SlideShare une entreprise Scribd logo
HIPAA
Who does it Cover?


o   Healthcare providers

o   Health plans

o   Healthcare clearinghouses

o   Business associates who have
    access to patient records
What does HIPAA do?


o   Imposes new restrictions on the
    use and disclosure of Protected
    Health Information (PHI)

o   Gives patients greater access
    to their medical records

o   Gives patients greater
    protection of their medical
    records
What is Protected Health
         Information (PHI)?


o Any information about a patient’s physical or mental
  health, services rendered or payment for those services.

o Includes verbal, recorded, written, or electronic
  information
Use and Disclosure


o You are permitted to use and disclose PHI without written
  authorization:
  •   For treatment, payment, and health operations
  •   With verbal authorization or agreement from the individual
      patient
  •   For disclosure to the specific individual patient
  •   For incidental uses such as physicians talking to patients in
      a semi-private room
Use and Disclosure


o You are required to release PHI for use and disclosure
  without authorization:
  •   When requested or authorized by the patient (some
      exceptions apply)
  •   When required by the Department of Health and Human
      services (HHS) for compliance or investigation
  •   When the facility is required by law
Authorization


o Written authorization is required:
  •   For any purposes other than treatment, payment, or
      healthcare operations
  •   For use and disclosure of psychotherapy notes
  •   For research purposes
  •   For marketing activities
Authorization


o Written authorization is not required:
  •   To maintain WCMC’s patient directory
  •   To inform family members or other identified persons
      involved in the patient’s care or notify them on patient
      location, condition, or death
  •   To inform appropriate agencies during disaster relief efforts
  •   Public health activities related to disease prevention or
      control
Authorization: Continued...


•   To report victims of abuse, neglect, or domestic violence
•   Health oversight activities such as audits, legal
    investigations, licensure or for certain law enforcement
    purposes or government functions
•   For coroners, medical examiners, funeral directors or
    tissue/organ donations
•   To avert a serious threat to health and safety
Clergy


o Those who have been designated as “clergy” by their
  church will be able to view a list of patients in the hospital
  who have agreed to be included in the directory and who
  have indicated their religious affiliation to be that of the
  clergy member reviewing the list

o For example: the Baptist clergy member can only look at
  the Baptist list of patients
Minimum Necessary Standard


o The use and/or disclosure of PHI is limited to the
  minimum amount of health information necessary to get
  the job done right.
  •   WCMC has policies and practices that ensure the least
      amount of PHI is shared
  •   Employees must be identified who regularly access PHI
      along with the types of PHI needed and the conditions of
      access
Notice of Privacy Practices


o The patient has the right to have adequate notice
  concerning the use and disclosure of their PHI

o This includes:
  •   The patient’s rights and WCMC’s legal duties
  •   Being available in print
  •   Being displayed at the site of service
The Patient’s Privacy Rights


o The Patient has the right to :
  •   Request restricted uses and disclosures, although the
      covered entity is not required to agree
  •   Have PHI communicated to them by alternate means and at
      alternate locations to protect confidentiality
The Patient’s Privacy Rights


o The Patient has the right to :
  •   Inspect and amend PHI, and obtain copies, (with some
      exceptions)
  •   Receive the Notice of Privacy Practices at the time of the
      first delivery of service
  •   Request a history of disclosures for six years prior to the
      request, except for disclosures made for
      treatment, payment, healthcare operations or with prior
      authorization
The Patient’s Privacy Rights :
        Continued...


•   Contact WCMC Privacy Officer regarding any privacy
    concern or breach of privacy within the facility or contact
    HHS with the information
•   Parents have the right to access and control the PHI of their
    minor children, except when state law overrides parental
    control
Non-Compliance


o If you violate the HIPAA Privacy Rule you could
  face:
  • A civil penalty of up to $50,000 per offense, up to a
    maximum of $1.5 Million per year depending on the
    type of violation
  • A criminal penalty for knowingly disclosing PHI that
    may escalate to a maximum of $250,000 for
    conspicuously bad offenses and could include up to a
    10 year prison term
What can you do?


o Make sure you fully understand WCMC’s privacy
  practices
o Only use and disclose PHI when you need to do so to
  perform your job
o Only use and disclose the minimum amount of PHI
  needed to accomplish your job
o Make sure you handout the WCMC Notice of Privacy
  Practices to every patient
What can you do?


o Ask patients before talking to family members about their condition

o Speak softly when discussing PHI in open areas

o Avoid discussing patient issues in the cafeteria, on elevators, etc.

o Do not leave PHI laying out in open view - such as lab work,
   progress notes, or any patient record

o Shred any extra copies of PHI not needed

o Medical records should not be taken off campus
What can you do?


o Don’t leave messages concerning a patient’s condition or test
   results on any answering machine
o When releasing patient information over the phone, verify the
   identity of the caller
o Don’t share your password with anyone

o Log off your computer when you will be away from your work
   area
o Report privacy violations to our Compliance Officer, Debbie
   Hare,380-1062

Contenu connexe

Tendances

A Patient’S Bill Of Rights
A Patient’S Bill Of RightsA Patient’S Bill Of Rights
A Patient’S Bill Of RightsTosca Torres
 
Patients' rights and responsibilities
Patients' rights and responsibilitiesPatients' rights and responsibilities
Patients' rights and responsibilitiesAnkuran Dutta
 
Patients & family rights ppt
Patients  & family rights pptPatients  & family rights ppt
Patients & family rights pptvarunchandok18
 
7 Patient Rights & Responsibilities
7 Patient Rights & Responsibilities7 Patient Rights & Responsibilities
7 Patient Rights & ResponsibilitiesJasonPickerill1
 
Patient rights ppt
Patient rights pptPatient rights ppt
Patient rights pptSandhya M
 
Patient rights
Patient rightsPatient rights
Patient rightswcmc
 
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...Nawanan Theera-Ampornpunt
 
Patient anf family rights
Patient anf family rights Patient anf family rights
Patient anf family rights DrHisham Afaneh
 
Bioethics Patient's Rights
Bioethics Patient's RightsBioethics Patient's Rights
Bioethics Patient's RightsJofred Martinez
 
SCHS Topic 5: Privacy, Confidentiality and Medical Records
SCHS Topic 5: Privacy, Confidentiality and Medical RecordsSCHS Topic 5: Privacy, Confidentiality and Medical Records
SCHS Topic 5: Privacy, Confidentiality and Medical RecordsDr Ghaiath Hussein
 
Healthcare bill of rights
Healthcare bill of rightsHealthcare bill of rights
Healthcare bill of rightsRendell Apalin
 
Patient privacy
Patient privacyPatient privacy
Patient privacyshstre3745
 
Legal responsibilities of a nurse
Legal responsibilities of a nurseLegal responsibilities of a nurse
Legal responsibilities of a nursePooja Dhimaan
 
The Patients' Rights Charter
The Patients' Rights CharterThe Patients' Rights Charter
The Patients' Rights CharterDr. Julius Kwedhi
 
Consent & confidentiality
Consent & confidentialityConsent & confidentiality
Consent & confidentialityAhmed Elaghoury
 
Medico legal aspect of Medical Records
Medico legal aspect of Medical RecordsMedico legal aspect of Medical Records
Medico legal aspect of Medical RecordsRameez Shah
 

Tendances (20)

A Patient’S Bill Of Rights
A Patient’S Bill Of RightsA Patient’S Bill Of Rights
A Patient’S Bill Of Rights
 
Patient Rights-Final
Patient Rights-FinalPatient Rights-Final
Patient Rights-Final
 
Patients Bill of Rights
Patients Bill of RightsPatients Bill of Rights
Patients Bill of Rights
 
Patients' rights and responsibilities
Patients' rights and responsibilitiesPatients' rights and responsibilities
Patients' rights and responsibilities
 
Patients & family rights ppt
Patients  & family rights pptPatients  & family rights ppt
Patients & family rights ppt
 
7 Patient Rights & Responsibilities
7 Patient Rights & Responsibilities7 Patient Rights & Responsibilities
7 Patient Rights & Responsibilities
 
Patient’s Rights and Duties
Patient’s Rights and DutiesPatient’s Rights and Duties
Patient’s Rights and Duties
 
Patient rights ppt
Patient rights pptPatient rights ppt
Patient rights ppt
 
Patient rights
Patient rightsPatient rights
Patient rights
 
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
 
Patient anf family rights
Patient anf family rights Patient anf family rights
Patient anf family rights
 
Bioethics Patient's Rights
Bioethics Patient's RightsBioethics Patient's Rights
Bioethics Patient's Rights
 
SCHS Topic 5: Privacy, Confidentiality and Medical Records
SCHS Topic 5: Privacy, Confidentiality and Medical RecordsSCHS Topic 5: Privacy, Confidentiality and Medical Records
SCHS Topic 5: Privacy, Confidentiality and Medical Records
 
Healthcare bill of rights
Healthcare bill of rightsHealthcare bill of rights
Healthcare bill of rights
 
Patient privacy
Patient privacyPatient privacy
Patient privacy
 
Legal responsibilities of a nurse
Legal responsibilities of a nurseLegal responsibilities of a nurse
Legal responsibilities of a nurse
 
The Patients' Rights Charter
The Patients' Rights CharterThe Patients' Rights Charter
The Patients' Rights Charter
 
Consent & confidentiality
Consent & confidentialityConsent & confidentiality
Consent & confidentiality
 
Medico legal aspect of Medical Records
Medico legal aspect of Medical RecordsMedico legal aspect of Medical Records
Medico legal aspect of Medical Records
 
Confidentiality
ConfidentialityConfidentiality
Confidentiality
 

En vedette

Hipaa presentation
Hipaa presentationHipaa presentation
Hipaa presentationcjkonsella
 
HIPPA---Chantel Artis Spencer
HIPPA---Chantel Artis SpencerHIPPA---Chantel Artis Spencer
HIPPA---Chantel Artis Spencershay1234
 
Hippa training on confidentiality
Hippa training on confidentialityHippa training on confidentiality
Hippa training on confidentialitycraig45365
 
Introduction to HIPAA for Healthcare Professionals by OUP
Introduction to HIPAA for Healthcare Professionals by OUPIntroduction to HIPAA for Healthcare Professionals by OUP
Introduction to HIPAA for Healthcare Professionals by OUPAtlantic Training, LLC.
 

En vedette (6)

Hipaa presentation
Hipaa presentationHipaa presentation
Hipaa presentation
 
Hipaa
HipaaHipaa
Hipaa
 
HIPPA---Chantel Artis Spencer
HIPPA---Chantel Artis SpencerHIPPA---Chantel Artis Spencer
HIPPA---Chantel Artis Spencer
 
Hippa training on confidentiality
Hippa training on confidentialityHippa training on confidentiality
Hippa training on confidentiality
 
Hipaa slideshow
Hipaa slideshowHipaa slideshow
Hipaa slideshow
 
Introduction to HIPAA for Healthcare Professionals by OUP
Introduction to HIPAA for Healthcare Professionals by OUPIntroduction to HIPAA for Healthcare Professionals by OUP
Introduction to HIPAA for Healthcare Professionals by OUP
 

Similaire à Hipaa

Welcome to the hippa, privacy and security
Welcome to the hippa, privacy and securityWelcome to the hippa, privacy and security
Welcome to the hippa, privacy and securityveve1728
 
Hipaa conf
Hipaa confHipaa conf
Hipaa confcqpate
 
Health care confidentiality and privacy
Health care confidentiality and privacyHealth care confidentiality and privacy
Health care confidentiality and privacysawanda
 
Hipaa basics.pp2
Hipaa basics.pp2Hipaa basics.pp2
Hipaa basics.pp2martykoepke
 
Are You HIPAA Safe?
Are You HIPAA Safe?Are You HIPAA Safe?
Are You HIPAA Safe?TriageLogic
 
Data Security and Privacy Practices
Data Security and Privacy PracticesData Security and Privacy Practices
Data Security and Privacy PracticesSpringfield Clinic
 
2018-HIPAA-Renewal-Training.pptx
2018-HIPAA-Renewal-Training.pptx2018-HIPAA-Renewal-Training.pptx
2018-HIPAA-Renewal-Training.pptxFariida Osman
 
Patient confidentiality.ppt
Patient confidentiality.pptPatient confidentiality.ppt
Patient confidentiality.pptchwiso8418
 
Patient confidentiality power point
Patient confidentiality power pointPatient confidentiality power point
Patient confidentiality power pointchwiso8418
 
Patient confidentiality
Patient confidentialityPatient confidentiality
Patient confidentialitychwiso8418
 
Patient confidentiality power point
Patient confidentiality power pointPatient confidentiality power point
Patient confidentiality power pointchwiso8418
 
Rems hipaa
Rems hipaaRems hipaa
Rems hipaadhexel
 
HIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability ActHIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability ActHarshit Trivedi
 
Healthcare Compliance and Privacy/Security Training by UCONN
Healthcare Compliance and Privacy/Security Training by UCONNHealthcare Compliance and Privacy/Security Training by UCONN
Healthcare Compliance and Privacy/Security Training by UCONNAtlantic Training, LLC.
 
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...emdadhussain840
 

Similaire à Hipaa (20)

Welcome to the hippa, privacy and security
Welcome to the hippa, privacy and securityWelcome to the hippa, privacy and security
Welcome to the hippa, privacy and security
 
Hipaa conf
Hipaa confHipaa conf
Hipaa conf
 
Health care confidentiality and privacy
Health care confidentiality and privacyHealth care confidentiality and privacy
Health care confidentiality and privacy
 
Hipaa basics.pp2
Hipaa basics.pp2Hipaa basics.pp2
Hipaa basics.pp2
 
HIPAA HITECH training 7-9-12
HIPAA HITECH training 7-9-12HIPAA HITECH training 7-9-12
HIPAA HITECH training 7-9-12
 
HIPAA & PHI Training
HIPAA & PHI TrainingHIPAA & PHI Training
HIPAA & PHI Training
 
Are You HIPAA Safe?
Are You HIPAA Safe?Are You HIPAA Safe?
Are You HIPAA Safe?
 
Data Security and Privacy Practices
Data Security and Privacy PracticesData Security and Privacy Practices
Data Security and Privacy Practices
 
2018-HIPAA-Renewal-Training.pptx
2018-HIPAA-Renewal-Training.pptx2018-HIPAA-Renewal-Training.pptx
2018-HIPAA-Renewal-Training.pptx
 
Patient confidentiality.ppt
Patient confidentiality.pptPatient confidentiality.ppt
Patient confidentiality.ppt
 
Patient confidentiality power point
Patient confidentiality power pointPatient confidentiality power point
Patient confidentiality power point
 
Patient confidentiality
Patient confidentialityPatient confidentiality
Patient confidentiality
 
Patient confidentiality power point
Patient confidentiality power pointPatient confidentiality power point
Patient confidentiality power point
 
HIPAA, PHI, & 42 CFR Part 2
HIPAA, PHI, & 42 CFR Part 2HIPAA, PHI, & 42 CFR Part 2
HIPAA, PHI, & 42 CFR Part 2
 
Rems hipaa
Rems hipaaRems hipaa
Rems hipaa
 
HIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability ActHIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability Act
 
Healthcare Compliance and Privacy/Security Training by UCONN
Healthcare Compliance and Privacy/Security Training by UCONNHealthcare Compliance and Privacy/Security Training by UCONN
Healthcare Compliance and Privacy/Security Training by UCONN
 
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
 
Hipaa pesentation
Hipaa pesentationHipaa pesentation
Hipaa pesentation
 
UNA HIPAA Training 8-13
UNA HIPAA Training   8-13UNA HIPAA Training   8-13
UNA HIPAA Training 8-13
 

Plus de wcmc

Dress code
Dress codeDress code
Dress codewcmc
 
Suicide precautions
Suicide precautions   Suicide precautions
Suicide precautions wcmc
 
Social work services
Social work servicesSocial work services
Social work serviceswcmc
 
Rounding
Rounding   Rounding
Rounding wcmc
 
Restraints
Restraints   Restraints
Restraints wcmc
 
Preparing for surgery
Preparing for surgeryPreparing for surgery
Preparing for surgerywcmc
 
Pharmacy
Pharmacy   Pharmacy
Pharmacy wcmc
 
Peritoneal dialysis
Peritoneal dialysis  Peritoneal dialysis
Peritoneal dialysis wcmc
 
Peak & trough
Peak & trough   Peak & trough
Peak & trough wcmc
 
Pca
Pca Pca
Pca wcmc
 
Pain management
Pain management   Pain management
Pain management wcmc
 
Organ tissue donation
Organ tissue donation Organ tissue donation
Organ tissue donation wcmc
 
Medication reconciliation
Medication reconciliationMedication reconciliation
Medication reconciliationwcmc
 
Medication administration
Medication administrationMedication administration
Medication administrationwcmc
 
Iv therapy
Iv therapy Iv therapy
Iv therapy wcmc
 
Isolation
Isolation  Isolation
Isolation wcmc
 
Insulin drips
Insulin dripsInsulin drips
Insulin dripswcmc
 
Hemodialysis
Hemodialysis Hemodialysis
Hemodialysis wcmc
 
Haldol drips
Haldol drips Haldol drips
Haldol drips wcmc
 
Epidural
Epidural   Epidural
Epidural wcmc
 

Plus de wcmc (20)

Dress code
Dress codeDress code
Dress code
 
Suicide precautions
Suicide precautions   Suicide precautions
Suicide precautions
 
Social work services
Social work servicesSocial work services
Social work services
 
Rounding
Rounding   Rounding
Rounding
 
Restraints
Restraints   Restraints
Restraints
 
Preparing for surgery
Preparing for surgeryPreparing for surgery
Preparing for surgery
 
Pharmacy
Pharmacy   Pharmacy
Pharmacy
 
Peritoneal dialysis
Peritoneal dialysis  Peritoneal dialysis
Peritoneal dialysis
 
Peak & trough
Peak & trough   Peak & trough
Peak & trough
 
Pca
Pca Pca
Pca
 
Pain management
Pain management   Pain management
Pain management
 
Organ tissue donation
Organ tissue donation Organ tissue donation
Organ tissue donation
 
Medication reconciliation
Medication reconciliationMedication reconciliation
Medication reconciliation
 
Medication administration
Medication administrationMedication administration
Medication administration
 
Iv therapy
Iv therapy Iv therapy
Iv therapy
 
Isolation
Isolation  Isolation
Isolation
 
Insulin drips
Insulin dripsInsulin drips
Insulin drips
 
Hemodialysis
Hemodialysis Hemodialysis
Hemodialysis
 
Haldol drips
Haldol drips Haldol drips
Haldol drips
 
Epidural
Epidural   Epidural
Epidural
 

Dernier

Strategic AI Integration in Engineering Teams
Strategic AI Integration in Engineering TeamsStrategic AI Integration in Engineering Teams
Strategic AI Integration in Engineering TeamsUXDXConf
 
AI revolution and Salesforce, Jiří Karpíšek
AI revolution and Salesforce, Jiří KarpíšekAI revolution and Salesforce, Jiří Karpíšek
AI revolution and Salesforce, Jiří KarpíšekCzechDreamin
 
Server-Driven User Interface (SDUI) at Priceline
Server-Driven User Interface (SDUI) at PricelineServer-Driven User Interface (SDUI) at Priceline
Server-Driven User Interface (SDUI) at PricelineUXDXConf
 
Salesforce Adoption – Metrics, Methods, and Motivation, Antone Kom
Salesforce Adoption – Metrics, Methods, and Motivation, Antone KomSalesforce Adoption – Metrics, Methods, and Motivation, Antone Kom
Salesforce Adoption – Metrics, Methods, and Motivation, Antone KomCzechDreamin
 
Free and Effective: Making Flows Publicly Accessible, Yumi Ibrahimzade
Free and Effective: Making Flows Publicly Accessible, Yumi IbrahimzadeFree and Effective: Making Flows Publicly Accessible, Yumi Ibrahimzade
Free and Effective: Making Flows Publicly Accessible, Yumi IbrahimzadeCzechDreamin
 
Introduction to Open Source RAG and RAG Evaluation
Introduction to Open Source RAG and RAG EvaluationIntroduction to Open Source RAG and RAG Evaluation
Introduction to Open Source RAG and RAG EvaluationZilliz
 
Speed Wins: From Kafka to APIs in Minutes
Speed Wins: From Kafka to APIs in MinutesSpeed Wins: From Kafka to APIs in Minutes
Speed Wins: From Kafka to APIs in Minutesconfluent
 
Intelligent Gimbal FINAL PAPER Engineering.pdf
Intelligent Gimbal FINAL PAPER Engineering.pdfIntelligent Gimbal FINAL PAPER Engineering.pdf
Intelligent Gimbal FINAL PAPER Engineering.pdfAnthony Lucente
 
To Graph or Not to Graph Knowledge Graph Architectures and LLMs
To Graph or Not to Graph Knowledge Graph Architectures and LLMsTo Graph or Not to Graph Knowledge Graph Architectures and LLMs
To Graph or Not to Graph Knowledge Graph Architectures and LLMsPaul Groth
 
10 Differences between Sales Cloud and CPQ, Blanka Doktorová
10 Differences between Sales Cloud and CPQ, Blanka Doktorová10 Differences between Sales Cloud and CPQ, Blanka Doktorová
10 Differences between Sales Cloud and CPQ, Blanka DoktorováCzechDreamin
 
ECS 2024 Teams Premium - Pretty Secure
ECS 2024   Teams Premium - Pretty SecureECS 2024   Teams Premium - Pretty Secure
ECS 2024 Teams Premium - Pretty SecureFemke de Vroome
 
IOS-PENTESTING-BEGINNERS-PRACTICAL-GUIDE-.pptx
IOS-PENTESTING-BEGINNERS-PRACTICAL-GUIDE-.pptxIOS-PENTESTING-BEGINNERS-PRACTICAL-GUIDE-.pptx
IOS-PENTESTING-BEGINNERS-PRACTICAL-GUIDE-.pptxAbida Shariff
 
Knowledge engineering: from people to machines and back
Knowledge engineering: from people to machines and backKnowledge engineering: from people to machines and back
Knowledge engineering: from people to machines and backElena Simperl
 
Exploring UiPath Orchestrator API: updates and limits in 2024 🚀
Exploring UiPath Orchestrator API: updates and limits in 2024 🚀Exploring UiPath Orchestrator API: updates and limits in 2024 🚀
Exploring UiPath Orchestrator API: updates and limits in 2024 🚀DianaGray10
 
"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor TurskyiFwdays
 
Custom Approval Process: A New Perspective, Pavel Hrbacek & Anindya Halder
Custom Approval Process: A New Perspective, Pavel Hrbacek & Anindya HalderCustom Approval Process: A New Perspective, Pavel Hrbacek & Anindya Halder
Custom Approval Process: A New Perspective, Pavel Hrbacek & Anindya HalderCzechDreamin
 
Demystifying gRPC in .Net by John Staveley
Demystifying gRPC in .Net by John StaveleyDemystifying gRPC in .Net by John Staveley
Demystifying gRPC in .Net by John StaveleyJohn Staveley
 
WSO2CONMay2024OpenSourceConferenceDebrief.pptx
WSO2CONMay2024OpenSourceConferenceDebrief.pptxWSO2CONMay2024OpenSourceConferenceDebrief.pptx
WSO2CONMay2024OpenSourceConferenceDebrief.pptxJennifer Lim
 
The architecture of Generative AI for enterprises.pdf
The architecture of Generative AI for enterprises.pdfThe architecture of Generative AI for enterprises.pdf
The architecture of Generative AI for enterprises.pdfalexjohnson7307
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Tobias Schneck
 

Dernier (20)

Strategic AI Integration in Engineering Teams
Strategic AI Integration in Engineering TeamsStrategic AI Integration in Engineering Teams
Strategic AI Integration in Engineering Teams
 
AI revolution and Salesforce, Jiří Karpíšek
AI revolution and Salesforce, Jiří KarpíšekAI revolution and Salesforce, Jiří Karpíšek
AI revolution and Salesforce, Jiří Karpíšek
 
Server-Driven User Interface (SDUI) at Priceline
Server-Driven User Interface (SDUI) at PricelineServer-Driven User Interface (SDUI) at Priceline
Server-Driven User Interface (SDUI) at Priceline
 
Salesforce Adoption – Metrics, Methods, and Motivation, Antone Kom
Salesforce Adoption – Metrics, Methods, and Motivation, Antone KomSalesforce Adoption – Metrics, Methods, and Motivation, Antone Kom
Salesforce Adoption – Metrics, Methods, and Motivation, Antone Kom
 
Free and Effective: Making Flows Publicly Accessible, Yumi Ibrahimzade
Free and Effective: Making Flows Publicly Accessible, Yumi IbrahimzadeFree and Effective: Making Flows Publicly Accessible, Yumi Ibrahimzade
Free and Effective: Making Flows Publicly Accessible, Yumi Ibrahimzade
 
Introduction to Open Source RAG and RAG Evaluation
Introduction to Open Source RAG and RAG EvaluationIntroduction to Open Source RAG and RAG Evaluation
Introduction to Open Source RAG and RAG Evaluation
 
Speed Wins: From Kafka to APIs in Minutes
Speed Wins: From Kafka to APIs in MinutesSpeed Wins: From Kafka to APIs in Minutes
Speed Wins: From Kafka to APIs in Minutes
 
Intelligent Gimbal FINAL PAPER Engineering.pdf
Intelligent Gimbal FINAL PAPER Engineering.pdfIntelligent Gimbal FINAL PAPER Engineering.pdf
Intelligent Gimbal FINAL PAPER Engineering.pdf
 
To Graph or Not to Graph Knowledge Graph Architectures and LLMs
To Graph or Not to Graph Knowledge Graph Architectures and LLMsTo Graph or Not to Graph Knowledge Graph Architectures and LLMs
To Graph or Not to Graph Knowledge Graph Architectures and LLMs
 
10 Differences between Sales Cloud and CPQ, Blanka Doktorová
10 Differences between Sales Cloud and CPQ, Blanka Doktorová10 Differences between Sales Cloud and CPQ, Blanka Doktorová
10 Differences between Sales Cloud and CPQ, Blanka Doktorová
 
ECS 2024 Teams Premium - Pretty Secure
ECS 2024   Teams Premium - Pretty SecureECS 2024   Teams Premium - Pretty Secure
ECS 2024 Teams Premium - Pretty Secure
 
IOS-PENTESTING-BEGINNERS-PRACTICAL-GUIDE-.pptx
IOS-PENTESTING-BEGINNERS-PRACTICAL-GUIDE-.pptxIOS-PENTESTING-BEGINNERS-PRACTICAL-GUIDE-.pptx
IOS-PENTESTING-BEGINNERS-PRACTICAL-GUIDE-.pptx
 
Knowledge engineering: from people to machines and back
Knowledge engineering: from people to machines and backKnowledge engineering: from people to machines and back
Knowledge engineering: from people to machines and back
 
Exploring UiPath Orchestrator API: updates and limits in 2024 🚀
Exploring UiPath Orchestrator API: updates and limits in 2024 🚀Exploring UiPath Orchestrator API: updates and limits in 2024 🚀
Exploring UiPath Orchestrator API: updates and limits in 2024 🚀
 
"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi
 
Custom Approval Process: A New Perspective, Pavel Hrbacek & Anindya Halder
Custom Approval Process: A New Perspective, Pavel Hrbacek & Anindya HalderCustom Approval Process: A New Perspective, Pavel Hrbacek & Anindya Halder
Custom Approval Process: A New Perspective, Pavel Hrbacek & Anindya Halder
 
Demystifying gRPC in .Net by John Staveley
Demystifying gRPC in .Net by John StaveleyDemystifying gRPC in .Net by John Staveley
Demystifying gRPC in .Net by John Staveley
 
WSO2CONMay2024OpenSourceConferenceDebrief.pptx
WSO2CONMay2024OpenSourceConferenceDebrief.pptxWSO2CONMay2024OpenSourceConferenceDebrief.pptx
WSO2CONMay2024OpenSourceConferenceDebrief.pptx
 
The architecture of Generative AI for enterprises.pdf
The architecture of Generative AI for enterprises.pdfThe architecture of Generative AI for enterprises.pdf
The architecture of Generative AI for enterprises.pdf
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
 

Hipaa

  • 2. Who does it Cover? o Healthcare providers o Health plans o Healthcare clearinghouses o Business associates who have access to patient records
  • 3. What does HIPAA do? o Imposes new restrictions on the use and disclosure of Protected Health Information (PHI) o Gives patients greater access to their medical records o Gives patients greater protection of their medical records
  • 4. What is Protected Health Information (PHI)? o Any information about a patient’s physical or mental health, services rendered or payment for those services. o Includes verbal, recorded, written, or electronic information
  • 5. Use and Disclosure o You are permitted to use and disclose PHI without written authorization: • For treatment, payment, and health operations • With verbal authorization or agreement from the individual patient • For disclosure to the specific individual patient • For incidental uses such as physicians talking to patients in a semi-private room
  • 6. Use and Disclosure o You are required to release PHI for use and disclosure without authorization: • When requested or authorized by the patient (some exceptions apply) • When required by the Department of Health and Human services (HHS) for compliance or investigation • When the facility is required by law
  • 7. Authorization o Written authorization is required: • For any purposes other than treatment, payment, or healthcare operations • For use and disclosure of psychotherapy notes • For research purposes • For marketing activities
  • 8. Authorization o Written authorization is not required: • To maintain WCMC’s patient directory • To inform family members or other identified persons involved in the patient’s care or notify them on patient location, condition, or death • To inform appropriate agencies during disaster relief efforts • Public health activities related to disease prevention or control
  • 9. Authorization: Continued... • To report victims of abuse, neglect, or domestic violence • Health oversight activities such as audits, legal investigations, licensure or for certain law enforcement purposes or government functions • For coroners, medical examiners, funeral directors or tissue/organ donations • To avert a serious threat to health and safety
  • 10. Clergy o Those who have been designated as “clergy” by their church will be able to view a list of patients in the hospital who have agreed to be included in the directory and who have indicated their religious affiliation to be that of the clergy member reviewing the list o For example: the Baptist clergy member can only look at the Baptist list of patients
  • 11. Minimum Necessary Standard o The use and/or disclosure of PHI is limited to the minimum amount of health information necessary to get the job done right. • WCMC has policies and practices that ensure the least amount of PHI is shared • Employees must be identified who regularly access PHI along with the types of PHI needed and the conditions of access
  • 12. Notice of Privacy Practices o The patient has the right to have adequate notice concerning the use and disclosure of their PHI o This includes: • The patient’s rights and WCMC’s legal duties • Being available in print • Being displayed at the site of service
  • 13. The Patient’s Privacy Rights o The Patient has the right to : • Request restricted uses and disclosures, although the covered entity is not required to agree • Have PHI communicated to them by alternate means and at alternate locations to protect confidentiality
  • 14. The Patient’s Privacy Rights o The Patient has the right to : • Inspect and amend PHI, and obtain copies, (with some exceptions) • Receive the Notice of Privacy Practices at the time of the first delivery of service • Request a history of disclosures for six years prior to the request, except for disclosures made for treatment, payment, healthcare operations or with prior authorization
  • 15. The Patient’s Privacy Rights : Continued... • Contact WCMC Privacy Officer regarding any privacy concern or breach of privacy within the facility or contact HHS with the information • Parents have the right to access and control the PHI of their minor children, except when state law overrides parental control
  • 16. Non-Compliance o If you violate the HIPAA Privacy Rule you could face: • A civil penalty of up to $50,000 per offense, up to a maximum of $1.5 Million per year depending on the type of violation • A criminal penalty for knowingly disclosing PHI that may escalate to a maximum of $250,000 for conspicuously bad offenses and could include up to a 10 year prison term
  • 17. What can you do? o Make sure you fully understand WCMC’s privacy practices o Only use and disclose PHI when you need to do so to perform your job o Only use and disclose the minimum amount of PHI needed to accomplish your job o Make sure you handout the WCMC Notice of Privacy Practices to every patient
  • 18. What can you do? o Ask patients before talking to family members about their condition o Speak softly when discussing PHI in open areas o Avoid discussing patient issues in the cafeteria, on elevators, etc. o Do not leave PHI laying out in open view - such as lab work, progress notes, or any patient record o Shred any extra copies of PHI not needed o Medical records should not be taken off campus
  • 19. What can you do? o Don’t leave messages concerning a patient’s condition or test results on any answering machine o When releasing patient information over the phone, verify the identity of the caller o Don’t share your password with anyone o Log off your computer when you will be away from your work area o Report privacy violations to our Compliance Officer, Debbie Hare,380-1062