SlideShare une entreprise Scribd logo
1  sur  19
HIPAA/HITECH SOLUTION FOR
SMALL MEDICAL PRACTICES
AND BUSINESS ASSOCIATES
Presented by:
ITS Alliances, Inc.
Aegify SecureGRC
TM
2
HITECH has new CRIMINAL liabilities
WHAT HAS CHANGED?
ITS Alliances, Inc. - www.itsalliances.com - Proprietary and Confidential
Expanded the scope of HIPAA privacy, security
and enforcement standards to subject business
associates and their subcontractors to the same
administrative, technical and physical security
safeguard requirements as covered entities,
including civil and criminal sanctions for violating
the health information privacy of individuals.
WHAT HAS CHANGED?
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
DON'T THINK IT CAN HAPPEN TO YOU?
 What if a employee steals records? 48%
 What if a laptop is lost or stolen? 26%
 What if a BA steals data? 20%
 What if you lose a Blackberry, IPAD or other
portable data storage? 14%
 What if some one steals my records after I dispose
of them? 6%
 What if some one hacks into your network? 4%
 What if?
 What if?
It happens EVERY day.
Of the incidents reported , these were the % of cause.
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
5
“Accordingly, we recommend that
physicians (and their business associates)
plan immediately to comply with these new
breach notification requirements”
BREACH RULES
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
6
"Administrative safeguards" focus on workforce
training and contingency planning (45 CFR
§164.308).
The cornerstones, however, are risk analysis and
risk management—both "required." Critical and
thorough risk analysis must take place before any
attempt at regulatory compliance is made.
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
Tough getting started:
Where to begin?
 Most smart CE’s and BA’s WANT to be in
compliance but don’t know where to start.
7
WHAT IS SO HARD ABOUT BECOMING COMPLIANT?
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
WEB based self assessment for
HIPAA/HITECH and Security Practices
8
SecureGRC HIPAA/HITECH
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
BUILT IN DOCUMENT
REPOSITORY
9
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
HELP IS ALWAYS NEARBY
HELP IS ALWAYS NEARBY
HELP IS ALWAYS NEARBY
13
EVERY QUESTIONS
HAS A RISK RATING
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
14
SIMPLE, BUT EXTENSIVE FILTERING
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
SUBMIT FOR REVIEW
15ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
Real Time Status
16
SecureGRC SB HIPAA
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
SIMPLE REPORTS, SORTED
BY HIGHEST RISK
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
HIPAA REPORT ON COMPLIANCE
(HROC)
18
CE
or
BA
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
SECUREGRC SB HIPAA/HITECH
SELF ASSESSMENT
1. Simple
2. Inexpensive
3. Meets and exceeds HIPAA and HITECH privacy and
security requirements for SB
4. Meets and exceeds Section 15 of Meaningful Use 1
5. Central document repository with automated audit
controls.
6. Library of sample policies, procedures and forms.
7. Extensive help and best practices
8. Requires minimal labor on your part
9. Helps manage your BA’s (Vendor Management)
10. HIPAA Report on Compliance (HROC)
ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com

Contenu connexe

En vedette

Live the search
Live the searchLive the search
Live the searchFlorMDP
 
Launch Yourself Event Pictures & Movie
Launch Yourself Event Pictures & MovieLaunch Yourself Event Pictures & Movie
Launch Yourself Event Pictures & MovieStella van Rheenen
 
Connect and Combine
Connect and CombineConnect and Combine
Connect and CombineFlorMDP
 
It aac defense-it-cloud2013
It aac defense-it-cloud2013It aac defense-it-cloud2013
It aac defense-it-cloud2013John Weiler
 
ISI-012 Complete submission to DCENR on Solar Renewable energy, final, 18-Sep-15
ISI-012 Complete submission to DCENR on Solar Renewable energy, final, 18-Sep-15ISI-012 Complete submission to DCENR on Solar Renewable energy, final, 18-Sep-15
ISI-012 Complete submission to DCENR on Solar Renewable energy, final, 18-Sep-15Jack O'Sullivan
 
Fluidmesh Press Conference 2015 Las Vegas: towards the Internet of Things
Fluidmesh Press Conference 2015 Las Vegas: towards the Internet of ThingsFluidmesh Press Conference 2015 Las Vegas: towards the Internet of Things
Fluidmesh Press Conference 2015 Las Vegas: towards the Internet of ThingsUmberto Malesci
 
Digital-журнал "Этажизнь" (2016)
Digital-журнал "Этажизнь" (2016)Digital-журнал "Этажизнь" (2016)
Digital-журнал "Этажизнь" (2016)Maxim Yatcenko
 
WSSP-08 Complete Submission by ZWAI to Irish Water, April 2015
WSSP-08 Complete Submission by ZWAI to Irish Water, April 2015WSSP-08 Complete Submission by ZWAI to Irish Water, April 2015
WSSP-08 Complete Submission by ZWAI to Irish Water, April 2015Jack O'Sullivan
 
Digital-стратегия для компании Этажи (Demo)
Digital-стратегия для компании Этажи (Demo)Digital-стратегия для компании Этажи (Demo)
Digital-стратегия для компании Этажи (Demo)Maxim Yatcenko
 
Что общего у Digital marketing и joy division
Что общего у Digital marketing и joy divisionЧто общего у Digital marketing и joy division
Что общего у Digital marketing и joy divisionMaxim Yatcenko
 

En vedette (13)

Live the search
Live the searchLive the search
Live the search
 
Launch Yourself Event Pictures & Movie
Launch Yourself Event Pictures & MovieLaunch Yourself Event Pictures & Movie
Launch Yourself Event Pictures & Movie
 
Connect and Combine
Connect and CombineConnect and Combine
Connect and Combine
 
Cs international clients brochure
Cs international   clients brochureCs international   clients brochure
Cs international clients brochure
 
It aac defense-it-cloud2013
It aac defense-it-cloud2013It aac defense-it-cloud2013
It aac defense-it-cloud2013
 
ISI-012 Complete submission to DCENR on Solar Renewable energy, final, 18-Sep-15
ISI-012 Complete submission to DCENR on Solar Renewable energy, final, 18-Sep-15ISI-012 Complete submission to DCENR on Solar Renewable energy, final, 18-Sep-15
ISI-012 Complete submission to DCENR on Solar Renewable energy, final, 18-Sep-15
 
Fluidmesh Press Conference 2015 Las Vegas: towards the Internet of Things
Fluidmesh Press Conference 2015 Las Vegas: towards the Internet of ThingsFluidmesh Press Conference 2015 Las Vegas: towards the Internet of Things
Fluidmesh Press Conference 2015 Las Vegas: towards the Internet of Things
 
Digital-журнал "Этажизнь" (2016)
Digital-журнал "Этажизнь" (2016)Digital-журнал "Этажизнь" (2016)
Digital-журнал "Этажизнь" (2016)
 
Enike P45(ONLINE) (1)
Enike P45(ONLINE) (1)Enike P45(ONLINE) (1)
Enike P45(ONLINE) (1)
 
WSSP-08 Complete Submission by ZWAI to Irish Water, April 2015
WSSP-08 Complete Submission by ZWAI to Irish Water, April 2015WSSP-08 Complete Submission by ZWAI to Irish Water, April 2015
WSSP-08 Complete Submission by ZWAI to Irish Water, April 2015
 
Digital-стратегия для компании Этажи (Demo)
Digital-стратегия для компании Этажи (Demo)Digital-стратегия для компании Этажи (Demo)
Digital-стратегия для компании Этажи (Demo)
 
Что общего у Digital marketing и joy division
Что общего у Digital marketing и joy divisionЧто общего у Digital marketing и joy division
Что общего у Digital marketing и joy division
 
Co-creatie met Jongeren
Co-creatie met Jongeren Co-creatie met Jongeren
Co-creatie met Jongeren
 

Similaire à HIPAA Compliance Consulting and Management Services

7 Steps to Build an Effective Corporate Compliance Strategy
7 Steps to Build an Effective Corporate Compliance Strategy7 Steps to Build an Effective Corporate Compliance Strategy
7 Steps to Build an Effective Corporate Compliance StrategyMaarten Boonen
 
Hipaa Gap Assessment.Sanitized Report
Hipaa Gap Assessment.Sanitized ReportHipaa Gap Assessment.Sanitized Report
Hipaa Gap Assessment.Sanitized Reporttbeckwith
 
Don't Let HIPAA Violations Happen: Tips for Staying Safe Online
Don't Let HIPAA Violations Happen: Tips for Staying Safe OnlineDon't Let HIPAA Violations Happen: Tips for Staying Safe Online
Don't Let HIPAA Violations Happen: Tips for Staying Safe OnlineConference Panel
 
Cyber Security - NAHU Continuing Education Course
Cyber Security - NAHU Continuing Education CourseCyber Security - NAHU Continuing Education Course
Cyber Security - NAHU Continuing Education CourseScott Diehl
 
Unrestricted - Complex Regulation Practical Security FINAL
Unrestricted - Complex Regulation Practical Security FINALUnrestricted - Complex Regulation Practical Security FINAL
Unrestricted - Complex Regulation Practical Security FINALWayne Anderson
 
HIPAA Security Trends and Future Expectations
HIPAA Security Trends and Future ExpectationsHIPAA Security Trends and Future Expectations
HIPAA Security Trends and Future ExpectationsPYA, P.C.
 
Protecting Patient Privacy: Navigating HIPAA in Digital Landscapes
Protecting Patient Privacy: Navigating HIPAA in Digital LandscapesProtecting Patient Privacy: Navigating HIPAA in Digital Landscapes
Protecting Patient Privacy: Navigating HIPAA in Digital LandscapesConference Panel
 
The Importance of HIPAA Compliance in ensuring the Privacy and Security of PHI!
The Importance of HIPAA Compliance in ensuring the Privacy and Security of PHI!The Importance of HIPAA Compliance in ensuring the Privacy and Security of PHI!
The Importance of HIPAA Compliance in ensuring the Privacy and Security of PHI!Shelly Megan
 
HIPAA Business Associate Compliance and Dangers
HIPAA Business Associate Compliance and DangersHIPAA Business Associate Compliance and Dangers
HIPAA Business Associate Compliance and DangersConference Panel
 
Corporate Data: A Protected Asset or a Ticking Time Bomb?
Corporate Data: A Protected Asset or a Ticking Time Bomb? Corporate Data: A Protected Asset or a Ticking Time Bomb?
Corporate Data: A Protected Asset or a Ticking Time Bomb? Varonis
 
Guide to hipaa compliance for containers
Guide to hipaa compliance for containersGuide to hipaa compliance for containers
Guide to hipaa compliance for containersAbhishek Sood
 
HIPAA 101- What all Doctors NEED to know
HIPAA 101- What all Doctors NEED to knowHIPAA 101- What all Doctors NEED to know
HIPAA 101- What all Doctors NEED to knowCompliancy Group
 
Read Ethics in IT. Information technology is the engine that make.docx
Read Ethics in IT. Information technology is the engine that make.docxRead Ethics in IT. Information technology is the engine that make.docx
Read Ethics in IT. Information technology is the engine that make.docxleonorepour284
 
Data Breach Response: Before and After the Breach (Series: Cybersecurity & Da...
Data Breach Response: Before and After the Breach (Series: Cybersecurity & Da...Data Breach Response: Before and After the Breach (Series: Cybersecurity & Da...
Data Breach Response: Before and After the Breach (Series: Cybersecurity & Da...Financial Poise
 
Uncovering Fraud in Key Financial Accounts using Data Analysis
Uncovering Fraud in Key Financial Accounts using Data AnalysisUncovering Fraud in Key Financial Accounts using Data Analysis
Uncovering Fraud in Key Financial Accounts using Data AnalysisFraudBusters
 
Lawyers: What You Don't Know About HIPAA Could Hurt You
Lawyers: What You Don't Know About HIPAA Could Hurt YouLawyers: What You Don't Know About HIPAA Could Hurt You
Lawyers: What You Don't Know About HIPAA Could Hurt YouOregon Law Practice Management
 
HIPAA compliance for Business Associates- The value of compliance, how to acq...
HIPAA compliance for Business Associates- The value of compliance, how to acq...HIPAA compliance for Business Associates- The value of compliance, how to acq...
HIPAA compliance for Business Associates- The value of compliance, how to acq...Compliancy Group
 
HIPAA and Son of HIPAA - Notes from HealthCamp Boston Unconference
HIPAA and Son of HIPAA - Notes from HealthCamp Boston UnconferenceHIPAA and Son of HIPAA - Notes from HealthCamp Boston Unconference
HIPAA and Son of HIPAA - Notes from HealthCamp Boston UnconferenceDavid Harlow
 

Similaire à HIPAA Compliance Consulting and Management Services (20)

7 Steps to Build an Effective Corporate Compliance Strategy
7 Steps to Build an Effective Corporate Compliance Strategy7 Steps to Build an Effective Corporate Compliance Strategy
7 Steps to Build an Effective Corporate Compliance Strategy
 
Hipaa Gap Assessment.Sanitized Report
Hipaa Gap Assessment.Sanitized ReportHipaa Gap Assessment.Sanitized Report
Hipaa Gap Assessment.Sanitized Report
 
Don't Let HIPAA Violations Happen: Tips for Staying Safe Online
Don't Let HIPAA Violations Happen: Tips for Staying Safe OnlineDon't Let HIPAA Violations Happen: Tips for Staying Safe Online
Don't Let HIPAA Violations Happen: Tips for Staying Safe Online
 
Cyber Security - NAHU Continuing Education Course
Cyber Security - NAHU Continuing Education CourseCyber Security - NAHU Continuing Education Course
Cyber Security - NAHU Continuing Education Course
 
Unrestricted - Complex Regulation Practical Security FINAL
Unrestricted - Complex Regulation Practical Security FINALUnrestricted - Complex Regulation Practical Security FINAL
Unrestricted - Complex Regulation Practical Security FINAL
 
HIPAA Security Trends and Future Expectations
HIPAA Security Trends and Future ExpectationsHIPAA Security Trends and Future Expectations
HIPAA Security Trends and Future Expectations
 
Protecting Patient Privacy: Navigating HIPAA in Digital Landscapes
Protecting Patient Privacy: Navigating HIPAA in Digital LandscapesProtecting Patient Privacy: Navigating HIPAA in Digital Landscapes
Protecting Patient Privacy: Navigating HIPAA in Digital Landscapes
 
The Importance of HIPAA Compliance in ensuring the Privacy and Security of PHI!
The Importance of HIPAA Compliance in ensuring the Privacy and Security of PHI!The Importance of HIPAA Compliance in ensuring the Privacy and Security of PHI!
The Importance of HIPAA Compliance in ensuring the Privacy and Security of PHI!
 
HIPAA Business Associate Compliance and Dangers
HIPAA Business Associate Compliance and DangersHIPAA Business Associate Compliance and Dangers
HIPAA Business Associate Compliance and Dangers
 
Corporate Data: A Protected Asset or a Ticking Time Bomb?
Corporate Data: A Protected Asset or a Ticking Time Bomb? Corporate Data: A Protected Asset or a Ticking Time Bomb?
Corporate Data: A Protected Asset or a Ticking Time Bomb?
 
Guide to hipaa compliance for containers
Guide to hipaa compliance for containersGuide to hipaa compliance for containers
Guide to hipaa compliance for containers
 
HIPAA 101- What all Doctors NEED to know
HIPAA 101- What all Doctors NEED to knowHIPAA 101- What all Doctors NEED to know
HIPAA 101- What all Doctors NEED to know
 
Read Ethics in IT. Information technology is the engine that make.docx
Read Ethics in IT. Information technology is the engine that make.docxRead Ethics in IT. Information technology is the engine that make.docx
Read Ethics in IT. Information technology is the engine that make.docx
 
Data Breach Response: Before and After the Breach (Series: Cybersecurity & Da...
Data Breach Response: Before and After the Breach (Series: Cybersecurity & Da...Data Breach Response: Before and After the Breach (Series: Cybersecurity & Da...
Data Breach Response: Before and After the Breach (Series: Cybersecurity & Da...
 
Uncovering Fraud in Key Financial Accounts using Data Analysis
Uncovering Fraud in Key Financial Accounts using Data AnalysisUncovering Fraud in Key Financial Accounts using Data Analysis
Uncovering Fraud in Key Financial Accounts using Data Analysis
 
Lawyers: What You Don't Know About HIPAA Could Hurt You
Lawyers: What You Don't Know About HIPAA Could Hurt YouLawyers: What You Don't Know About HIPAA Could Hurt You
Lawyers: What You Don't Know About HIPAA Could Hurt You
 
HIPAA compliance for Business Associates- The value of compliance, how to acq...
HIPAA compliance for Business Associates- The value of compliance, how to acq...HIPAA compliance for Business Associates- The value of compliance, how to acq...
HIPAA compliance for Business Associates- The value of compliance, how to acq...
 
HIPAA and Son of HIPAA - Notes from HealthCamp Boston Unconference
HIPAA and Son of HIPAA - Notes from HealthCamp Boston UnconferenceHIPAA and Son of HIPAA - Notes from HealthCamp Boston Unconference
HIPAA and Son of HIPAA - Notes from HealthCamp Boston Unconference
 
BEA Presentation
BEA PresentationBEA Presentation
BEA Presentation
 
How Safe is Your Patient Data?
How Safe is Your Patient Data?How Safe is Your Patient Data?
How Safe is Your Patient Data?
 

Dernier

Arti Languages Pre Seed Teaser Deck 2024.pdf
Arti Languages Pre Seed Teaser Deck 2024.pdfArti Languages Pre Seed Teaser Deck 2024.pdf
Arti Languages Pre Seed Teaser Deck 2024.pdfwill854175
 
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)Adnet Communications
 
Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1kcpayne
 
PHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation FinalPHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation FinalPanhandleOilandGas
 
Falcon Invoice Discounting: The best investment platform in india for investors
Falcon Invoice Discounting: The best investment platform in india for investorsFalcon Invoice Discounting: The best investment platform in india for investors
Falcon Invoice Discounting: The best investment platform in india for investorsFalcon Invoice Discounting
 
Over the Top (OTT) Market Size & Growth Outlook 2024-2030
Over the Top (OTT) Market Size & Growth Outlook 2024-2030Over the Top (OTT) Market Size & Growth Outlook 2024-2030
Over the Top (OTT) Market Size & Growth Outlook 2024-2030tarushabhavsar
 
Putting the SPARK into Virtual Training.pptx
Putting the SPARK into Virtual Training.pptxPutting the SPARK into Virtual Training.pptx
Putting the SPARK into Virtual Training.pptxCynthia Clay
 
Mifepristone Available in Muscat +918761049707^^ €€ Buy Abortion Pills in Oman
Mifepristone Available in Muscat +918761049707^^ €€ Buy Abortion Pills in OmanMifepristone Available in Muscat +918761049707^^ €€ Buy Abortion Pills in Oman
Mifepristone Available in Muscat +918761049707^^ €€ Buy Abortion Pills in Omaninstagramfab782445
 
Pre Engineered Building Manufacturers Hyderabad.pptx
Pre Engineered  Building Manufacturers Hyderabad.pptxPre Engineered  Building Manufacturers Hyderabad.pptx
Pre Engineered Building Manufacturers Hyderabad.pptxRoofing Contractor
 
Uneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration PresentationUneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration Presentationuneakwhite
 
Falcon Invoice Discounting: Tailored Financial Wings
Falcon Invoice Discounting: Tailored Financial WingsFalcon Invoice Discounting: Tailored Financial Wings
Falcon Invoice Discounting: Tailored Financial WingsFalcon Invoice Discounting
 
Structuring and Writing DRL Mckinsey (1).pdf
Structuring and Writing DRL Mckinsey (1).pdfStructuring and Writing DRL Mckinsey (1).pdf
Structuring and Writing DRL Mckinsey (1).pdflaloo_007
 
joint cost.pptx COST ACCOUNTING Sixteenth Edition ...
joint cost.pptx  COST ACCOUNTING  Sixteenth Edition                          ...joint cost.pptx  COST ACCOUNTING  Sixteenth Edition                          ...
joint cost.pptx COST ACCOUNTING Sixteenth Edition ...NadhimTaha
 
TVB_The Vietnam Believer Newsletter_May 6th, 2024_ENVol. 006.pdf
TVB_The Vietnam Believer Newsletter_May 6th, 2024_ENVol. 006.pdfTVB_The Vietnam Believer Newsletter_May 6th, 2024_ENVol. 006.pdf
TVB_The Vietnam Believer Newsletter_May 6th, 2024_ENVol. 006.pdfbelieveminhh
 
Phases of Negotiation .pptx
 Phases of Negotiation .pptx Phases of Negotiation .pptx
Phases of Negotiation .pptxnandhinijagan9867
 
Paradip CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Paradip CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGParadip CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Paradip CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGpr788182
 
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al MizharAl Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizharallensay1
 
How to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League CityHow to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League CityEric T. Tung
 
Falcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business PotentialFalcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business PotentialFalcon investment
 

Dernier (20)

Arti Languages Pre Seed Teaser Deck 2024.pdf
Arti Languages Pre Seed Teaser Deck 2024.pdfArti Languages Pre Seed Teaser Deck 2024.pdf
Arti Languages Pre Seed Teaser Deck 2024.pdf
 
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
 
Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1
 
PHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation FinalPHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation Final
 
Falcon Invoice Discounting: The best investment platform in india for investors
Falcon Invoice Discounting: The best investment platform in india for investorsFalcon Invoice Discounting: The best investment platform in india for investors
Falcon Invoice Discounting: The best investment platform in india for investors
 
Over the Top (OTT) Market Size & Growth Outlook 2024-2030
Over the Top (OTT) Market Size & Growth Outlook 2024-2030Over the Top (OTT) Market Size & Growth Outlook 2024-2030
Over the Top (OTT) Market Size & Growth Outlook 2024-2030
 
Putting the SPARK into Virtual Training.pptx
Putting the SPARK into Virtual Training.pptxPutting the SPARK into Virtual Training.pptx
Putting the SPARK into Virtual Training.pptx
 
Mifepristone Available in Muscat +918761049707^^ €€ Buy Abortion Pills in Oman
Mifepristone Available in Muscat +918761049707^^ €€ Buy Abortion Pills in OmanMifepristone Available in Muscat +918761049707^^ €€ Buy Abortion Pills in Oman
Mifepristone Available in Muscat +918761049707^^ €€ Buy Abortion Pills in Oman
 
Pre Engineered Building Manufacturers Hyderabad.pptx
Pre Engineered  Building Manufacturers Hyderabad.pptxPre Engineered  Building Manufacturers Hyderabad.pptx
Pre Engineered Building Manufacturers Hyderabad.pptx
 
Uneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration PresentationUneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration Presentation
 
Falcon Invoice Discounting: Tailored Financial Wings
Falcon Invoice Discounting: Tailored Financial WingsFalcon Invoice Discounting: Tailored Financial Wings
Falcon Invoice Discounting: Tailored Financial Wings
 
Structuring and Writing DRL Mckinsey (1).pdf
Structuring and Writing DRL Mckinsey (1).pdfStructuring and Writing DRL Mckinsey (1).pdf
Structuring and Writing DRL Mckinsey (1).pdf
 
joint cost.pptx COST ACCOUNTING Sixteenth Edition ...
joint cost.pptx  COST ACCOUNTING  Sixteenth Edition                          ...joint cost.pptx  COST ACCOUNTING  Sixteenth Edition                          ...
joint cost.pptx COST ACCOUNTING Sixteenth Edition ...
 
TVB_The Vietnam Believer Newsletter_May 6th, 2024_ENVol. 006.pdf
TVB_The Vietnam Believer Newsletter_May 6th, 2024_ENVol. 006.pdfTVB_The Vietnam Believer Newsletter_May 6th, 2024_ENVol. 006.pdf
TVB_The Vietnam Believer Newsletter_May 6th, 2024_ENVol. 006.pdf
 
Phases of Negotiation .pptx
 Phases of Negotiation .pptx Phases of Negotiation .pptx
Phases of Negotiation .pptx
 
Paradip CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Paradip CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGParadip CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Paradip CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
 
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al MizharAl Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
 
How to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League CityHow to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League City
 
Falcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business PotentialFalcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business Potential
 
Buy gmail accounts.pdf buy Old Gmail Accounts
Buy gmail accounts.pdf buy Old Gmail AccountsBuy gmail accounts.pdf buy Old Gmail Accounts
Buy gmail accounts.pdf buy Old Gmail Accounts
 

HIPAA Compliance Consulting and Management Services

  • 1. HIPAA/HITECH SOLUTION FOR SMALL MEDICAL PRACTICES AND BUSINESS ASSOCIATES Presented by: ITS Alliances, Inc. Aegify SecureGRC TM
  • 2. 2 HITECH has new CRIMINAL liabilities WHAT HAS CHANGED? ITS Alliances, Inc. - www.itsalliances.com - Proprietary and Confidential
  • 3. Expanded the scope of HIPAA privacy, security and enforcement standards to subject business associates and their subcontractors to the same administrative, technical and physical security safeguard requirements as covered entities, including civil and criminal sanctions for violating the health information privacy of individuals. WHAT HAS CHANGED? ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 4. DON'T THINK IT CAN HAPPEN TO YOU?  What if a employee steals records? 48%  What if a laptop is lost or stolen? 26%  What if a BA steals data? 20%  What if you lose a Blackberry, IPAD or other portable data storage? 14%  What if some one steals my records after I dispose of them? 6%  What if some one hacks into your network? 4%  What if?  What if? It happens EVERY day. Of the incidents reported , these were the % of cause. ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 5. 5 “Accordingly, we recommend that physicians (and their business associates) plan immediately to comply with these new breach notification requirements” BREACH RULES ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 6. 6 "Administrative safeguards" focus on workforce training and contingency planning (45 CFR §164.308). The cornerstones, however, are risk analysis and risk management—both "required." Critical and thorough risk analysis must take place before any attempt at regulatory compliance is made. ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 7. Tough getting started: Where to begin?  Most smart CE’s and BA’s WANT to be in compliance but don’t know where to start. 7 WHAT IS SO HARD ABOUT BECOMING COMPLIANT? ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 8. WEB based self assessment for HIPAA/HITECH and Security Practices 8 SecureGRC HIPAA/HITECH ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 9. BUILT IN DOCUMENT REPOSITORY 9 ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 10. HELP IS ALWAYS NEARBY
  • 11. HELP IS ALWAYS NEARBY
  • 12. HELP IS ALWAYS NEARBY
  • 13. 13 EVERY QUESTIONS HAS A RISK RATING ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 14. 14 SIMPLE, BUT EXTENSIVE FILTERING ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 15. SUBMIT FOR REVIEW 15ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 16. Real Time Status 16 SecureGRC SB HIPAA ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 17. SIMPLE REPORTS, SORTED BY HIGHEST RISK ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 18. HIPAA REPORT ON COMPLIANCE (HROC) 18 CE or BA ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com
  • 19. SECUREGRC SB HIPAA/HITECH SELF ASSESSMENT 1. Simple 2. Inexpensive 3. Meets and exceeds HIPAA and HITECH privacy and security requirements for SB 4. Meets and exceeds Section 15 of Meaningful Use 1 5. Central document repository with automated audit controls. 6. Library of sample policies, procedures and forms. 7. Extensive help and best practices 8. Requires minimal labor on your part 9. Helps manage your BA’s (Vendor Management) 10. HIPAA Report on Compliance (HROC) ITS Alliances, Inc. - Proprietary and Confidential - www.itsalliances.com

Notes de l'éditeur

  1.  Keep in mind that breaches may not have been reported if the entity decided that the incident did not reach the “harm” threshold incorporated in the Finalrule, which was 500 PHI records. That has since been pulled, and it’s not clear whether there will be a harm threshold in the final rule (there shouldn’t be one).  If HHS did not have the ‘harm” threshold, how many more incidents would we have learned about?Also 12 states did not file ANY reports.