Compliance for Beginners: What Every Healthcare Worker Needs to Know About Compliance Activities

Size: px
Start display at page:

Download "Compliance for Beginners: What Every Healthcare Worker Needs to Know About Compliance Activities"

Transcription

1 Compliance for Beginners: What Every Healthcare Worker Needs to Know About Compliance Activities

2 What is Corporate Compliance? Corporate compliance refers to a program designed to ensure an organization s compliance with federal, state, and local laws regulations and billing regulations as well as organizational policies and ethical standards. Includes Medicare, Medicaid, Blue Cross and Commercial Insurance Companies. 2

3 Why should I care about corporate compliance? Our compliance program carries the following benefits: Creates a culture that promotes doing the right thing and increases sensitivity to ethics Provides a way for employees to report potential problems Formalizes education concerning regulatory risk areas Prevents errors before they occur Leads to enhanced communication between administrators and clinicians Limits the amount our organization will pay in a potential settlement regarding a billing or coding error 3

4 Enforcement overview Who is policing corporate compliance and what are they looking for? Department of Health and Human Services Office of Inspector General (OIG) Internal Revenue Service Centers for Medicare & Medicaid Services U.S. Department of Justice Federal Bureau of Investigation State Medicaid Fraud Units Office of Civil Rights 4

5 Ingredients for a Successful Compliance Program Support from top management Clearly-identified responsibilities and expected behavior Education for all workforce members (employees, volunteers and physicians) An environment where all employees feel safe in reporting suspected violations Fair and consistent administration of disciplinary action for failure to follow policies and procedures 5

6 7 Elements of a Compliance Program According to the Office of Inspector General (OIG) 1. Written Standards 2. Education and Training 3. Designation of a Compliance Officer 4. Effective Communication 5. Discipline and Enforcement 6. Auditing and Monitoring 7. Response and Prevention 6

7 Written Standards Policies and Procedures CC Corporate Director of Compliance Duties and Responsibilities CC Corporate Compliance Committee Duties and Responsibilities CC Compliance Office Reporting Procedures CC Responding to Government Official Visits - Search Warrants and Subpoenas CC Auditing and Monitoring CC Technology Resources CC Nonmonetary Compensation for Referral Sources CC Audit/Investigation Response, Follow-Up, and Resolution Policy CC Conflict of Interest Disclosures and Business Integrity CC Record Retention and Destruction Policy and Retention Schedule CC Prevention Fraud-Abuse-FCA CC Non Retaliation CC Disclosure of Misconduct CC Identity Theft Prevention Policy CC MHC Standards of Conduct CC User Access Termination Policy CC Use Policy CC EMTALA CC HIPAA Uses and Disclosures of PHI-General CC HIPAA PHI Disclosures Not Requiring Authorizations CC HIPAA OHCA Board Resolution CC HIPAA Notice of Privacy Practices CC HIPAA Administrative Policy CC HIPAA Business Associate CC HIPAA Limited-Deidentified Data Sets CC HIPAA Patient Rights 7

8 Standards of Conduct Purpose So all MHC Board members, employees, physicians, volunteers, contractors follow the same guidelines Governing board support Leadership must support and lead by example Standards are the public sign of our compliance to legal and ethical behavior 8

9 Standards of Conduct A Commitment to Providing Patient Care Document all care and services given If it s not documented, it s not done Effective communication using plain language, making eye contact, using proper phone etiquette, smiling and greeting patients and family members, environmental awareness Goal is to exceed the expectations of patients, patient family members, and co-workers ties in with McLaren Excellence initiatives. 9

10 Standards of Conduct A Commitment to Our Community You are identified with McLaren Bay Region when in public 10

11 Standards of Conduct A Commitment to Ongoing Monitoring Every department is asked to perform a periodic risk assessment to determine whether there is any potential for fraud or abuse, any violation of hospital policy, or any violation of state or federal laws and regulations. Any potential risk areas identified are analyzed, necessary changes are made and monitoring is performed to assure the risk has been removed. Monitoring activities are reported to the Compliance Officer. 11

12 Standards of Conduct A Commitment to Environmental Health and Safety Follow all governing rules and regulations, i.e. OSHA, FDA, CDC, etc. Wear appropriately-displayed name badge at all times and be familiar with others that work in your area Report suspicious persons or situations immediately Appropriately respond to difficult situations by remaining calm, listening, and attempting to diffuse verbally hostile situations. Call for help if needed. 12

13 Standards of Conduct A Commitment to Proper Employment Practices McLaren takes reasonable precautions to ensure the work environment is free of discrimination or harassment Employees may not solicit or accept anything of monetary value, including a loan, reward, gift or property, from a patient or a patient s family, visitor, contractor, vendor, supplier or competitor. Employees may not use their employment, or any information received through McLaren, to obtain financial gain (direct or indirect) for themselves, a member of their family or a business with which they or a member of their family, is associated. 13

14 Standards of Conduct A Commitment to Ethical Business Conduct Outside employment or business activities must be limited to off-work time Report any situation that may be considered a conflict of interest 14

15 Standards of Conduct A Commitment to Assets and Financial Transactions Honest, accurate, and complete reporting of financial transactions Appropriately representing productivity Accurately recording travel expenses and mileage Securing money, equipment, or supplies from theft 15

16 Standards of Conduct A Commitment to Accurate Coding and Billing Transactions Providing and billing only for services that are reasonable and necessary and are supported by medical record documentation Waiving of co-pays or deductibles only in accordance with policy and procedure Attempting to collect outstanding balances from a Medicare or Medicaid patients only when Advance Beneficiary Notices were provided prior to service Prevention of duplicate billing Ensuring coding accuracy through periodic audits and ongoing education 16

17 Standards of Conduct A Commitment to Confidentiality and Electronic Security Patients have rights: to confidential communication of PHI to receive a notice of uses/disclosures of their PHI when they request it to access or receive a copy of their medical records to request a restriction to how their PHI is used to request changes (amendments) to their medical record to receive a listing, or accounting of disclosures, if requested The same safeguards used to protect confidential patient information should be used to protect our business and financial information. 17

18 Standards of Conduct A Commitment to Laws and Regulations Anti-Kickback Stark Laws (Physician Self-Referral Law) Federal False Claims Act State False Claims Act EMTALA (Emergency Medical Treatment and Active Labor Act) 18

19 2. Education and Training Key component to a successful program is educating all workforce members Must educate all workforce members on current compliance trends and information and expected behaviors All employees MUST receive a minimum of one hour compliance education each year. High risk employees (billers, coders, registrars) are required to receive a minimum of 3 hours of compliance education each year 19

20 3. Designate a Compliance Officer High-level official with direct access to the governing body, the CEO, all other senior management and legal counsel. Has the appropriate authority to oversee and facilitate the compliance program and all compliance activities The Compliance Officer is Heather McAllister. 20

21 Department Compliance Representatives Appointed by the department director Conducts compliance education for employees of their department Responsible for completion of department monitors Works with compliance officer to resolve complaints or concerns 21

22 Workforce Members Includes all employees, volunteers and physicians Attend all compliance training programs Read all material distributed by your Compliance Representative Report any real or suspected violations to your Supervisor, to the Compliance Representative or to the Compliance Officer 22

23 4. Effective Communication Reporting Investigating Compliance Hotline Non-retaliation Education 23

24 5. Discipline and Enforcement Fair, equitable, and consistent Obligation to report Sanctions for non-compliance 24

25 6. Auditing and Monitoring An important component of the compliance program is the use of audits and/or other evaluation techniques to monitor compliance and assist in the reduction of identified problem areas. Internal audits External audits Surveys Risk assessments for proactive identification of potential problem areas 25

26 7. Response and Prevention Evaluate, analyze, address, educate Employment practices Sanction screening Conflict of Interest Survey Compliance Surveys Risk Assessments resulting in action plans developed to address identified risk areas 26

27 Reporting Violations Open communication helps your organization respond to compliance problems. If you see something that you feel violates the law or hospital policy: Report the issue to your Supervisor, to your Compliance Representative, or to your Compliance Officer, Heather McAllister They already got themselves in trouble. You are just doing what we have asked you to do. 27

28 Compliance Hotline Most organizations have an established, confidential compliance reporting line to report any and all suspected violations. The following are some examples of when you might use this reporting mechanism: When you suspect than any employee, physician, or vendor is engaged in wrongdoing When you suspect that your supervisor is committing or ignoring wrongdoing When you notice suspected wrongdoing outside of your supervisor s scope of authority When you are more comfortable remaining anonymous 28

29 Compliance Hotline MBR Compliance Officer (989) MBR Hot Line (989) If you should report a problem, know that your organization and the law prohibit retaliation. You can leave an anonymous message on the hotline, but remember to leave enough information for us to deal with the issue. 29

30 Questions? 30

31 Privacy for Beginners: What Every Healthcare Worker Needs to Know About HIPAA and Privacy

32 What is HIPAA? Health Insurance Portability and Accountability Act (HIPAA) is broad federal legislation that includes rules to protect the privacy and confidentiality of patient information. Does not replace existing confidentiality laws Establishes a minimum requirement 32

33 Protected Health Information (PHI) HIPAA regulates the use and disclosure of what is known as Protected Health Information or PHI. PHI is any information that can be used to identify the past, present, or future healthcare of an individual or the payment for that care. 33

34 PHI This is virtually all information about a patient, whether on paper, saved on a computer, or spoken aloud. This includes their: Name Address Age Social Security number Other personal information License plate numbers Fax machine numbers 34

35 HIPAA confidentiality HIPAA rules also protect the following: The reason the patient is sick or in the hospital The treatments and medication he or she receives Caregivers notes Information about past health conditions 35

36 Use of PHI A healthcare provider can access and use PHI without specific patient authorization if it is to be used for treatment, payment, or healthcare operations (TPO). Before looking at a patient s health information, ask yourself, Do I need to see/know this to do my job? 36

37 Use of PHI A healthcare provider can disclose PHI without patient authorization: Required by law Public Health Activities Law Enforcement Other national priorities - funeral directors, organ donation, research, prevent a disaster, special government functions, worker s compensation 37

38 Use of PHI Minimum Necessary Standard - Always use or disclose only the minimum amount of information necessary to honor the request. If you are not sure whether you should disclose any form of PHI, ASK your Supervisor, your Compliance Representative or the call the Compliance Officer. Once the disclosure is made it s too late to get it back. If you disclose information in error, report it immediately to your Supervisor, to your Compliance Representative or to the Compliance Officer. 38

39 Security for Beginners: What Every Healthcare Worker Needs to Know About HIPAA Security

40 Use of electronic Protected Health Information (ephi) HIPAA security rules apply only to ephi stored, maintained or transmitted in an electronic format ephi is the same information as PHI; anything that could identify the patient, their medical condition or method of payment Security rules require additional compliance 40

41 Use of ephi Appropriately use computers and other technology. Workforce members cannot use their computers or access to review personal or family PHI. If you use a laptop or other portable device, or removable storage media, it is your responsibility to: Obtain approval before transferring ephi to a portable device. Protect ALL ephi from theft both electronic and physical. Assure ephi is encrypted. 41

42 Use ephi Monitor the use of cell phones. Information and images (ephi) sent over the Internet are not encrypted. Do not send unencrypted ephi outside of our e- mail system. Use and Internet access appropriately Workforce members should remember that s sent to or from MBR computers are not considered private. MBR can and does audit and Internet usage. 42

43 Use of ephi Password control is key. Log off an application or computer when you are finished. You are your password. Protect it! Never share it! If you believe your password has been compromised, call the service desk immediately. Tell them your concern and ask for a new password. 43

44 What Does HIPAA Mean To Me? Our patients have a right to expect we will keep their information confidential. This information includes anything that could identify or be used to find out the identity of the patient or their medical condition. As employees, volunteers and physicians, we come in contact with many forms of patient information, including a patient census list. We need to understand what are acceptable uses of this information. Always discard paper containing patient information in a shredding bin. Never throw it in a regular trash receptacle. Follow the need to know rule. Ask yourself, Do I need to see patient information to perform my job?. If the answer is yes, you have nothing to worry about. If the answer is no, STOP. 44

45 What Does This All Mean To Me? The cafeteria, elevator or any of the social media sites are not the place to discuss the medical condition or other aspects of a patient s care. Information you have access to must not be the subject of conversation with family, friends or neighbors. Most disclosures of PHI do not need an authorization by the patient. PHI can be disclosed without an authorization for reasons of TPO and any of the 12 permitted uses under the Privacy Rules. Any other disclosure requires an authorization by the patient. The minimum necessary standard needs to be applied to all disclosures except for treatment purposes, disclosures to the patient or as required by law. 45

46 What Does This All Mean To Me? Never send ephi to anyone unless you have verified who will receive the information and how the information will be used. If it doesn t seem right to you, it probably isn t. Protect yourself and the hospital by verifying the information. Use the callback method. This gives you a few minutes to think about the validity of the request and to verify that the caller and location you are sending the information to is indeed correct. Use and internet services in the proper manner. 46

47 What Does This All Mean To Me? Violations can also result in personal civil penalties of up to $25,000 per person and criminal penalties of up to $250,000 and/or 10 years in prison. Violations of confidentiality and privacy policies can result in disciplinary action up to and including discharge. If you know of any violation of our existing confidentiality policies or the Privacy Policy, it is your obligation to bring the violation to the attention of your supervisor, compliance representative, Privacy Officer or Compliance Officer. Treat patient information as you would your own! Compliance is the responsibility of every employee! 47

48 Questions? 48

49 Questions? Heather McAllister, Compliance Officer Direct Line (989) Hot Line (989)

Privacy for Beginners: What Every Healthcare Worker Needs to Know About HIPAA and Privacy

Privacy for Beginners: What Every Healthcare Worker Needs to Know About HIPAA and Privacy Privacy for Beginners: What Every Healthcare Worker Needs to Know About HIPAA and Privacy What is HIPAA? Health Insurance Portability and Accountability Act (HIPAA) is broad federal legislation that includes

More information

Prepared by: The Office of Corporate Compliance & HIPAA Administration

Prepared by: The Office of Corporate Compliance & HIPAA Administration Gwinnett Health System s Annual Education 2014 Corporate Compliance: Our Commitment to Excellence Prepared by: The Office of Corporate Compliance & HIPAA Administration Objectives After completing this

More information

Fraud Waste and Abuse Training First Tier, Downstream and Related Entities. ONECare by Care1st Health Plan Arizona, Inc. (HMO) Revised: 10/2009

Fraud Waste and Abuse Training First Tier, Downstream and Related Entities. ONECare by Care1st Health Plan Arizona, Inc. (HMO) Revised: 10/2009 Fraud Waste and Abuse Training First Tier, Downstream and Related Entities ONECare by Care1st Health Plan Arizona, Inc. (HMO) Revised: 10/2009 Overview Purpose Care1st/ ONECare Compliance Program Definitions

More information

Evergreen Solar, Inc. Code of Business Conduct and Ethics

Evergreen Solar, Inc. Code of Business Conduct and Ethics Evergreen Solar, Inc. Code of Business Conduct and Ethics A MESSAGE FROM THE BOARD At Evergreen Solar, Inc. (the Company or Evergreen Solar ), we believe that conducting business ethically is critical

More information

PHI Air Medical, L.L.C. Compliance Plan

PHI Air Medical, L.L.C. Compliance Plan Page No. 1 of 13 Introduction: The PHI Air Medical, L.L.C. is to be used by employees, contractors and vendors to get a high level understanding of the key regulatory requirements relating to our participation

More information

The University of Toledo. Corporate Compliance and HIPAA Training

The University of Toledo. Corporate Compliance and HIPAA Training Disclaimer This document is not intended to be copied, reproduced, altered, or disseminated for training purposes on the departmental level. It is only intended to be used as a resource. ALL HIPAA training

More information

Compliance Training for Medicare Programs Version 1.0 2/22/2013

Compliance Training for Medicare Programs Version 1.0 2/22/2013 Compliance Training for Medicare Programs Version 1.0 2/22/2013 Independence Blue Cross is an independent licensee of the Blue Cross and Blue Shield Association. 1 The Compliance Program Setting standards

More information

What is a Compliance Program?

What is a Compliance Program? Course Objectives Learn about the most important elements of the compliance program; Increase awareness and effectiveness of our compliance program; Learn about the important laws and what the government

More information

Code of Conduct. 3. SCOPE: All PHI Air Medical Personnel

Code of Conduct. 3. SCOPE: All PHI Air Medical Personnel Page No. 1 of 8 1. POLICY: This policy defines the commitment that PHI Air Medical, L.L.C (PHI Air Medical) has to conducting our activities in full compliance with all federal, state and local laws. Our

More information

13.4 PHI Air Medical Code of Conduct

13.4 PHI Air Medical Code of Conduct I. PURPOSE PHI Air Medical continually strives to provide high quality emergency care and medical transportation services to our patients, and to maintain high standards of integrity in our dealings with

More information

Hope In-Home Care CODE OF CONDUCT AND ETHICS

Hope In-Home Care CODE OF CONDUCT AND ETHICS Hope In-Home Care CODE OF CONDUCT AND ETHICS September 2014 Table of Contents A MESSAGE FROM OUR DIRECTOR... 3 INTRODUCTION TO THE CODE OF CONDUCT AND ETHICS... 4 ELEMENT 1: QUALITY OF CARE... 5 ELEMENT

More information

2012-2013 MEDICARE COMPLIANCE TRAINING EMPLOYEES & FDR S. 2012 Revised

2012-2013 MEDICARE COMPLIANCE TRAINING EMPLOYEES & FDR S. 2012 Revised 2012-2013 MEDICARE COMPLIANCE TRAINING EMPLOYEES & FDR S 2012 Revised 1 Introduction CMS Requirements As of January 1, 2011, Federal Regulations require that Medicare Advantage Organizations (MAOs) and

More information

HIPAA Privacy & Security Training for Clinicians

HIPAA Privacy & Security Training for Clinicians HIPAA Privacy & Security Training for Clinicians Agenda This training will cover the following information: Overview of Privacy Rule and Security Rules Using and disclosing Protected Health Information

More information

Medicare (Pioneer) Accountable Care Organization. Annual Compliance Training

Medicare (Pioneer) Accountable Care Organization. Annual Compliance Training Medicare (Pioneer) Accountable Care Organization Annual Compliance Training Overview While health care professionals have long been concerned about patient safety, increased public awareness and transparency

More information

CODE OF CONDUCT I. POLICY

CODE OF CONDUCT I. POLICY CODE OF CONDUCT American Ambulance continually strives to provide high quality emergency care and medical transportation services to our patients, and to maintain high standards of integrity in our dealings

More information

Fraud Waste and Abuse Training First Tier, Downstream and Related Entities

Fraud Waste and Abuse Training First Tier, Downstream and Related Entities Fraud Waste and Abuse Training First Tier, Downstream and Related Entities Revised: 04/2010 OVERVIEW Centene Corporation Purpose Bridgeway Compliance Program Definitions of Fraud Waste & Abuse Laws and

More information

I. Introduction. 1919 Madison Avenue, New York, NY 10035 tel: 212-987-1777 toll free: 866-778-6827 fax: 212-987-1776

I. Introduction. 1919 Madison Avenue, New York, NY 10035 tel: 212-987-1777 toll free: 866-778-6827 fax: 212-987-1776 I. Introduction The Ralph Lauren Center for Cancer Care ( RLCCC or The Center ) operates a freestanding diagnostic and treatment center, licensed under Article 28 of the New York State health law, located

More information

Administrative Policy and Procedure Manual. Code of Conduct Effective Date: 1/2005 Scope: Organizationwide Page 1 of 9

Administrative Policy and Procedure Manual. Code of Conduct Effective Date: 1/2005 Scope: Organizationwide Page 1 of 9 Scope: Organizationwide Page 1 of 9 I. Purpose The purpose of this policy is to provide direction to staff members to assist in carrying out daily activities within appropriate ethical and legal standards.

More information

HIPAA AND COMPLIANCE

HIPAA AND COMPLIANCE HIPAA AND COMPLIANCE LEARNING MODULE #2 For Clinical Students and Instructors HWCA- South Central- Southwest Member Clinical Sites HEALTH CARE WORKFORCE ALLIANCE Revised August 2011 Objectives 2 At the

More information

HIPAA and Privacy Policy Training

HIPAA and Privacy Policy Training HIPAA and Privacy Policy Training July 2015 1 This training addresses the requirements for maintaining the privacy of confidential information received from HFS and DHS (the Agencies). During this training

More information

CODE OF CONDUCT. Our commitment to ethical conduct and compliance depends on all UHS personnel.

CODE OF CONDUCT. Our commitment to ethical conduct and compliance depends on all UHS personnel. CODE OF CONDUCT Our commitment to ethical conduct and compliance depends on all UHS personnel. If you find yourself in an ethical dilemma or suspect inappropriate or illegal conduct, discuss it with your

More information

Reports of Compliance Concerns and Violations

Reports of Compliance Concerns and Violations The University of Chicago Medical Center Compliance Manual (UCHHS;BSD;UCPP) Reports of Compliance Concerns and Violations Issued: November 1, 1999 Reports of Compliance Concerns and Violations Revised:

More information

Annual Compliance Training. HITECH/HIPAA Refresher

Annual Compliance Training. HITECH/HIPAA Refresher Annual Compliance Training HITECH/HIPAA Refresher January 2015 Sisters of Charity of Leavenworth Health System, Inc. All rights reserved. 1 Annual Refresher Training Welcome to the SCL Health System Compliance

More information

HIPAA: Privacy/Info Security

HIPAA: Privacy/Info Security HIPAA: Privacy/Info Security Jeff Jones HIPAA Privacy Officer HIPAA Information Security Officer KY Region What you should know Discussion Topics Protected Health Security Awareness Information(PHI) Disclosure

More information

INDIANA UNIVERSITY SCHOOL OF OPTOMETRY HIPAA COMPLIANCE PLAN TABLE OF CONTENTS. I. Introduction 2. II. Definitions 3

INDIANA UNIVERSITY SCHOOL OF OPTOMETRY HIPAA COMPLIANCE PLAN TABLE OF CONTENTS. I. Introduction 2. II. Definitions 3 INDIANA UNIVERSITY SCHOOL OF OPTOMETRY HIPAA COMPLIANCE PLAN TABLE OF CONTENTS I. Introduction 2 II. Definitions 3 III. Program Oversight and Responsibilities 4 A. Structure B. Compliance Committee C.

More information

WHAT IS A COMPLIANCE PLAN

WHAT IS A COMPLIANCE PLAN Code of Conduct WHAT IS A COMPLIANCE PLAN AND CODE OF CONDUCT? The Compliance Plan and Code of Conduct are formal statements of EPIC s standards and rules of ethical business conduct. We need a Compliance

More information

HIPAA Compliance for Students

HIPAA Compliance for Students HIPAA Compliance for Students The Health Insurance Portability and Accountability Act (HIPAA) was passed in 1996 by the United States Congress. It s intent was to help people obtain health insurance benefits

More information

Fraud, Waste & Abuse. Training Course for UHCG Employees

Fraud, Waste & Abuse. Training Course for UHCG Employees Fraud, Waste & Abuse Training Course for UHCG Employees Overview The Centers for Medicare & Medicaid Services (CMS) require Medicare Advantage Organizations and Part D Plan Sponsors to provide annual fraud,

More information

VCU HEALTH SYSTEM Compliance Program. Updated August 2015

VCU HEALTH SYSTEM Compliance Program. Updated August 2015 VCU HEALTH SYSTEM Compliance Program Updated August 2015 Table of Contents Section I. Purpose of the Compliance Program... 3 Section II. Elements of an Effective Compliance Program... 3 A. Written Policies

More information

Memo. Professional Accounts, LLC. Corporate Compliance Program

Memo. Professional Accounts, LLC. Corporate Compliance Program Professional Accounts, LLC Memo To: All Employees and Vendors From: Lee Frans, Executive Director Date: April 2, 2012 Re: Corporate Compliance Program Our mission as an organization has been to deliver

More information

Department of Health and Human Services Policy ADMN 004, Attachment A

Department of Health and Human Services Policy ADMN 004, Attachment A WASHINGTON COUNTY Department of Health and Human Services Policy ADMN 004, Attachment A HHS Confidentiality Agreement Including HIPAA (Health Information Portability and Accessibility Act of 1996) OREGON

More information

HEALTH INSURANCE PORTABILITY & ACCOUNTABILITY ACT OF 1996 HIPAA

HEALTH INSURANCE PORTABILITY & ACCOUNTABILITY ACT OF 1996 HIPAA TRAINING MANUAL HEALTH INSURANCE PORTABILITY & ACCOUNTABILITY ACT OF 1996 HIPAA Table of Contents INTRODUCTION 3 What is HIPAA? Privacy Security Transactions and Code Sets What is covered ADMINISTRATIVE

More information

CODE OF CONDUCT. Providers, Suppliers and Contractors

CODE OF CONDUCT. Providers, Suppliers and Contractors CODE OF CONDUCT Providers, Suppliers and Contractors Table of Contents Code of Conduct... Honesty and integrity... Quality and Service... Responsibilities of Providers, Suppliers and Contractors... Compliance

More information

HIPAA Orientation. Health Insurance Portability and Accountability Act

HIPAA Orientation. Health Insurance Portability and Accountability Act HIPAA Orientation Health Insurance Portability and Accountability Act HIPAA Federal legislation enacted in 1996 to improve the efficiency and effectiveness of electronic information transfers used in the

More information

Standards of. Conduct. Important Phone Number for Reporting Violations

Standards of. Conduct. Important Phone Number for Reporting Violations Standards of Conduct It is the policy of Security Health Plan that all its business be conducted honestly, ethically, and with integrity. Security Health Plan s relationships with members, hospitals, clinics,

More information

Puerto Rican Family Institute, Inc.

Puerto Rican Family Institute, Inc. Puerto Rican Family Institute, Inc. Stronghold for Families, a Pathfinder for Children Corporate Compliance Program Plan - 2014 Updated by: Approved by: Yolanda Alicea Winn, LCSWR Vice President/Corporate

More information

* SAMPLE * COMPLIANCE PROGRAM GROUP PRACTICE

* SAMPLE * COMPLIANCE PROGRAM GROUP PRACTICE [NOTE: This is a sample compliance plan based on OIG Compliance Program Guidance. Groups should modify it as appropriate to fit their circumstances] * SAMPLE * COMPLIANCE PROGRAM GROUP PRACTICE (Revised

More information

HIPAA Education Level One For Volunteers & Observers

HIPAA Education Level One For Volunteers & Observers UK HealthCare HIPAA Education Page 1 September 1, 2009 HIPAA Education Level One For Volunteers & Observers ~ What does HIPAA stand for? H Health I Insurance P Portability A And Accountability A - Act

More information

Health Insurance Portability and Accountability Act (HIPAA)

Health Insurance Portability and Accountability Act (HIPAA) Health Insurance Portability and Accountability Act (HIPAA) General Education Presented by: Bureau of Personnel Department of Health Department of Human Services Department of Social Services Bureau of

More information

To: All Vendors, Agents and Contractors of Hutchinson Regional Medical Center

To: All Vendors, Agents and Contractors of Hutchinson Regional Medical Center To: All Vendors, Agents and Contractors of Hutchinson Regional Medical Center From: Corporate Compliance Department Re: Deficit Reduction Act of 2005 Dear Vendor/Agent/Contractor: Under the Deficit Reduction

More information

U.S. CORPORATE ETHICS AND COMPLIANCE POLICY

U.S. CORPORATE ETHICS AND COMPLIANCE POLICY U.S. CORPORATE ETHICS AND COMPLIANCE POLICY Table of Contents Page 1. Letter from the President & CEO 3 2. Introduction 4 3. How to Handle and Report Ethical and/or Compliance Issues 5 3.1 Violations of

More information

AppleCare. 2013 General Compliance Training

AppleCare. 2013 General Compliance Training AppleCare 2013 General Compliance Training Goals After completing this course, you will understand: The Principles of Ethics and Integrity and the Compliance Plan How to report a suspected or detected

More information

General Compliance. General Compliance Training. Course Overview. General Compliance. The intent of the Compliance Program is to:

General Compliance. General Compliance Training. Course Overview. General Compliance. The intent of the Compliance Program is to: General Compliance Training General Compliance Training i The University of Texas Medical Branch at Galveston Course Overview General Compliance The intent of the Compliance Program is to: Promote compliance

More information

MEDICAID COMPLIANCE POLICY

MEDICAID COMPLIANCE POLICY 6232 MEDICAID COMPLIANCE POLICY It is the policy of the Board of Education that all school district s practices regarding Medicaid claims for services be in compliance with all applicable federal and state

More information

HIPAA Awareness Training

HIPAA Awareness Training New York State Office of Mental Health Bureau of Education and Workforce Development HIPAA Awareness Training This training material was prepared for internal use by the New York State Office of Mental

More information

I. Policy Purpose. II. Policy Statement. III. Policy Definitions: RESPONSIBILITY:

I. Policy Purpose. II. Policy Statement. III. Policy Definitions: RESPONSIBILITY: POLICY NAME: POLICY SPONSOR: FRAUD, WASTE AND ABUSE COMPLIANCE OFFICER RESPONSIBILITY: EFFECTIVE DATE: REVIEW/ REVISED DATE: I. Policy Purpose The purpose of this policy is to outline the requirements

More information

Corporate Compliance and Ethics

Corporate Compliance and Ethics Corporate Compliance and Ethics Title: Corporate Compliance and Ethics Course Code: EL-CCE-COMP-0 Course Outline Section 1: Introduction A. Course Contributors B. About This Course C. Learning Objectives

More information

Privacy and Information Security Awareness Training. Health Insurance Portability & Accountability Act of 1996 -- HIPAA

Privacy and Information Security Awareness Training. Health Insurance Portability & Accountability Act of 1996 -- HIPAA Privacy and Information Security Awareness Training Health Insurance Portability & Accountability Act of 1996 -- HIPAA Objectives Understand basic HIPAA requirements Understand how the MCG Health System

More information

FWA Program. Program Description. Issued by: Regulatory Compliance Department

FWA Program. Program Description. Issued by: Regulatory Compliance Department FWA Program Program Description Issued by: Regulatory Compliance Department July 2016 2016 FWA Program Description Page 1 of 16 Table of Contents Introduction Introduction..3 Definitions 4 Examples..6

More information

Compliance, Code of Conduct & Ethics Program Cantex Continuing Care Network. Contents

Compliance, Code of Conduct & Ethics Program Cantex Continuing Care Network. Contents Compliance, Code of Conduct & Ethics Program Cantex Continuing Care Network Contents Compliance, Code of Conduct & Ethics Program 1 What is the CCCN Code of Conduct? 2 Operating Philosophies 2 Employee

More information

GENERAL COMPLIANCE TRAINING CIA YEAR ONE REVIEW AND CERTIFICATION

GENERAL COMPLIANCE TRAINING CIA YEAR ONE REVIEW AND CERTIFICATION GENERAL COMPLIANCE TRAINING CIA YEAR ONE REVIEW AND CERTIFICATION INTRODUCTION Supporting the mission and vision of Broward Health requires commitment to compliance, integrity and dedication to the highest

More information

HIPAA Privacy & Security Rules

HIPAA Privacy & Security Rules HIPAA Privacy & Security Rules HITECH Act Applicability If you are part of any of the HIPAA Affected Areas, this training is required under the IU HIPAA Privacy and Security Compliance Plan pursuant to

More information

ELEMENT FINANCIAL CORPORATION CODE OF BUSINESS CONDUCT AND ETHICS

ELEMENT FINANCIAL CORPORATION CODE OF BUSINESS CONDUCT AND ETHICS APPENDIX I ELEMENT FINANCIAL CORPORATION CODE OF BUSINESS CONDUCT AND ETHICS As of December 14, 2011 1. Introduction This Code of Business Conduct and Ethics ( Code ) has been adopted by our Board of Directors

More information

Integrity. Providence Integrity and Compliance Program Description

Integrity. Providence Integrity and Compliance Program Description Integrity and Compliance Description Approved by the Audit Committee of the Providence Health & Services Board of Directors December 9, 2014 Contents: Introduction Page 1 Purpose Page 2 Compliance Administration

More information

Business Conduct, Compliance and Ethics Program. important

Business Conduct, Compliance and Ethics Program. important Business Conduct, Compliance and Ethics Program important Table of Contents Letter from Troy Kirchenbauer As healthcare s first online direct contracting market, aptitude is committed to upholding the

More information

Health Insurance Portability and Accountability Act of 1996 (HIPAA)

Health Insurance Portability and Accountability Act of 1996 (HIPAA) HIPAA Privacy Rule Health Insurance Portability and Accountability Act of 1996 (HIPAA) Transactions Standards 1. Health claims 2. Health claim attachments 3. Healthcare payment and remittance advice 4.

More information

MSO/IPA Compliance Program

MSO/IPA Compliance Program MSO/IPA Compliance Program PROSPECT MEDICAL HOLDINGS, INC. MSO/IPA COMPLIANCE PROGRAM Coverage The terms of the Compliance Program set forth herein shall apply to, and govern, the medical group business

More information

USC Office of Compliance

USC Office of Compliance PURPOSE This policy complies with requirements under the Deficit Reduction Act of 2005 and other federal and state fraud and abuse laws. It provides guidance on activities that could result in incidents

More information

HIPAA PRIVACY AND SECURITY TRAINING P I E D M O N T COMMUNITY H EA LT H P L A N

HIPAA PRIVACY AND SECURITY TRAINING P I E D M O N T COMMUNITY H EA LT H P L A N HIPAA PRIVACY AND SECURITY TRAINING P I E D M O N T COMMUNITY H EA LT H P L A N 1 COURSE OVERVIEW This course is broken down into 4 modules: Module 1: HIPAA Omnibus Rule - What you need to know to remain

More information

HIPAA TRAINING. A training course for Shiawassee County Community Mental Health Authority Employees

HIPAA TRAINING. A training course for Shiawassee County Community Mental Health Authority Employees HIPAA TRAINING A training course for Shiawassee County Community Mental Health Authority Employees WHAT IS HIPAA? HIPAA is an acronym that stands for Health Insurance Portability and Accountability Act.

More information

California Mutual Insurance Company Code of Business Conduct and Ethics

California Mutual Insurance Company Code of Business Conduct and Ethics California Mutual Insurance Company Code of Business Conduct and Ethics This Code of Business Conduct and Ethics (the Code ) applies to all officers, employees, and directors of California Mutual Insurance

More information

Mental Health Resources, Inc. Mental Health Resources, Inc. Corporate Compliance Plan Corporate Compliance Plan

Mental Health Resources, Inc. Mental Health Resources, Inc. Corporate Compliance Plan Corporate Compliance Plan Mental Health Resources, Inc. Mental Health Resources, Inc. Corporate Compliance Plan Corporate Compliance Plan Adopted: January 2, 2007 Revised by Board of Directors on September 4, 2007 Revised and Amended

More information

TM Nightingale. Home Healthcare. Fraud & Abuse: Prevention, Detection, & Reporting

TM Nightingale. Home Healthcare. Fraud & Abuse: Prevention, Detection, & Reporting Fraud & Abuse: Prevention, Detection, & Reporting What Is Fraud? Fraud is defined as making false statements or representations of facts to obtain benefit or payment for which none would otherwise exist.

More information

PROTECTING PATIENT PRIVACY and INFORMATION SECURITY

PROTECTING PATIENT PRIVACY and INFORMATION SECURITY PROTECTING PATIENT PRIVACY and INFORMATION SECURITY 2 PROTECTING PATIENT PRIVACY AND INFORMATION SECURITY PROTECTING PATIENT PRIVACY AND INFORMATION SECURITY 3 INTRODUCTION As an agency employee, student,

More information

HIPAA Privacy and Security. Rochelle Steimel, HIPAA Privacy Official Judy Smith, Staff Development January 2012

HIPAA Privacy and Security. Rochelle Steimel, HIPAA Privacy Official Judy Smith, Staff Development January 2012 HIPAA Privacy and Security Rochelle Steimel, HIPAA Privacy Official Judy Smith, Staff Development January 2012 Goals and Objectives Course Goal: To introduce the staff of Munson Healthcare to the concepts

More information

Approved by the Audit and Compliance Committee of the Providence Health & Services Board of Directors

Approved by the Audit and Compliance Committee of the Providence Health & Services Board of Directors Integrity and Compliance Description Approved by the Audit Committee of the Providence Health & Services Board of Directors December 7, 2009 Contents: Introduction Page 1 Purpose Page 2 Compliance Administration

More information

False Claims Act CMP212

False Claims Act CMP212 False Claims Act CMP212 Colorado Access is committed to a culture of compliance in which its employees, providers, contractors, and consultants are educated and knowledgeable about their role in reporting

More information

Patient Privacy and HIPAA/HITECH

Patient Privacy and HIPAA/HITECH Patient Privacy and HIPAA/HITECH What is HIPAA? Health Insurance Portability and Accountability Act of 1996 Implemented in 2003 Title II Administrative Simplification It s a federal law HIPAA is mandatory,

More information

Welcome to the University of Utah Health Sciences HIPAA Privacy and Security Training Program

Welcome to the University of Utah Health Sciences HIPAA Privacy and Security Training Program Welcome to the University of Utah Health Sciences HIPAA Privacy and Security Training Program You cannot have Privacy without Security. Requirements of All UUHS Workforce Members ALL University of Utah

More information

THE FCA INSPECTOR GENERAL: A COMMITMENT TO PUBLIC SERVICE

THE FCA INSPECTOR GENERAL: A COMMITMENT TO PUBLIC SERVICE THE FCA INSPECTOR GENERAL: A COMMITMENT TO PUBLIC SERVICE FORWARD I am pleased to introduce the mission and authorities of the Office of Inspector General for the Farm Credit Administration. I hope this

More information

HIPAA Privacy & Security Health Insurance Portability and Accountability Act

HIPAA Privacy & Security Health Insurance Portability and Accountability Act HIPAA Privacy & Security Health Insurance Portability and Accountability Act ASSOCIATE EDUCATION St. Elizabeth Medical Center Origin and Purpose of HIPAA In 2003, Congress enacted new rules that would

More information

Privacy and Security For Managers

Privacy and Security For Managers Privacy and Security For Managers This self directed learning module contains information all CHS Teammates are expected to know in order to protect our patients, our guests, and ourselves. Target Audience:

More information

The Basics of HIPAA Privacy and Security and HITECH

The Basics of HIPAA Privacy and Security and HITECH The Basics of HIPAA Privacy and Security and HITECH Protecting Patient Privacy Disclaimer The content of this webinar is to introduce the principles associated with HIPAA and HITECH regulations and is

More information

Compliance Plan. Table of Contents

Compliance Plan. Table of Contents Compliance Plan Compliance Plan Table of Contents Introduction... 3 Administrative Structure... 4 A. CorporateCompliance Officer... 4 B. Compliance Committee... 5 C. Hospital Compliance Officer..6 Communications...

More information

Fraud, Waste and Abuse Prevention Training

Fraud, Waste and Abuse Prevention Training Fraud, Waste and Abuse Prevention Training The Centers for Medicare & Medicaid Services (CMS) requires annual fraud, waste and abuse training for organizations providing health services to MA or Medicare

More information

HIPAA Employee Training Guide. Revision Date: April 11, 2015

HIPAA Employee Training Guide. Revision Date: April 11, 2015 HIPAA Employee Training Guide Revision Date: April 11, 2015 What is HIPAA? The Health Insurance Portability and Accountability Act of 1996 (also known as Kennedy- Kassebaum Act ). HIPAA regulations address

More information

HIPAA PRIVACY POLICIES & PROCEDURES. Department of Behavioral Health and Developmental Services DBHHDS GENERAL AWARENESS TRAINING

HIPAA PRIVACY POLICIES & PROCEDURES. Department of Behavioral Health and Developmental Services DBHHDS GENERAL AWARENESS TRAINING HIPAA PRIVACY POLICIES & PROCEDURES Department of Behavioral Health and Developmental Services DBHHDS GENERAL AWARENESS TRAINING March 2012 HIPAA Humor (North Dakota Dept of Health) 2 HIPAA-Ectomy - the

More information

HIPAA. Developed by The University of Texas at Dallas Callier Center for Communication Disorders

HIPAA. Developed by The University of Texas at Dallas Callier Center for Communication Disorders HIPAA Developed by The University of Texas at Dallas Callier Center for Communication Disorders Purpose of this training Everyone with access to Protected Health Information (PHI) must comply with HIPAA

More information

Why Lawyers? Why Now?

Why Lawyers? Why Now? TODAY S PRESENTERS Why Lawyers? Why Now? New HIPAA regulations go into effect September 23, 2013 Expands HIPAA safeguarding and breach liabilities for business associates (BAs) Lawyer is considered a business

More information

Healthcare Compliance and Hybrid Entity Designation

Healthcare Compliance and Hybrid Entity Designation [New OP initial posting 8/28/14] Operating Policy and Procedure : Healthcare Compliance and Hybrid Entity Designation DATE: August 28, 2014 PURPOSE: The purpose of this Texas Tech Operating Policy and

More information

Clinician s Guide to HIPAA Privacy. I. Introduction What is HIPAA? Health Information Privacy Protected Health Information

Clinician s Guide to HIPAA Privacy. I. Introduction What is HIPAA? Health Information Privacy Protected Health Information Clinician s Guide to HIPAA Privacy I. Introduction What is HIPAA? Health Information Privacy Protected Health Information II. HIPAA s Impact On Clinical Practice, Treatment, Referrals And Payment How is

More information

Compliance Program and HIPAA Training For First Tier, Downstream and Related Entities

Compliance Program and HIPAA Training For First Tier, Downstream and Related Entities Compliance Program and HIPAA Training For First Tier, Downstream and Related Entities 09/2011 Training Goals In this training you will gain an understanding of: Our Compliance Program elements Pertinent

More information

HIPAA In The Workplace. What Every Employee Should Know and Remember

HIPAA In The Workplace. What Every Employee Should Know and Remember HIPAA In The Workplace What Every Employee Should Know and Remember What is HIPAA? The Health Insurance Portability and Accountability Act of 1996 Portable Accountable Rules for Privacy Rules for Security

More information

SELF-LEARNING MODULE (SLM) 2012 HIPAA Education Privacy Basics and Intermediate Modules

SELF-LEARNING MODULE (SLM) 2012 HIPAA Education Privacy Basics and Intermediate Modules SELF-LEARNING MODULE (SLM) 2012 HIPAA Education Privacy Basics and Intermediate Modules Page 2 Index Privacy 101 and Intermediate Privacy Self-Learning Module 2012 HIPAA Education 3 Instructions Index

More information

SAINT FRANCIS HEALTHCARE PARTNERS ACO, INC. CORPORATE COMPLIANCE PLAN. Adopted by Resolution of the Board of Directors on June 24, 2014

SAINT FRANCIS HEALTHCARE PARTNERS ACO, INC. CORPORATE COMPLIANCE PLAN. Adopted by Resolution of the Board of Directors on June 24, 2014 SAINT FRANCIS HEALTHCARE PARTNERS ACO, INC. CORPORATE COMPLIANCE PLAN Adopted by Resolution of the Board of Directors on June 24, 2014 TABLE OF CONTENTS PAGE CORPORATE COMPLIANCE PLAN... 1 MISSION STATEMENT

More information

Louisiana Department of Health and Hospitals Basic HIPAA Privacy Training: Policies and Procedures

Louisiana Department of Health and Hospitals Basic HIPAA Privacy Training: Policies and Procedures Louisiana Department of Health and Hospitals Basic HIPAA Privacy Training: Policies and Procedures 1 What Is HIPAA? HIPAA (pronounced hippa) is a federal law. It s a set of rules and regulations that affect

More information

HPC Healthcare, Inc. Administrative/Operational Policy and Procedure Manual

HPC Healthcare, Inc. Administrative/Operational Policy and Procedure Manual Operational and Procedure Manual 1 of 7 Subject: Corporate Compliance Plan Originating Department Quality & Compliance Effective Date 1/99 Administrative Approval Review/Revision Date(s) 6/00, 11/99, 2/02,

More information

Privacy Training for Harvard Medical Students

Privacy Training for Harvard Medical Students HIPAA Training: i Ensuring Privacy for our Patients Privacy Training for Harvard Medical Students Goals By the end of this program you will be able to Explain the basic principles of the Privacy Rule Understand

More information

Title: False Claims Act & Whistleblower Protection Information and Education

Title: False Claims Act & Whistleblower Protection Information and Education Care Initiatives Policy and Procedure Title: False Claims Act & Whistleblower Protection Information and Education Version Number Implemented By Revision Date Approved By Approval Date Initial Compliance

More information

Code of Conduct. martinhealth.org

Code of Conduct. martinhealth.org Code of Conduct martinhealth.org CODE OF CONDUCT Table of Contents A Note from the CEO 1 Mission Statement 2 Vision Statement 2 ICARE Values 2 The Corporate Compliance Program 3 Introduction 3 Corporate

More information

Health Management Annual Compliance Training

Health Management Annual Compliance Training Health Management Annual Compliance Training 2011 1 Introduction Welcome to 2011 Annual Compliance Training! The purpose of Annual Compliance Training is to: 1. Remind all associates of the elements of

More information

Health Sciences Compliance Plan

Health Sciences Compliance Plan INDIANA UNIVERSITY Health Sciences Compliance Plan 12.18.2014 approved by University Clinical Affairs Council Table of Contents Health Sciences Compliance Plan I. INTRODUCTION... 2 II. SCOPE... 2 III.

More information

UNIVERSAL INSURANCE HOLDINGS, INC. CODE OF BUSINESS CONDUCT AND ETHICS. Revised as of March 3, 2014

UNIVERSAL INSURANCE HOLDINGS, INC. CODE OF BUSINESS CONDUCT AND ETHICS. Revised as of March 3, 2014 I. Statement of Policy UNIVERSAL INSURANCE HOLDINGS, INC. CODE OF BUSINESS CONDUCT AND ETHICS Revised as of March 3, 2014 Universal Insurance Holdings, Inc. ( UIH ) and its subsidiaries (collectively,

More information

Medicare Advantage and Part D Fraud, Waste, and Abuse Training. October 2010

Medicare Advantage and Part D Fraud, Waste, and Abuse Training. October 2010 Medicare Advantage and Part D Fraud, Waste, and Abuse Training October 2010 Introduction 2008: United States spent $2.3 trillion on health care. Federal fiscal year 2010: Medicare expected to cover an

More information

Tax-Exempt Organizations Alert: Whistleblower Policies

Tax-Exempt Organizations Alert: Whistleblower Policies Tax-Exempt Organizations Alert: Whistleblower Policies Form 990, the annual information return form filed by public charities and other tax-exempt organizations, asks nonprofit organizations to state whether

More information

2014 Core Training 1

2014 Core Training 1 2014 Core Training 1 Course Agenda Review of Key Privacy Laws/Regulations: Federal HIPAA/HITECH regulations State privacy laws Privacy & Security Policies & Procedures Huntsville Hospital Health System

More information

TJ RAI, M.D. THERAPY MEDICATION WELLNESS PRIVACY POLICY STATEMENT

TJ RAI, M.D. THERAPY MEDICATION WELLNESS PRIVACY POLICY STATEMENT PRIVACY POLICY STATEMENT Purpose: It is the policy of this Physician Practice that we will adopt, maintain and comply with our Notice of Privacy Practices, which shall be consistent with HIPAA and California

More information

LEARNING MODULE: HIPAA AND COMPLIANCE. For Clinical Students and Instructors Greater Green Bay Healthcare Alliance www.ggbha.org Updated June 27, 2014

LEARNING MODULE: HIPAA AND COMPLIANCE. For Clinical Students and Instructors Greater Green Bay Healthcare Alliance www.ggbha.org Updated June 27, 2014 LEARNING MODULE: HIPAA AND COMPLIANCE For Clinical Students and Instructors Greater Green Bay Healthcare Alliance www.ggbha.org Updated June 27, 2014 This learning module must be reviewed by students and

More information

HIPAA Training: Ensuring Privacy for our Patients

HIPAA Training: Ensuring Privacy for our Patients HIPAA Training: Ensuring Privacy for our Patients The purpose of the HIPAA Privacy Rule is to prevent inappropriate use and disclosure of individual health information, most commonly referred to as protected

More information

HIPAA Happenings in Hospital Systems. Donna J Brock, RHIT System HIM Audit & Privacy Coordinator

HIPAA Happenings in Hospital Systems. Donna J Brock, RHIT System HIM Audit & Privacy Coordinator HIPAA Happenings in Hospital Systems Donna J Brock, RHIT System HIM Audit & Privacy Coordinator HIPAA Health Insurance Portability and Accountability Act of 1996 Title 1 Title II Title III Title IV Title

More information