processes Maintain compliance Assist and support business units
6
Ongoing Program Organization
Compliance Model Hub and Spoke Model Privacy Committee Model Legal Model IT Model
Similar presentations
© 2024 SlidePlayer.com. Inc.
All rights reserved.