SlideShare une entreprise Scribd logo
1  sur  19
Télécharger pour lire hors ligne
8/28/13 1
ACO – Accountable Care Organizations
Cooperative Healthcare Requires Cooperative Security
“It’s a Team Sport.”
Robby Gulri
VP, Product Marketing
gulri@echoworx.com
	
  
855.85HIPAA	
  
www.compliancygroup.com	
  
Industry	
  leading	
  Educa1on	
  
Cer1fied	
  Partner	
  Program	
  
	
  
•  Please	
  ask	
  ques1ons	
  
•  For	
  todays	
  Slides	
  
h#p://compliancy-­‐group.com/slides023/	
  
•  Todays	
  &	
  Past	
  webinars	
  go	
  to:	
  
h#p://compliancy-­‐group.com/webinar/	
  
#CGwebinar	
  
Real Stats in the Field
8/28/13 3
ACO – Accountable Care Organizations Definition
•  Accountable Care Organizations
(ACOs) are groups of doctors,
hospitals, and other health care
providers, who come together
voluntarily to give coordinated high
quality care to their Medicare patients
•  Goal of coordinated care is to ensure
that patients get the right care at the
right time, while avoiding unnecessary
duplication of services and preventing
medical errors
•  Share in the savings it achieves for
the Medicare program
8/28/13 4
ACO Illustrated
8/28/13 5
Encryption requirements for ACOs
8/28/13 6
Requirements
Scan, Encrypt or Block outbound email
•  Compliance (PHI, PAN, etc)
•  Confidential or Sensitive
information
Business Process Enablement for Efficiency
•  Replace paper based processes
•  Loan applications, regulatory filings
•  Medical records, insurance claims,
and information exchange
Automated eDocument Delivery
•  Email distribution of documents
containing private information
•  Bank, mortgage, credit card
statements
•  Bills and invoices
•  Insurance policies and claims
The Players within ACOs
•  Providers
•  As networks of providers, ACOs are composed mostly of
hospitals, physicians, and other healthcare professionals.
•  Payers
•  The federal government, in the form of Medicare, will be the
primary payer of an ACO
•  Other payers include private insurances, or employer-
purchased insurance
•  Patients
•  An ACO’s patient population will primarily consist of
Medicare beneficiaries
8/28/13 7
ACOs and Health Care IT
8/28/13 8
 Encryp1on,	
  Security	
  of	
  Data	
  at	
  Rest	
  and	
  in	
  Mo1on	
  
4 Essential Technologies for effective ACOs
•  HIEs (Healthcare Information Exchange)
•  Portal
•  Secure Email
•  Push / Pull
•  Analytics
•  Reporting
•  Dashboards
•  Care Management applications
•  Tele Medicine
•  Remote Patient Monitoring
•  Encryption & Security Applications
•  Document Encryption
•  Email Encryption
8/28/13 9
Security Framework for ACOs
•  Secure, online environment which
allows for controlled access to and
sharing of data on a variety of
levels between stakeholders
•  Access to aggregate cost and
quality trends by governance and
project teams
•  Secure repository for shared
aggregate and detailed data
•  Sharing of patient-specific clinical
data between responsible
caregivers
8/28/13 10
Tools required for Secure Communications
8/28/13 11
Source:	
  	
  AT&T	
  Compliance	
  Report	
  2013	
  
Push / Pull Support
8/28/13 12
Complying to HIPAA for ACOs
•  Becomes even more
important as information is
constantly being exchanged
across multiple organizations
and providers
•  More scrutiny and
enforcement of HIPAA
Omnibus
•  Encryption becomes an
important compliance tool and
weapon
8/28/13 13
HIPAA Encryption Requirements
•  Standard ~
Transmission Security: Implement technical security
measures to guard against unauthorized access to
PHI that is being transmitted over an electronic
communications network
45 CFR 164.312 (e)(1)
•  Addressable Implementation Feature ~
implement a mechanism to encrypt electronic
protected health information whenever deemed
appropriate
45 CFR 164.312 (e)(2)(ii)
Email	
  containing	
  PHI	
  requires	
  Encryp1on	
  
Addressable Implementation of encryption is not optional
•  Addressable implementation features are not
optional, they must be addressed; HCO must
either:
1  Implement the feature
  or
2  Document why it’s not reasonable and
appropriate to implement feature,
  and implement an equivalent alternative measure
when reasonable and appropriate
Omnibus & Email Encryption
•  More enforcement with Omnibus
•  Direct liability for both Covered
Entities and Business Associates
•  More parties involved with
PHI exchange
•  Breach Definition have changed
•  Breach is presumed and you
have to prove “why breach
didn’t occur…”
•  Increase Penalties for liability
8/28/13 16
Echoworx Snapshot
8/28/13 17
8/28/13 18
Thank you
Free	
  Demo	
  and	
  60	
  Day	
  Evaluation	
  
www.compliancy-­‐group.com	
  
	
  
HIPAA	
  Hotline	
  	
  	
  
855.85HIPAA	
  
855.854.4722 	
  
  HIPAA	
  Compliance	
  
  HITECH	
  Attestation	
  
  Omnibus	
  Rule	
  Ready	
  
  Meaningful	
  Use	
  core	
  measure	
  15	
  

Contenu connexe

Tendances

Gpt power of cloud & mhealth 031914
Gpt power of cloud & mhealth 031914Gpt power of cloud & mhealth 031914
Gpt power of cloud & mhealth 031914Samantha Haas
 
Presentation 2 - FHIR Overview
Presentation 2 - FHIR OverviewPresentation 2 - FHIR Overview
Presentation 2 - FHIR OverviewTom Wilson
 
Medicalchain - ECO 15: Digital connectivity in healthcare
Medicalchain - ECO 15: Digital connectivity in healthcareMedicalchain - ECO 15: Digital connectivity in healthcare
Medicalchain - ECO 15: Digital connectivity in healthcareInnovation Agency
 
Trust and Governance in Health and Social Care
Trust and Governance in Health and Social Care Trust and Governance in Health and Social Care
Trust and Governance in Health and Social Care Napier University
 
HITECH Health IT Legislation: Opportunities for the DMAA Community
HITECH Health IT Legislation: Opportunities for the DMAA CommunityHITECH Health IT Legislation: Opportunities for the DMAA Community
HITECH Health IT Legislation: Opportunities for the DMAA CommunityVince Kuraitis
 
Dr Dennis Kehoe- Connected Health Cities: Using Learning Health Systems
Dr Dennis Kehoe- Connected Health Cities: Using Learning Health SystemsDr Dennis Kehoe- Connected Health Cities: Using Learning Health Systems
Dr Dennis Kehoe- Connected Health Cities: Using Learning Health SystemsInnovation Agency
 
Collaborative Solutions eHealth Event - Medinexus
Collaborative Solutions eHealth Event - MedinexusCollaborative Solutions eHealth Event - Medinexus
Collaborative Solutions eHealth Event - MedinexusCollaborative Solutions
 
healthcare-analytics-info-2660933
healthcare-analytics-info-2660933healthcare-analytics-info-2660933
healthcare-analytics-info-2660933Alin Gheorghe
 
Pistoia Alliance US Conference 2015 - 1.3.4 New member introductions - Genexyx
Pistoia Alliance US Conference 2015 - 1.3.4 New member introductions - GenexyxPistoia Alliance US Conference 2015 - 1.3.4 New member introductions - Genexyx
Pistoia Alliance US Conference 2015 - 1.3.4 New member introductions - GenexyxPistoia Alliance
 
EHRs in Ireland - where are we now?
EHRs in Ireland - where are we now?EHRs in Ireland - where are we now?
EHRs in Ireland - where are we now?ipposi
 
Integrating Health Informatics and Technology into University Curriculum
Integrating Health Informatics and Technology into University CurriculumIntegrating Health Informatics and Technology into University Curriculum
Integrating Health Informatics and Technology into University CurriculumAdam Papendieck
 
Pcehr Presentation Nsw Health 23 June 2011 V2
Pcehr Presentation Nsw Health 23 June 2011 V2Pcehr Presentation Nsw Health 23 June 2011 V2
Pcehr Presentation Nsw Health 23 June 2011 V2nstanzer
 
Collaborative Solutions e-Health event - WWWMachealth
Collaborative Solutions e-Health event - WWWMachealthCollaborative Solutions e-Health event - WWWMachealth
Collaborative Solutions e-Health event - WWWMachealthCollaborative Solutions
 
Christopher Fincken
Christopher FinckenChristopher Fincken
Christopher FinckenLucia Garcia
 
Top Five Digital Trends Fueling Disruption in healthcare
Top Five Digital Trends Fueling Disruption in healthcareTop Five Digital Trends Fueling Disruption in healthcare
Top Five Digital Trends Fueling Disruption in healthcareKatsuhito Okada
 

Tendances (20)

Gpt power of cloud & mhealth 031914
Gpt power of cloud & mhealth 031914Gpt power of cloud & mhealth 031914
Gpt power of cloud & mhealth 031914
 
Medisist
Medisist Medisist
Medisist
 
Health IT and Information security by Manish Tiwari
Health IT and Information security by Manish TiwariHealth IT and Information security by Manish Tiwari
Health IT and Information security by Manish Tiwari
 
Webinar: Digital Health - The New Rx for USA Healthcare Ecosystem
Webinar: Digital Health - The New Rx for USA Healthcare EcosystemWebinar: Digital Health - The New Rx for USA Healthcare Ecosystem
Webinar: Digital Health - The New Rx for USA Healthcare Ecosystem
 
Presentation 2 - FHIR Overview
Presentation 2 - FHIR OverviewPresentation 2 - FHIR Overview
Presentation 2 - FHIR Overview
 
Reval
RevalReval
Reval
 
Pro Emtech - Promed
Pro Emtech - PromedPro Emtech - Promed
Pro Emtech - Promed
 
Medicalchain - ECO 15: Digital connectivity in healthcare
Medicalchain - ECO 15: Digital connectivity in healthcareMedicalchain - ECO 15: Digital connectivity in healthcare
Medicalchain - ECO 15: Digital connectivity in healthcare
 
Trust and Governance in Health and Social Care
Trust and Governance in Health and Social Care Trust and Governance in Health and Social Care
Trust and Governance in Health and Social Care
 
HITECH Health IT Legislation: Opportunities for the DMAA Community
HITECH Health IT Legislation: Opportunities for the DMAA CommunityHITECH Health IT Legislation: Opportunities for the DMAA Community
HITECH Health IT Legislation: Opportunities for the DMAA Community
 
Dr Dennis Kehoe- Connected Health Cities: Using Learning Health Systems
Dr Dennis Kehoe- Connected Health Cities: Using Learning Health SystemsDr Dennis Kehoe- Connected Health Cities: Using Learning Health Systems
Dr Dennis Kehoe- Connected Health Cities: Using Learning Health Systems
 
Collaborative Solutions eHealth Event - Medinexus
Collaborative Solutions eHealth Event - MedinexusCollaborative Solutions eHealth Event - Medinexus
Collaborative Solutions eHealth Event - Medinexus
 
healthcare-analytics-info-2660933
healthcare-analytics-info-2660933healthcare-analytics-info-2660933
healthcare-analytics-info-2660933
 
Pistoia Alliance US Conference 2015 - 1.3.4 New member introductions - Genexyx
Pistoia Alliance US Conference 2015 - 1.3.4 New member introductions - GenexyxPistoia Alliance US Conference 2015 - 1.3.4 New member introductions - Genexyx
Pistoia Alliance US Conference 2015 - 1.3.4 New member introductions - Genexyx
 
EHRs in Ireland - where are we now?
EHRs in Ireland - where are we now?EHRs in Ireland - where are we now?
EHRs in Ireland - where are we now?
 
Integrating Health Informatics and Technology into University Curriculum
Integrating Health Informatics and Technology into University CurriculumIntegrating Health Informatics and Technology into University Curriculum
Integrating Health Informatics and Technology into University Curriculum
 
Pcehr Presentation Nsw Health 23 June 2011 V2
Pcehr Presentation Nsw Health 23 June 2011 V2Pcehr Presentation Nsw Health 23 June 2011 V2
Pcehr Presentation Nsw Health 23 June 2011 V2
 
Collaborative Solutions e-Health event - WWWMachealth
Collaborative Solutions e-Health event - WWWMachealthCollaborative Solutions e-Health event - WWWMachealth
Collaborative Solutions e-Health event - WWWMachealth
 
Christopher Fincken
Christopher FinckenChristopher Fincken
Christopher Fincken
 
Top Five Digital Trends Fueling Disruption in healthcare
Top Five Digital Trends Fueling Disruption in healthcareTop Five Digital Trends Fueling Disruption in healthcare
Top Five Digital Trends Fueling Disruption in healthcare
 

En vedette

Pitfalls of Documentation in the Age of Ehr
Pitfalls of Documentation in the Age of EhrPitfalls of Documentation in the Age of Ehr
Pitfalls of Documentation in the Age of EhrCompliancy Group
 
Where security and privacy meet partnering tips for CSOs and privacy/complian...
Where security and privacy meet partnering tips for CSOs and privacy/complian...Where security and privacy meet partnering tips for CSOs and privacy/complian...
Where security and privacy meet partnering tips for CSOs and privacy/complian...Compliancy Group
 
The Most Wonderful Time of the Year for Health-IT...NOT
The Most Wonderful Time of the Year for Health-IT...NOTThe Most Wonderful Time of the Year for Health-IT...NOT
The Most Wonderful Time of the Year for Health-IT...NOTCompliancy Group
 
Maninging Risk Exposure in Meaningful Use Stage 2
Maninging Risk Exposure in Meaningful Use Stage 2Maninging Risk Exposure in Meaningful Use Stage 2
Maninging Risk Exposure in Meaningful Use Stage 2Compliancy Group
 
Do You Know How to Handle a HIPAA Breach?
Do You Know How to Handle a HIPAA Breach?Do You Know How to Handle a HIPAA Breach?
Do You Know How to Handle a HIPAA Breach?Compliancy Group
 
HIPAA HITECH Express Security Privacy Webinar
HIPAA HITECH Express Security Privacy WebinarHIPAA HITECH Express Security Privacy Webinar
HIPAA HITECH Express Security Privacy WebinarCompliancy Group
 
Maintaining HIPAA Compliance with Cloud Based Solutions
Maintaining HIPAA Compliance with Cloud Based SolutionsMaintaining HIPAA Compliance with Cloud Based Solutions
Maintaining HIPAA Compliance with Cloud Based SolutionsCompliancy Group
 

En vedette (7)

Pitfalls of Documentation in the Age of Ehr
Pitfalls of Documentation in the Age of EhrPitfalls of Documentation in the Age of Ehr
Pitfalls of Documentation in the Age of Ehr
 
Where security and privacy meet partnering tips for CSOs and privacy/complian...
Where security and privacy meet partnering tips for CSOs and privacy/complian...Where security and privacy meet partnering tips for CSOs and privacy/complian...
Where security and privacy meet partnering tips for CSOs and privacy/complian...
 
The Most Wonderful Time of the Year for Health-IT...NOT
The Most Wonderful Time of the Year for Health-IT...NOTThe Most Wonderful Time of the Year for Health-IT...NOT
The Most Wonderful Time of the Year for Health-IT...NOT
 
Maninging Risk Exposure in Meaningful Use Stage 2
Maninging Risk Exposure in Meaningful Use Stage 2Maninging Risk Exposure in Meaningful Use Stage 2
Maninging Risk Exposure in Meaningful Use Stage 2
 
Do You Know How to Handle a HIPAA Breach?
Do You Know How to Handle a HIPAA Breach?Do You Know How to Handle a HIPAA Breach?
Do You Know How to Handle a HIPAA Breach?
 
HIPAA HITECH Express Security Privacy Webinar
HIPAA HITECH Express Security Privacy WebinarHIPAA HITECH Express Security Privacy Webinar
HIPAA HITECH Express Security Privacy Webinar
 
Maintaining HIPAA Compliance with Cloud Based Solutions
Maintaining HIPAA Compliance with Cloud Based SolutionsMaintaining HIPAA Compliance with Cloud Based Solutions
Maintaining HIPAA Compliance with Cloud Based Solutions
 

Similaire à Cooperative ACO's Must Lead to Cooperative Security Measures

Regulatory Intelligence
Regulatory IntelligenceRegulatory Intelligence
Regulatory IntelligenceArmin Torres
 
Lavacon 20014 Case Study: Securing Mobile Content at VITAS
Lavacon 20014 Case Study: Securing Mobile Content at VITASLavacon 20014 Case Study: Securing Mobile Content at VITAS
Lavacon 20014 Case Study: Securing Mobile Content at VITASJack Molisani
 
Cloud computing and healthcare services
Cloud computing and healthcare servicesCloud computing and healthcare services
Cloud computing and healthcare servicesAswathyMohan29
 
Midwest Regional Health - EHR
Midwest Regional Health - EHRMidwest Regional Health - EHR
Midwest Regional Health - EHRWILLIE GREER
 
Push to Pull: From Supply Chains to Patient-Centric Value Networks
Push to Pull: From Supply Chains  to Patient-Centric Value NetworksPush to Pull: From Supply Chains  to Patient-Centric Value Networks
Push to Pull: From Supply Chains to Patient-Centric Value Networksaccenture
 
Musadiq Subar, IT Programme Manager and Clinical Technical Architect
Musadiq Subar, IT Programme Manager and Clinical Technical ArchitectMusadiq Subar, IT Programme Manager and Clinical Technical Architect
Musadiq Subar, IT Programme Manager and Clinical Technical ArchitectHIMSS UK
 
HIT Policy Committee FDASIA Update
HIT Policy Committee FDASIA UpdateHIT Policy Committee FDASIA Update
HIT Policy Committee FDASIA UpdateBrian Ahier
 
Clinical Data Standards and Data Portability
Clinical Data Standards and Data Portability Clinical Data Standards and Data Portability
Clinical Data Standards and Data Portability Nrip Nihalani
 
The need for interoperability in blockchain-based initiatives to facilitate c...
The need for interoperability in blockchain-based initiatives to facilitate c...The need for interoperability in blockchain-based initiatives to facilitate c...
The need for interoperability in blockchain-based initiatives to facilitate c...Massimiliano Masi
 
Blockchain Use Cases in Healthcare Industry - iFour Technolab Pvt. Ltd.
Blockchain Use Cases in Healthcare Industry - iFour Technolab Pvt. Ltd.Blockchain Use Cases in Healthcare Industry - iFour Technolab Pvt. Ltd.
Blockchain Use Cases in Healthcare Industry - iFour Technolab Pvt. Ltd.iFour Technolab Pvt. Ltd.
 
Accountable Care Workgroup: Draft Recommendations
Accountable Care Workgroup: Draft RecommendationsAccountable Care Workgroup: Draft Recommendations
Accountable Care Workgroup: Draft RecommendationsBrian Ahier
 
IRJET- Blockchain Technology for Securing Healthcare Records
IRJET- Blockchain Technology for Securing Healthcare RecordsIRJET- Blockchain Technology for Securing Healthcare Records
IRJET- Blockchain Technology for Securing Healthcare RecordsIRJET Journal
 
Risk Management Process for Healthcare Organizations
Risk Management Process for Healthcare OrganizationsRisk Management Process for Healthcare Organizations
Risk Management Process for Healthcare OrganizationsCalance
 
Mha 690 discussion 2 Seynabou
Mha 690 discussion 2 SeynabouMha 690 discussion 2 Seynabou
Mha 690 discussion 2 SeynabouSeynaboundiaye
 
Managing Fraud and Compliance in Healthcare
Managing Fraud and Compliance in HealthcareManaging Fraud and Compliance in Healthcare
Managing Fraud and Compliance in HealthcareMike Wons
 
Managing Compliance in Healthcare
Managing Compliance in HealthcareManaging Compliance in Healthcare
Managing Compliance in HealthcareMike Wons
 
Building HIPAA Compliance in service delivery teams
Building HIPAA Compliance in service delivery teamsBuilding HIPAA Compliance in service delivery teams
Building HIPAA Compliance in service delivery teamsGaurav Garg
 
Modern Health Care System - Daktarz
Modern Health Care System - DaktarzModern Health Care System - Daktarz
Modern Health Care System - DaktarzAkash Goyal
 

Similaire à Cooperative ACO's Must Lead to Cooperative Security Measures (20)

Regulatory Intelligence
Regulatory IntelligenceRegulatory Intelligence
Regulatory Intelligence
 
Lavacon 20014 Case Study: Securing Mobile Content at VITAS
Lavacon 20014 Case Study: Securing Mobile Content at VITASLavacon 20014 Case Study: Securing Mobile Content at VITAS
Lavacon 20014 Case Study: Securing Mobile Content at VITAS
 
Sustainability of HIEs under CyberSecurity
Sustainability of HIEs under CyberSecuritySustainability of HIEs under CyberSecurity
Sustainability of HIEs under CyberSecurity
 
Cloud computing and healthcare services
Cloud computing and healthcare servicesCloud computing and healthcare services
Cloud computing and healthcare services
 
Midwest Regional Health - EHR
Midwest Regional Health - EHRMidwest Regional Health - EHR
Midwest Regional Health - EHR
 
Push to Pull: From Supply Chains to Patient-Centric Value Networks
Push to Pull: From Supply Chains  to Patient-Centric Value NetworksPush to Pull: From Supply Chains  to Patient-Centric Value Networks
Push to Pull: From Supply Chains to Patient-Centric Value Networks
 
Musadiq Subar, IT Programme Manager and Clinical Technical Architect
Musadiq Subar, IT Programme Manager and Clinical Technical ArchitectMusadiq Subar, IT Programme Manager and Clinical Technical Architect
Musadiq Subar, IT Programme Manager and Clinical Technical Architect
 
DHCA-Chapter5
DHCA-Chapter5DHCA-Chapter5
DHCA-Chapter5
 
HIT Policy Committee FDASIA Update
HIT Policy Committee FDASIA UpdateHIT Policy Committee FDASIA Update
HIT Policy Committee FDASIA Update
 
Clinical Data Standards and Data Portability
Clinical Data Standards and Data Portability Clinical Data Standards and Data Portability
Clinical Data Standards and Data Portability
 
The need for interoperability in blockchain-based initiatives to facilitate c...
The need for interoperability in blockchain-based initiatives to facilitate c...The need for interoperability in blockchain-based initiatives to facilitate c...
The need for interoperability in blockchain-based initiatives to facilitate c...
 
Blockchain Use Cases in Healthcare Industry - iFour Technolab Pvt. Ltd.
Blockchain Use Cases in Healthcare Industry - iFour Technolab Pvt. Ltd.Blockchain Use Cases in Healthcare Industry - iFour Technolab Pvt. Ltd.
Blockchain Use Cases in Healthcare Industry - iFour Technolab Pvt. Ltd.
 
Accountable Care Workgroup: Draft Recommendations
Accountable Care Workgroup: Draft RecommendationsAccountable Care Workgroup: Draft Recommendations
Accountable Care Workgroup: Draft Recommendations
 
IRJET- Blockchain Technology for Securing Healthcare Records
IRJET- Blockchain Technology for Securing Healthcare RecordsIRJET- Blockchain Technology for Securing Healthcare Records
IRJET- Blockchain Technology for Securing Healthcare Records
 
Risk Management Process for Healthcare Organizations
Risk Management Process for Healthcare OrganizationsRisk Management Process for Healthcare Organizations
Risk Management Process for Healthcare Organizations
 
Mha 690 discussion 2 Seynabou
Mha 690 discussion 2 SeynabouMha 690 discussion 2 Seynabou
Mha 690 discussion 2 Seynabou
 
Managing Fraud and Compliance in Healthcare
Managing Fraud and Compliance in HealthcareManaging Fraud and Compliance in Healthcare
Managing Fraud and Compliance in Healthcare
 
Managing Compliance in Healthcare
Managing Compliance in HealthcareManaging Compliance in Healthcare
Managing Compliance in Healthcare
 
Building HIPAA Compliance in service delivery teams
Building HIPAA Compliance in service delivery teamsBuilding HIPAA Compliance in service delivery teams
Building HIPAA Compliance in service delivery teams
 
Modern Health Care System - Daktarz
Modern Health Care System - DaktarzModern Health Care System - Daktarz
Modern Health Care System - Daktarz
 

Plus de Compliancy Group

HIPAA compliance for Business Associates- The value of compliance, how to acq...
HIPAA compliance for Business Associates- The value of compliance, how to acq...HIPAA compliance for Business Associates- The value of compliance, how to acq...
HIPAA compliance for Business Associates- The value of compliance, how to acq...Compliancy Group
 
HIPAA compliance tuneup 2016
HIPAA compliance tuneup 2016HIPAA compliance tuneup 2016
HIPAA compliance tuneup 2016Compliancy Group
 
How to safeguard ePHIi in the cloud
How to safeguard ePHIi in the cloud How to safeguard ePHIi in the cloud
How to safeguard ePHIi in the cloud Compliancy Group
 
Business Associates: How to differentiate your organization using HIPAA compl...
Business Associates: How to differentiate your organization using HIPAA compl...Business Associates: How to differentiate your organization using HIPAA compl...
Business Associates: How to differentiate your organization using HIPAA compl...Compliancy Group
 
Business Associates: How to become HIPAA compliant, increase revenue, and gai...
Business Associates: How to become HIPAA compliant, increase revenue, and gai...Business Associates: How to become HIPAA compliant, increase revenue, and gai...
Business Associates: How to become HIPAA compliant, increase revenue, and gai...Compliancy Group
 
HIPAA 101- What all Doctors NEED to know
HIPAA 101- What all Doctors NEED to knowHIPAA 101- What all Doctors NEED to know
HIPAA 101- What all Doctors NEED to knowCompliancy Group
 
HIPAA Compliance and Non-Business Associate Vendors - Strategies and Best Pra...
HIPAA Compliance and Non-Business Associate Vendors - Strategies and Best Pra...HIPAA Compliance and Non-Business Associate Vendors - Strategies and Best Pra...
HIPAA Compliance and Non-Business Associate Vendors - Strategies and Best Pra...Compliancy Group
 
How to prepare for OCR's upcoming phase 2 audits
How to prepare for OCR's upcoming phase 2 auditsHow to prepare for OCR's upcoming phase 2 audits
How to prepare for OCR's upcoming phase 2 auditsCompliancy Group
 
Preparing for the unexpected in your medical practice
Preparing for the unexpected in your medical practicePreparing for the unexpected in your medical practice
Preparing for the unexpected in your medical practiceCompliancy Group
 
HIPAA Compliance and Electronic Protected Health Information: Ignorance is no...
HIPAA Compliance and Electronic Protected Health Information: Ignorance is no...HIPAA Compliance and Electronic Protected Health Information: Ignorance is no...
HIPAA Compliance and Electronic Protected Health Information: Ignorance is no...Compliancy Group
 
How to Survive a HIPAA Audit
How to Survive a HIPAA AuditHow to Survive a HIPAA Audit
How to Survive a HIPAA AuditCompliancy Group
 
How to Effectively Negotiate a Business Associate Agreement: What’s Importan...
How to Effectively Negotiate a Business Associate Agreement:  What’s Importan...How to Effectively Negotiate a Business Associate Agreement:  What’s Importan...
How to Effectively Negotiate a Business Associate Agreement: What’s Importan...Compliancy Group
 
How to Increase Your Profits Using Patient Payments on File, Recurring and On...
How to Increase Your Profits Using Patient Payments on File, Recurring and On...How to Increase Your Profits Using Patient Payments on File, Recurring and On...
How to Increase Your Profits Using Patient Payments on File, Recurring and On...Compliancy Group
 
Why a Risk Assessment is NOT Enough for HIPAA Compliance
Why a Risk Assessment is NOT Enough for HIPAA ComplianceWhy a Risk Assessment is NOT Enough for HIPAA Compliance
Why a Risk Assessment is NOT Enough for HIPAA ComplianceCompliancy Group
 
The must have tools to address your HIPAA compliance challenge
The must have tools to address your HIPAA compliance challengeThe must have tools to address your HIPAA compliance challenge
The must have tools to address your HIPAA compliance challengeCompliancy Group
 
HIPAA MYTHS: HOW MUCH DO YOU KNOW? COMMON MYTHS DEBUNKED & EXPLAINED
HIPAA MYTHS: HOW MUCH DO YOU KNOW? COMMON MYTHS DEBUNKED & EXPLAINEDHIPAA MYTHS: HOW MUCH DO YOU KNOW? COMMON MYTHS DEBUNKED & EXPLAINED
HIPAA MYTHS: HOW MUCH DO YOU KNOW? COMMON MYTHS DEBUNKED & EXPLAINEDCompliancy Group
 
What you need to know about Meaningful Use 2 & interoperability
What you need to know about Meaningful Use 2 & interoperabilityWhat you need to know about Meaningful Use 2 & interoperability
What you need to know about Meaningful Use 2 & interoperabilityCompliancy Group
 
Just the Facts- Meaningful Use Stage 2 & ICD 10
Just the Facts- Meaningful Use Stage 2 & ICD 10Just the Facts- Meaningful Use Stage 2 & ICD 10
Just the Facts- Meaningful Use Stage 2 & ICD 10Compliancy Group
 
Is Your EHR Safe? New Technologies for Auditing
Is Your EHR Safe? New Technologies for AuditingIs Your EHR Safe? New Technologies for Auditing
Is Your EHR Safe? New Technologies for AuditingCompliancy Group
 

Plus de Compliancy Group (20)

HIPAA compliance for Business Associates- The value of compliance, how to acq...
HIPAA compliance for Business Associates- The value of compliance, how to acq...HIPAA compliance for Business Associates- The value of compliance, how to acq...
HIPAA compliance for Business Associates- The value of compliance, how to acq...
 
HIPAA compliance tuneup 2016
HIPAA compliance tuneup 2016HIPAA compliance tuneup 2016
HIPAA compliance tuneup 2016
 
How to safeguard ePHIi in the cloud
How to safeguard ePHIi in the cloud How to safeguard ePHIi in the cloud
How to safeguard ePHIi in the cloud
 
Business Associates: How to differentiate your organization using HIPAA compl...
Business Associates: How to differentiate your organization using HIPAA compl...Business Associates: How to differentiate your organization using HIPAA compl...
Business Associates: How to differentiate your organization using HIPAA compl...
 
Business Associates: How to become HIPAA compliant, increase revenue, and gai...
Business Associates: How to become HIPAA compliant, increase revenue, and gai...Business Associates: How to become HIPAA compliant, increase revenue, and gai...
Business Associates: How to become HIPAA compliant, increase revenue, and gai...
 
HIPAA 101- What all Doctors NEED to know
HIPAA 101- What all Doctors NEED to knowHIPAA 101- What all Doctors NEED to know
HIPAA 101- What all Doctors NEED to know
 
HIPAA Compliance and Non-Business Associate Vendors - Strategies and Best Pra...
HIPAA Compliance and Non-Business Associate Vendors - Strategies and Best Pra...HIPAA Compliance and Non-Business Associate Vendors - Strategies and Best Pra...
HIPAA Compliance and Non-Business Associate Vendors - Strategies and Best Pra...
 
How to prepare for OCR's upcoming phase 2 audits
How to prepare for OCR's upcoming phase 2 auditsHow to prepare for OCR's upcoming phase 2 audits
How to prepare for OCR's upcoming phase 2 audits
 
Preparing for the unexpected in your medical practice
Preparing for the unexpected in your medical practicePreparing for the unexpected in your medical practice
Preparing for the unexpected in your medical practice
 
HIPAA Compliance and Electronic Protected Health Information: Ignorance is no...
HIPAA Compliance and Electronic Protected Health Information: Ignorance is no...HIPAA Compliance and Electronic Protected Health Information: Ignorance is no...
HIPAA Compliance and Electronic Protected Health Information: Ignorance is no...
 
How to Survive a HIPAA Audit
How to Survive a HIPAA AuditHow to Survive a HIPAA Audit
How to Survive a HIPAA Audit
 
How to Effectively Negotiate a Business Associate Agreement: What’s Importan...
How to Effectively Negotiate a Business Associate Agreement:  What’s Importan...How to Effectively Negotiate a Business Associate Agreement:  What’s Importan...
How to Effectively Negotiate a Business Associate Agreement: What’s Importan...
 
Meaningful Use vs HIPAA
Meaningful Use vs HIPAAMeaningful Use vs HIPAA
Meaningful Use vs HIPAA
 
How to Increase Your Profits Using Patient Payments on File, Recurring and On...
How to Increase Your Profits Using Patient Payments on File, Recurring and On...How to Increase Your Profits Using Patient Payments on File, Recurring and On...
How to Increase Your Profits Using Patient Payments on File, Recurring and On...
 
Why a Risk Assessment is NOT Enough for HIPAA Compliance
Why a Risk Assessment is NOT Enough for HIPAA ComplianceWhy a Risk Assessment is NOT Enough for HIPAA Compliance
Why a Risk Assessment is NOT Enough for HIPAA Compliance
 
The must have tools to address your HIPAA compliance challenge
The must have tools to address your HIPAA compliance challengeThe must have tools to address your HIPAA compliance challenge
The must have tools to address your HIPAA compliance challenge
 
HIPAA MYTHS: HOW MUCH DO YOU KNOW? COMMON MYTHS DEBUNKED & EXPLAINED
HIPAA MYTHS: HOW MUCH DO YOU KNOW? COMMON MYTHS DEBUNKED & EXPLAINEDHIPAA MYTHS: HOW MUCH DO YOU KNOW? COMMON MYTHS DEBUNKED & EXPLAINED
HIPAA MYTHS: HOW MUCH DO YOU KNOW? COMMON MYTHS DEBUNKED & EXPLAINED
 
What you need to know about Meaningful Use 2 & interoperability
What you need to know about Meaningful Use 2 & interoperabilityWhat you need to know about Meaningful Use 2 & interoperability
What you need to know about Meaningful Use 2 & interoperability
 
Just the Facts- Meaningful Use Stage 2 & ICD 10
Just the Facts- Meaningful Use Stage 2 & ICD 10Just the Facts- Meaningful Use Stage 2 & ICD 10
Just the Facts- Meaningful Use Stage 2 & ICD 10
 
Is Your EHR Safe? New Technologies for Auditing
Is Your EHR Safe? New Technologies for AuditingIs Your EHR Safe? New Technologies for Auditing
Is Your EHR Safe? New Technologies for Auditing
 

Dernier

psychiatric nursing HISTORY COLLECTION .docx
psychiatric  nursing HISTORY  COLLECTION  .docxpsychiatric  nursing HISTORY  COLLECTION  .docx
psychiatric nursing HISTORY COLLECTION .docxPoojaSen20
 
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptxSOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptxiammrhaywood
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introductionMaksud Ahmed
 
Class 11th Physics NEET formula sheet pdf
Class 11th Physics NEET formula sheet pdfClass 11th Physics NEET formula sheet pdf
Class 11th Physics NEET formula sheet pdfAyushMahapatra5
 
Mixin Classes in Odoo 17 How to Extend Models Using Mixin Classes
Mixin Classes in Odoo 17  How to Extend Models Using Mixin ClassesMixin Classes in Odoo 17  How to Extend Models Using Mixin Classes
Mixin Classes in Odoo 17 How to Extend Models Using Mixin ClassesCeline George
 
Sports & Fitness Value Added Course FY..
Sports & Fitness Value Added Course FY..Sports & Fitness Value Added Course FY..
Sports & Fitness Value Added Course FY..Disha Kariya
 
fourth grading exam for kindergarten in writing
fourth grading exam for kindergarten in writingfourth grading exam for kindergarten in writing
fourth grading exam for kindergarten in writingTeacherCyreneCayanan
 
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptxBasic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptxDenish Jangid
 
Seal of Good Local Governance (SGLG) 2024Final.pptx
Seal of Good Local Governance (SGLG) 2024Final.pptxSeal of Good Local Governance (SGLG) 2024Final.pptx
Seal of Good Local Governance (SGLG) 2024Final.pptxnegromaestrong
 
Gardella_PRCampaignConclusion Pitch Letter
Gardella_PRCampaignConclusion Pitch LetterGardella_PRCampaignConclusion Pitch Letter
Gardella_PRCampaignConclusion Pitch LetterMateoGardella
 
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...Shubhangi Sonawane
 
Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Celine George
 
Russian Escort Service in Delhi 11k Hotel Foreigner Russian Call Girls in Delhi
Russian Escort Service in Delhi 11k Hotel Foreigner Russian Call Girls in DelhiRussian Escort Service in Delhi 11k Hotel Foreigner Russian Call Girls in Delhi
Russian Escort Service in Delhi 11k Hotel Foreigner Russian Call Girls in Delhikauryashika82
 
Nutritional Needs Presentation - HLTH 104
Nutritional Needs Presentation - HLTH 104Nutritional Needs Presentation - HLTH 104
Nutritional Needs Presentation - HLTH 104misteraugie
 
Web & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdfWeb & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdfJayanti Pande
 
Unit-IV; Professional Sales Representative (PSR).pptx
Unit-IV; Professional Sales Representative (PSR).pptxUnit-IV; Professional Sales Representative (PSR).pptx
Unit-IV; Professional Sales Representative (PSR).pptxVishalSingh1417
 
Holdier Curriculum Vitae (April 2024).pdf
Holdier Curriculum Vitae (April 2024).pdfHoldier Curriculum Vitae (April 2024).pdf
Holdier Curriculum Vitae (April 2024).pdfagholdier
 

Dernier (20)

psychiatric nursing HISTORY COLLECTION .docx
psychiatric  nursing HISTORY  COLLECTION  .docxpsychiatric  nursing HISTORY  COLLECTION  .docx
psychiatric nursing HISTORY COLLECTION .docx
 
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptxSOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introduction
 
Class 11th Physics NEET formula sheet pdf
Class 11th Physics NEET formula sheet pdfClass 11th Physics NEET formula sheet pdf
Class 11th Physics NEET formula sheet pdf
 
Mixin Classes in Odoo 17 How to Extend Models Using Mixin Classes
Mixin Classes in Odoo 17  How to Extend Models Using Mixin ClassesMixin Classes in Odoo 17  How to Extend Models Using Mixin Classes
Mixin Classes in Odoo 17 How to Extend Models Using Mixin Classes
 
Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
 
Sports & Fitness Value Added Course FY..
Sports & Fitness Value Added Course FY..Sports & Fitness Value Added Course FY..
Sports & Fitness Value Added Course FY..
 
fourth grading exam for kindergarten in writing
fourth grading exam for kindergarten in writingfourth grading exam for kindergarten in writing
fourth grading exam for kindergarten in writing
 
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptxBasic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
 
Seal of Good Local Governance (SGLG) 2024Final.pptx
Seal of Good Local Governance (SGLG) 2024Final.pptxSeal of Good Local Governance (SGLG) 2024Final.pptx
Seal of Good Local Governance (SGLG) 2024Final.pptx
 
Código Creativo y Arte de Software | Unidad 1
Código Creativo y Arte de Software | Unidad 1Código Creativo y Arte de Software | Unidad 1
Código Creativo y Arte de Software | Unidad 1
 
Gardella_PRCampaignConclusion Pitch Letter
Gardella_PRCampaignConclusion Pitch LetterGardella_PRCampaignConclusion Pitch Letter
Gardella_PRCampaignConclusion Pitch Letter
 
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
 
Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17
 
Russian Escort Service in Delhi 11k Hotel Foreigner Russian Call Girls in Delhi
Russian Escort Service in Delhi 11k Hotel Foreigner Russian Call Girls in DelhiRussian Escort Service in Delhi 11k Hotel Foreigner Russian Call Girls in Delhi
Russian Escort Service in Delhi 11k Hotel Foreigner Russian Call Girls in Delhi
 
Nutritional Needs Presentation - HLTH 104
Nutritional Needs Presentation - HLTH 104Nutritional Needs Presentation - HLTH 104
Nutritional Needs Presentation - HLTH 104
 
Web & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdfWeb & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdf
 
Advance Mobile Application Development class 07
Advance Mobile Application Development class 07Advance Mobile Application Development class 07
Advance Mobile Application Development class 07
 
Unit-IV; Professional Sales Representative (PSR).pptx
Unit-IV; Professional Sales Representative (PSR).pptxUnit-IV; Professional Sales Representative (PSR).pptx
Unit-IV; Professional Sales Representative (PSR).pptx
 
Holdier Curriculum Vitae (April 2024).pdf
Holdier Curriculum Vitae (April 2024).pdfHoldier Curriculum Vitae (April 2024).pdf
Holdier Curriculum Vitae (April 2024).pdf
 

Cooperative ACO's Must Lead to Cooperative Security Measures

  • 1. 8/28/13 1 ACO – Accountable Care Organizations Cooperative Healthcare Requires Cooperative Security “It’s a Team Sport.” Robby Gulri VP, Product Marketing gulri@echoworx.com  
  • 2. 855.85HIPAA   www.compliancygroup.com   Industry  leading  Educa1on   Cer1fied  Partner  Program     •  Please  ask  ques1ons   •  For  todays  Slides   h#p://compliancy-­‐group.com/slides023/   •  Todays  &  Past  webinars  go  to:   h#p://compliancy-­‐group.com/webinar/   #CGwebinar  
  • 3. Real Stats in the Field 8/28/13 3
  • 4. ACO – Accountable Care Organizations Definition •  Accountable Care Organizations (ACOs) are groups of doctors, hospitals, and other health care providers, who come together voluntarily to give coordinated high quality care to their Medicare patients •  Goal of coordinated care is to ensure that patients get the right care at the right time, while avoiding unnecessary duplication of services and preventing medical errors •  Share in the savings it achieves for the Medicare program 8/28/13 4
  • 6. Encryption requirements for ACOs 8/28/13 6 Requirements Scan, Encrypt or Block outbound email •  Compliance (PHI, PAN, etc) •  Confidential or Sensitive information Business Process Enablement for Efficiency •  Replace paper based processes •  Loan applications, regulatory filings •  Medical records, insurance claims, and information exchange Automated eDocument Delivery •  Email distribution of documents containing private information •  Bank, mortgage, credit card statements •  Bills and invoices •  Insurance policies and claims
  • 7. The Players within ACOs •  Providers •  As networks of providers, ACOs are composed mostly of hospitals, physicians, and other healthcare professionals. •  Payers •  The federal government, in the form of Medicare, will be the primary payer of an ACO •  Other payers include private insurances, or employer- purchased insurance •  Patients •  An ACO’s patient population will primarily consist of Medicare beneficiaries 8/28/13 7
  • 8. ACOs and Health Care IT 8/28/13 8  Encryp1on,  Security  of  Data  at  Rest  and  in  Mo1on  
  • 9. 4 Essential Technologies for effective ACOs •  HIEs (Healthcare Information Exchange) •  Portal •  Secure Email •  Push / Pull •  Analytics •  Reporting •  Dashboards •  Care Management applications •  Tele Medicine •  Remote Patient Monitoring •  Encryption & Security Applications •  Document Encryption •  Email Encryption 8/28/13 9
  • 10. Security Framework for ACOs •  Secure, online environment which allows for controlled access to and sharing of data on a variety of levels between stakeholders •  Access to aggregate cost and quality trends by governance and project teams •  Secure repository for shared aggregate and detailed data •  Sharing of patient-specific clinical data between responsible caregivers 8/28/13 10
  • 11. Tools required for Secure Communications 8/28/13 11 Source:    AT&T  Compliance  Report  2013  
  • 12. Push / Pull Support 8/28/13 12
  • 13. Complying to HIPAA for ACOs •  Becomes even more important as information is constantly being exchanged across multiple organizations and providers •  More scrutiny and enforcement of HIPAA Omnibus •  Encryption becomes an important compliance tool and weapon 8/28/13 13
  • 14. HIPAA Encryption Requirements •  Standard ~ Transmission Security: Implement technical security measures to guard against unauthorized access to PHI that is being transmitted over an electronic communications network 45 CFR 164.312 (e)(1) •  Addressable Implementation Feature ~ implement a mechanism to encrypt electronic protected health information whenever deemed appropriate 45 CFR 164.312 (e)(2)(ii) Email  containing  PHI  requires  Encryp1on  
  • 15. Addressable Implementation of encryption is not optional •  Addressable implementation features are not optional, they must be addressed; HCO must either: 1  Implement the feature   or 2  Document why it’s not reasonable and appropriate to implement feature,   and implement an equivalent alternative measure when reasonable and appropriate
  • 16. Omnibus & Email Encryption •  More enforcement with Omnibus •  Direct liability for both Covered Entities and Business Associates •  More parties involved with PHI exchange •  Breach Definition have changed •  Breach is presumed and you have to prove “why breach didn’t occur…” •  Increase Penalties for liability 8/28/13 16
  • 19. Free  Demo  and  60  Day  Evaluation   www.compliancy-­‐group.com     HIPAA  Hotline       855.85HIPAA   855.854.4722     HIPAA  Compliance     HITECH  Attestation     Omnibus  Rule  Ready     Meaningful  Use  core  measure  15