Request for Proposal. Integration System

Size: px
Start display at page:

Download "Request for Proposal. Integration System"

Transcription

1 Request for Proposal Integration System July 8, 2015

2 Introduction and Executive Summary The Hawai i Health Information Exchange (Hawai i HIE) is a 501(c)(3) non- profit established in 2006 by leading health care stakeholders in Hawai i for the purpose of improving health care delivery throughout the state through seamless, effective, and safe health information exchange. In September 2009, Hawai i HIE was designated by the state to develop and implement a statewide health information exchange that will ultimately feed into the national health information network. Hawai i HIE has a strong and representative composition of broad stakeholders who are determined to transform the current state of healthcare in Hawai i into one that coordinates care, reduces costs (for patients and providers), addresses the needs of the aging population, and encourages patients to take a more proactive approach to their care. Currently, Hawai i HIE purchases interfaces from its Electronic Health Record (EHR) vendor Medicity, and uses it to connect between Medicity and the target vendor for another hospital, health system, ambulatory clinic or client s EHR system. These interfaces are customized from the sending point to the receiving point and may be one- directional or bi- directional. With an Interface Integration Engine in place at Hawai i HIE, we will be able to leverage some of these individual interfaces and instead of purchasing multiple interfaces to support different use cases, we will be able to clone the single input message, and depending on the requirements, translate and or transform the messages from the single input data stream to multiple output and different destinations Hawai i HIE has developed this request for proposal (RFP) for the purpose of seeking a vendor to provide such an Interface Integration engine. By using an interface engine, health providers can leverage the added capabilities and realize the benefits of existing legacy information systems without major re- investment in new technologies, lowering costs and extending the life and efficiencies of current systems. Page 2 of 6

3 A. Business Overview & Background Hawai i HIE provides health information exchange (HIE) services to health care providers and other HIPAA covered entities throughout the State of Hawaii, and in other U.S. Pacific territories, in its role as the State s designated entity to establish HIE within this geographic scope. In this role, Hawai i HIE is administering computing systems related to its Health enet suite of services that are used to exchange and store PHI. B. Interface Integration Engine System Criteria The system should: 1. Leverage disparate data sources, including labs, hospitals and health systems for different output through secure connection, with reliable, real- time or batch message delivery. 2. Be high performance, with the ability to translate, transform and re- queue messages processed. 3. Provide an embedded backup mechanism that can perform configurable full and incremental backups. 4. Provide a mechanism for remote, web- based monitoring. 5. Provide a versatile graphical user interface for creating and editing interface instances and managing engine configuration. 6. Support industry- standard communication and data transport protocols for connectivity of interfaces and delivery of messages through user interface. 7. Provide message filters used to modify messages. 8. Provide full user control to determine the direction and flow of messages through the route to delivery end- point(s). 9. Ability to search, read, and manipulate message data for testing, trouble- shooting and re- queuing through an efficient user- interface. Page 3 of 6

4 10. Ability to create the definition of the EDI messages being parsed or created and send out to end- points through one or more routes. 11. Provide field and content mapping translation and transformation within a message thread/route. 12. Provide predefined templates for common transformations required in different versions of HL7 messaging, including v2.3 and above. 13. Provide configurable user- managed lookup tables of databases/datasets which are embedded in the interface engine. 14. Provide the ability to receive and send through built- in web services and/or use external web services. 15. Provide role- based access control to configure and monitor the interface engine via a secure login and password. 16. Provide a message library of standard message definitions, including HL7, XML, CCD and EDI messages. 17. Provide advanced, automated functionality and alerts/notifications for managing and monitoring interface communications. 18. Allow system messages, interface alerts and other pertinent notifications to be sent to users via e- mail or via SMS (text message) or other communication routes. C. Candidate Minimum Qualifications Candidates shall: 1. Have experience working with health information systems (e.g. electronic health record systems, HIE systems); 2. Currently meet the requirements of HIPAA related to business associate subcontractors, as defined and specified in 45 CFR Subparts A through E, including: Have a formally designated privacy official/officer and security official/officer (one person may fulfill both roles); and Be ready, willing and able, in good faith, to enter into a subcontractor Page 4 of 6

5 business associate agreement with Hawaii HIE. Have business associate agreements in place with any downstream subcontractors with access to PHI; and Have written policies and procedures in place related to incident response and breach notification. 3. Have ability to provide Hawai i HIE secure hosting for the proposed Interface Integration system in facilities that have been audited to be in compliance with SSAE 16 standards Be able to provide current SOC 1 Type 2 and SOC 2 Type 2 reports upon request Page 5 of 6

6 D. Candidate Preferred Qualifications Candidates ideally will: 1. Have experience working with non- profit health care organizations; 2. Have experience working with health information organizations (HIO s), e.g. HIE s and/or regional health information organizations (RHIO s); and 3. Have experience integrating interfaces to Medicity ProAccess (version 5.x or later) system. E. Proposal Submission Criteria, Terms and Conditions Your proposal should be brief (less than thirty [30] pages) and must include: 1. Description of the Integration System you propose to provide Hawai i HIE, including details and diagrams on how you plan the meet Hawai i HIE s Interface Integration system criteria, including the system architecture in a hosting environment; 2. A cost proposal. Include all costs associated with the Integration system solution design, development, implementation, maintenance and hosting. Cost proposals should be itemized, with one- time and recurring costs/fees specified; 3. Biographical information of proposed key staff members; and 4. Two or more references, i.e. similar HIE Integration system customers. Please submit 5 paper copies in response to this RFP or acceptable electronic submissions. Acceptable electronic submissions will meet the following document file standards: 1. Must be in Microsoft Word format 2. File name must end with.doc or.docx All submissions for responding to this RFP must be submitted to Hawai i HIE s office, mailing/delivery addresses as follows: Mail: Hawai i Health Information Exchange Attention: Executive Director 900 Fort Street Mall, Suite 1305 Honolulu, Hawaii yjones@hawaiihie.org Page 6 of 6

7 All submissions must be postmarked, arrived via , or hand delivered no later than July 24, 2015 at 5 p.m. Hawaii time. Proposals will be evaluated immediately thereafter. During this time we may require interviews at our office or via conference call, on or about August 14, You will be notified if this is requested. F. Selection Process and Criteria Proposals that meet the mandatory requirements, as stated above, will be evaluated based on the following: 1. Suitability of the Proposal. The proposed solution meets the needs and criteria set forth in the RFP; 2. Suitability of the Proposed Interface Integration Engine. Candidate s system and services must meet regulatory and Hawai i HIE compliance program requirements; 3. Candidate Experience. Candidate has successfully completed similar projects and has the qualifications necessary to undertake this project; 4. Value/Pricing Structure and Price Levels. The price is commensurate with the value offered by the candidate. As a non- profit institution, Hawai i HIE is able to accept in- kind contributions to the full extent allowed by the Internal Revenue Service (26 USC 170), if such contributions are warranted and applicable; 5. Depth and Breadth of Staff. Candidate has appropriate staff to develop, implement, maintain and provide ongoing timely support to Hawai i HIE regarding the Privacy Breach Detection Services; and 6. Proposal Presentation. The information in the response to the RFP is presented in a clear, logical manner and is well organized. Upon receiving candidates submitted proposals: 1. Hawai i HIE expects to select the Integration/Interface Engine provider by September 4, Hawaii HIE expects to notify all other candidates of their non- selection on or before September 28, Negotiations regarding contract terms and conditions will begin immediately with the successful candidate upon selection, and should conclude no later than September 25, All contracts are subject to review by Hawai i HIE s legal counsel, management and committees chaired by members on the board of directors. Page 7 of 6

WEB SITE RE-DESIGN: REQUEST FOR QUOTATION www.hawaiihie.org

WEB SITE RE-DESIGN: REQUEST FOR QUOTATION www.hawaiihie.org Hawai i Health Information Exchange (Hawai i HIE) WEB SITE RE-DESIGN: REQUEST FOR QUOTATION www.hawaiihie.org Friday, September 6, 2013 QUOTATIONS DUE: Friday, September 20, 2013 at 5 p.m. HST OBJECTIVE:

More information

Pursuant to Competitive Contracting as per State Statute 40A:11-4.1

Pursuant to Competitive Contracting as per State Statute 40A:11-4.1 REQUEST FOR PROPOSAL FOR A Pursuant to Competitive Contracting as per State Statute 40A:11-4.1 GCIA Issue and Task Tracking Software Services GLOUCESTER COUNTY IMPROVEMENT AUTHORITY SUBMISSION DEADLINE

More information

REQUEST FOR INFORMATION (RFI) Health Interface Engine Solution

REQUEST FOR INFORMATION (RFI) Health Interface Engine Solution City of Philadelphia Department of Public Health 1401 JFK Blvd Suite 600 Philadelphia, PA 19102 REQUEST FOR INFORMATION (RFI) This document contains a Request for Information (RFI) for an interface engine

More information

Cooperative Educational Service Agency 2 1221 Innovation Drive, Suite 205 Whitewater, WI 53190 REQUEST FOR PROPOSAL CUSTOMER RELATIONSHIP MANAGEMENT

Cooperative Educational Service Agency 2 1221 Innovation Drive, Suite 205 Whitewater, WI 53190 REQUEST FOR PROPOSAL CUSTOMER RELATIONSHIP MANAGEMENT Cooperative Educational Service Agency 2 1221 Innovation Drive, Suite 205 Whitewater, WI 53190 REQUEST FOR PROPOSAL CUSTOMER RELATIONSHIP MANAGEMENT SEPTEMBER 4, 2014 Table of Contents 1. Summary... 3

More information

HITRUST CSF Assurance Program You Need a HITRUST CSF Assessment Now What?

HITRUST CSF Assurance Program You Need a HITRUST CSF Assessment Now What? HITRUST CSF Assurance Program You Need a HITRUST CSF Assessment Now What? Introduction This material is designed to answer some of the commonly asked questions by business associates and other organizations

More information

It s a New Regulatory Landscape: Do You Know Where Your Business Associates are and What They are Doing?

It s a New Regulatory Landscape: Do You Know Where Your Business Associates are and What They are Doing? It s a New Regulatory Landscape: Do You Know Where Your Business Associates are and What They are Doing? The AMC Privacy & Security Conference Series Securely Connecting Communities for Improved Health

More information

HIE Services & Pricing

HIE Services & Pricing Services Available at No Cost Health Information Exchange Services & Pricing Package Effective: December 11, 2015 0 Interface Connection Details Services Available at No Cost HealthlinkNY Web Portal The

More information

Business and Technical Description of Commercial Systems The scope of the technical solution is further described below.

Business and Technical Description of Commercial Systems The scope of the technical solution is further described below. Introduction MaxMD is pleased to provide the Pennsylvania ehealth Partnership Authority (Authority) the Business and Technical Requirements report under the Lab Grant pilot project. We have demonstrated

More information

The CITY OF OLIVETTE web site was originally designed and produced in in the late 1990 s and updated in 2011.

The CITY OF OLIVETTE web site was originally designed and produced in in the late 1990 s and updated in 2011. REQUEST FOR PROPOSAL WEB SITE DESIGN, DEVELOPMENT & HOSTING April 1, 2015 1. SUMMARY The CITY OF OLIVETTE, MISSOURI is accepting proposals to design, develop, and host the City s web site (www.olivettemo.com).

More information

HIPAA for HIT and EHRs. Latest on Meaningful Use and EHR Certification: For Privacy and Security Professionals

HIPAA for HIT and EHRs. Latest on Meaningful Use and EHR Certification: For Privacy and Security Professionals HIPAA for HIT and EHRs Latest on Meaningful Use and EHR Certification: For Privacy and Security Professionals Donald Bechtel, CHP Siemens Health Services Patient Privacy Officer Fair Information Practices

More information

Business Associates under HITECH: A Chain of Trust

Business Associates under HITECH: A Chain of Trust FAQ on InfoSafe Shredding Services: Frequently Asked Questions on InfoSafe Shredding Information And Video on One Time Cleanouts: Cleanouts and Purges Business Associates under HITECH: A Chain of Trust

More information

Policy #: HEN-005 Effective Date: April 4, 2012 Program: Hawai i HIE Revision Date: July 17, 2013 Approved By: Hawai i HIE Board of Directors

Policy #: HEN-005 Effective Date: April 4, 2012 Program: Hawai i HIE Revision Date: July 17, 2013 Approved By: Hawai i HIE Board of Directors TITLE: Access Management Policy #: Effective Date: April 4, 2012 Program: Hawai i HIE Revision Date: July 17, 2013 Approved By: Hawai i HIE Board of Directors Purpose The purpose of this policy is to describe

More information

HIPAA: Protecting Your. Ericka L. Adler. Practice and Your Patients

HIPAA: Protecting Your. Ericka L. Adler. Practice and Your Patients HIPAA: Protecting Your Ericka L. Adler Practice and Your Patients Rachel V. Rose Fallout from the Omnibus Rule Compliance strategies for medical practices 1. Know / manage your business associates and

More information

Florida HIE Gateway of Gateway Partners Readiness Questionnaire

Florida HIE Gateway of Gateway Partners Readiness Questionnaire Florida Health Information Exchange Patient Look-Up Service Gateway of Gateway Partners Questionnaire 6/24/2015 1 Table of Contents Introduction... 3 Florida Public Records Law... 4 General Information...

More information

HIPAA and HITECH Compliance for Cloud Applications

HIPAA and HITECH Compliance for Cloud Applications What Is HIPAA? The healthcare industry is rapidly moving towards increasing use of electronic information systems - including public and private cloud services - to provide electronic protected health

More information

HIE Services & Pricing

HIE Services & Pricing Services Available at No Cost Health Information Exchange Services & Pricing Package Services Available at No Cost Services Available at No Cost HealthlinkNY Web Portal The HealthlinkNY Web Portal is available

More information

TOP 10 Security Questions Introduction Breaches and other privacy and security incidents in healthcare are on the rise due to the vast size of the industry and the oneoffs of protected health information

More information

HIPAA Privacy Rule Policies

HIPAA Privacy Rule Policies DRAFT - Policies and Procedures PRIVACY OFFICE ASSIGNMENT AND RESPONSIBILITIES APPROVED BY: SUPERCEDES POLICY: Policy #1 ADOPTED: REVISED: REVIEWED: Purpose This policy is designed to assure the establishment

More information

MD Link Integration. 2013 2015 MDI Solutions Limited

MD Link Integration. 2013 2015 MDI Solutions Limited MD Link Integration 2013 2015 MDI Solutions Limited Table of Contents THE MD LINK INTEGRATION STRATEGY...3 JAVA TECHNOLOGY FOR PORTABILITY, COMPATIBILITY AND SECURITY...3 LEVERAGE XML TECHNOLOGY FOR INDUSTRY

More information

Request for Proposals: Using Electronic Data Standards to Communicate Laboratory Orders

Request for Proposals: Using Electronic Data Standards to Communicate Laboratory Orders Request for Proposals: Using Electronic Data Standards to Communicate Laboratory Orders Proposals Due: Tuesday, January 17, 2012 Summary Up to $300,000 is available to support six to eight pilot implementations

More information

BUSINESS ASSOCIATE AGREEMENT ( BAA )

BUSINESS ASSOCIATE AGREEMENT ( BAA ) BUSINESS ASSOCIATE AGREEMENT ( BAA ) Pursuant to the terms and conditions specified in Exhibit B of the Agreement (as defined in Section 1.1 below) between EMC (as defined in the Agreement) and Subcontractor

More information

Electronic Health Record System (EHR) Project. Request for Information RFI-CDVA-200907-01. Attachment 5 Statement of Work 2 Maintenance & Operations

Electronic Health Record System (EHR) Project. Request for Information RFI-CDVA-200907-01. Attachment 5 Statement of Work 2 Maintenance & Operations State of California DEPARTMENT OF VETERANS AFFAIRS Electronic Health Record System (EHR) Project Request for Information RFI-CDVA-200907-01 Attachment 5 Statement of Work 2 Maintenance & Operations STATEMENT

More information

A How-To Guide for Updating HIPAA Policies & Procedures to Align with ARRA Health Care Provider Edition Version 1

A How-To Guide for Updating HIPAA Policies & Procedures to Align with ARRA Health Care Provider Edition Version 1 A How-To Guide for Updating HIPAA Policies & Procedures to Align with ARRA Health Care Provider Edition Version 1 Policy and Procedure Templates Reflects modifications published in the Federal Register

More information

Health Record Banking Alliance White Paper

Health Record Banking Alliance White Paper Health Record Banking Alliance White Paper A Proposed National Infrastructure for HIE Using Personally Controlled Records January 4, 2013 Table of Contents Executive Summary...3 I. Overview...5 II. Architectural

More information

BUSINESS ASSOCIATE AGREEMENT. Recitals

BUSINESS ASSOCIATE AGREEMENT. Recitals BUSINESS ASSOCIATE AGREEMENT This Agreement is executed this 8 th day of February, 2013, by BETA Healthcare Group. Recitals BETA Healthcare Group consists of BETA Risk Management Authority (BETARMA) and

More information

Arizona Health Information Exchange Marketplace. Requirements and Specifications Health Information Service Provider (HISP)

Arizona Health Information Exchange Marketplace. Requirements and Specifications Health Information Service Provider (HISP) Arizona Health Information Exchange Marketplace Requirements and Specifications Health Information Service Provider (HISP) Table of Contents Table of Contents... 1 Introduction... 2 Purpose... 3 Scope...

More information

Information Technology General Controls Review (ITGC) Audit Program Prepared by:

Information Technology General Controls Review (ITGC) Audit Program Prepared by: Information Technology General Controls Review (ITGC) Audit Program Date Prepared: 2012 Internal Audit Work Plan Objective: IT General Controls (ITGC) address the overall operation and activities of the

More information

WASHINGTON STATE STATEWIDE HIE HUB APPENDIX D: VENDOR DEMONSTRATION OUTLINE

WASHINGTON STATE STATEWIDE HIE HUB APPENDIX D: VENDOR DEMONSTRATION OUTLINE WASHINGTON STATE STATEWIDE HIE HUB APPENDIX D: VENDOR DEMONSTRATION OUTLINE September 13, 2010 Virtual Vendor Demonstration Guidelines This document outlines what the vendor is asked to demo to the Scoring

More information

The following information should be completed by the ISSO and returned to the Contracting Officer.

The following information should be completed by the ISSO and returned to the Contracting Officer. National Institutes of Health (NIH) National Institute of Allergy and Infectious Diseases (NIAID) Office of Cyber Infrastructure and Computational Biology (OCICB) 5601 Fishers Lane, MSC 9812 Rockville,

More information

View the Replay on YouTube. Sustainable HIPAA Compliance: Enhancing Your Epic Reporting. FairWarning Executive Webinar Series October 17, 2013

View the Replay on YouTube. Sustainable HIPAA Compliance: Enhancing Your Epic Reporting. FairWarning Executive Webinar Series October 17, 2013 View the Replay on YouTube Sustainable HIPAA Compliance: Enhancing Your Epic Reporting FairWarning Executive Webinar Series October 17, 2013 Today s Panel Chris Arnold FairWarning VP of Product Management

More information

How To Write A Community Based Care Coordination Program Agreement

How To Write A Community Based Care Coordination Program Agreement Section 4.3 Implement Business Associate and Other Agreements This tool identifies the types of agreements that may be necessary for a community-based care coordination (CCC) program to have in place in

More information

ConnectVirginia EXCHANGE Onboarding and Certification Guide. Version 1.4

ConnectVirginia EXCHANGE Onboarding and Certification Guide. Version 1.4 ConnectVirginia EXCHANGE Onboarding and Certification Guide Version 1.4 July 18, 2012 CONTENTS 1 Overview... 5 2 Intended Audience... 5 3 ConnectVirginia Background... 5 3.1 Federated... 5 3.2 Secure...

More information

VISP Vendor Information Security Plan: A tool for IT and Institutions to evaluate third party vendor capacity and technology to protect research data

VISP Vendor Information Security Plan: A tool for IT and Institutions to evaluate third party vendor capacity and technology to protect research data VISP Vendor Information Security Plan: A tool for IT and Institutions to evaluate third party vendor capacity and technology to protect research data 1 Table of Contents Executive Summary... 3 Template

More information

BUSINESS ASSOCIATE ADDENDUM

BUSINESS ASSOCIATE ADDENDUM BUSINESS ASSOCIATE ADDENDUM This Business Associate Addendum ( Addendum ) adds to and is made a part of the Q- global Subscription and License Agreement by and between NCS Pearson, Inc. ( Business Associate

More information

Developers Integration Lab (DIL) System Architecture, Version 1.0

Developers Integration Lab (DIL) System Architecture, Version 1.0 Developers Integration Lab (DIL) System Architecture, Version 1.0 11/13/2012 Document Change History Version Date Items Changed Since Previous Version Changed By 0.1 10/01/2011 Outline Laura Edens 0.2

More information

Client Security Risk Assessment Questionnaire

Client Security Risk Assessment Questionnaire Select the appropriate answer from the drop down in the column, and provide a brief description in the section. 1 Do you have a member of your organization with dedicated information security duties? 2

More information

Iowa Health Information Network BUSINESS ASSOCIATE AGREEMENT

Iowa Health Information Network BUSINESS ASSOCIATE AGREEMENT Iowa Health Information Network BUSINESS ASSOCIATE AGREEMENT THIS BUSINESS ASSOCIATE AGREEMENT (the Agreement ) is made entered into and effective on the day of, 201_ ( Effective Date ) by and between

More information

HIPAA Breach Notification Policy

HIPAA Breach Notification Policy HIPAA Breach Notification Policy Purpose: To ensure compliance with applicable laws and regulations governing the privacy and security of protected health information, and to ensure that appropriate notice

More information

III. Services Required The following details the services to be provided to the Town of North Haven in the area of information services:

III. Services Required The following details the services to be provided to the Town of North Haven in the area of information services: TOWN OF NORTH HAVEN REQUEST FOR PROPOSALS INFORMATION TECHNOLOGY NETWORK SUPPORT SERVICES Issue Date: March 7, 2016 Due Date: 10:00 AM, Monday, March 28, 2016 I. Introduction The Town of North Haven is

More information

Interoperability: White Paper. Introduction. PointClickCare Interoperability - 2014. January 2014

Interoperability: White Paper. Introduction. PointClickCare Interoperability - 2014. January 2014 White Paper PointClickCare Interoperability - 2014 Interoperability: In healthcare, interoperability is where multiple technology platforms and software applications are able to connect, communicate, and

More information

District of Columbia Health Information Exchange Policy and Procedure Manual

District of Columbia Health Information Exchange Policy and Procedure Manual District of Columbia Health Information Exchange Policy and Procedure Manual HIPAA Privacy & Direct Privacy Policies (Version 1 November 27, 2012) Table of Contents Policy # Policy/Procedure Description

More information

REQUEST FOR PROPOSAL-INFORMATION TECHNOLOGY SUPPORT SERVICES

REQUEST FOR PROPOSAL-INFORMATION TECHNOLOGY SUPPORT SERVICES Isothermal Planning & Development Commission (IPDC) REQUEST FOR PROPOSAL-INFORMATION TECHNOLOGY SUPPORT SERVICES Proposals will be received by the IPDC for Information Technology Support Services. Interested

More information

Assessment Process. 2013 HITRUST, Frisco, TX. All Rights Reserved.

Assessment Process. 2013 HITRUST, Frisco, TX. All Rights Reserved. Assessment Process Assessment Process Define Scope The assessment scope gives context to the security controls and those organizations and individuals relying on the results Organization scope defines

More information

Security Is Everyone s Concern:

Security Is Everyone s Concern: Security Is Everyone s Concern: What a Practice Needs to Know About ephi Security Mert Gambito Hawaii HIE Compliance and Privacy Officer July 26, 2014 E Komo Mai! This session s presenter is Mert Gambito

More information

HIPAA SECURITY RISK ANALYSIS FORMAL RFP

HIPAA SECURITY RISK ANALYSIS FORMAL RFP HIPAA SECURITY RISK ANALYSIS FORMAL RFP ADDENDUM NUMBER: (2) August 1, 2012 THIS ADDENDUM IS ISSUED PRIOR TO THE ACCEPTANCE OF THE FORMAL RFPS. THE FOLLOWING CLARIFICATIONS, AMENDMENTS, ADDITIONS, DELETIONS,

More information

Prepared by: OIC OF SOUTH FLORIDA. May 2013

Prepared by: OIC OF SOUTH FLORIDA. May 2013 OIC OF SOUTH FLORIDA REQUEST FOR PROPOSAL INFORMATION TECHNOLOGY SUPPORT SERVICES Proposals will be received by OIC of South Florida for Information Technology Support Services. Interested vendors should

More information

Big Data, Big Risk, Big Rewards. Hussein Syed

Big Data, Big Risk, Big Rewards. Hussein Syed Big Data, Big Risk, Big Rewards Hussein Syed Discussion Topics Information Security in healthcare Cyber Security Big Data Security Security and Privacy concerns Security and Privacy Governance Big Data

More information

Enforcive / Enterprise Security

Enforcive / Enterprise Security TM Enforcive / Enterprise Security End to End Security and Compliance Management for the IBM i Enterprise Enforcive / Enterprise Security is the single most comprehensive and easy to use security and compliance

More information

HEAL NY Phase 5 Health IT RGA Section 7.1: HEAL NY Phase 5 Health IT Candidate Use Cases Interoperable EHR Use Case for Medicaid

HEAL NY Phase 5 Health IT RGA Section 7.1: HEAL NY Phase 5 Health IT Candidate Use Cases Interoperable EHR Use Case for Medicaid HEAL NY Phase 5 Health IT RGA Section 7.1: HEAL NY Phase 5 Health IT Candidate Use Cases Interoperable EHR Use Case for Medicaid Interoperable Electronic Health Records (EHRs) Use Case for Medicaid (Medication

More information

Information Protection Framework: Data Security Compliance and Today s Healthcare Industry

Information Protection Framework: Data Security Compliance and Today s Healthcare Industry Information Protection Framework: Data Security Compliance and Today s Healthcare Industry Executive Summary Today s Healthcare industry is facing complex privacy and data security requirements. The movement

More information

How To Use Ibm Tivoli Monitoring Software

How To Use Ibm Tivoli Monitoring Software Monitor and manage critical resources and metrics across disparate platforms from a single console IBM Tivoli Monitoring Highlights Help improve uptime and shorten Help optimize IT service delivery by

More information

Decrypting the Security Risk Assessment (SRA) Requirement for Meaningful Use

Decrypting the Security Risk Assessment (SRA) Requirement for Meaningful Use Click to edit Master title style Decrypting the Security Risk Assessment (SRA) Requirement for Meaningful Use Andy Petrovich, MHSA, MPH M-CEITA / Altarum Institute April 8, 2015 4/8/2015 1 1 Who is M-CEITA?

More information

SRA International Managed Information Systems Internal Audit Report

SRA International Managed Information Systems Internal Audit Report SRA International Managed Information Systems Internal Audit Report Report #2014-03 June 18, 2014 Table of Contents Executive Summary... 3 Background Information... 4 Background... 4 Audit Objectives...

More information

The Requirements Compliance Matrix columns are defined as follows:

The Requirements Compliance Matrix columns are defined as follows: 1 DETAILED REQUIREMENTS AND REQUIREMENTS COMPLIANCE The following s Compliance Matrices present the detailed requirements for the P&I System. Completion of all matrices is required; proposals submitted

More information

How to select a practice management system

How to select a practice management system How to select a practice management system New challenges and opportunities are impacting your practice today The physician practice environment is changing dramatically. The transition to ICD-10-CM and

More information

Solution Brief for HIPAA HIPAA. Publication Date: Jan 27, 2015. EventTracker 8815 Centre Park Drive, Columbia MD 21045

Solution Brief for HIPAA HIPAA. Publication Date: Jan 27, 2015. EventTracker 8815 Centre Park Drive, Columbia MD 21045 Publication Date: Jan 27, 2015 8815 Centre Park Drive, Columbia MD 21045 HIPAA About delivers business critical software and services that transform high-volume cryptic log data into actionable, prioritized

More information

Preemptive security solutions for healthcare

Preemptive security solutions for healthcare Helping to secure critical healthcare infrastructure from internal and external IT threats, ensuring business continuity and supporting compliance requirements. Preemptive security solutions for healthcare

More information

our group Mission Overview Offering

our group Mission Overview Offering ABOUT OUR COMPANY Mission Infrahealth is dedicated to offering cost-effective infrastructure solutions tailored to achieve maximum results for healthcare professionals. We are focused on delivering medical

More information

Provide access control with innovative solutions from IBM.

Provide access control with innovative solutions from IBM. Security solutions To support your IT objectives Provide access control with innovative solutions from IBM. Highlights Help protect assets and information from unauthorized access and improve business

More information

User's Guide. OpenCATS 0.9.1

User's Guide. OpenCATS 0.9.1 User's Guide OpenCATS 0.9.1 Document built from repository (revision: 8) at Fri Jul 26 15:30:03 PDT 2013 User's Guide: OpenCATS 0.9.1 Document built from repository (revision: 8) at Fri Jul 26 15:30:03

More information

REQUEST FOR PROPOSAL WEB SITE DESIGN, DEVELOPMENT & HOSTING December 19, 2013 Table of Contents 1. Summary... 2 2. Proposal Guidelines and Requirements... 2 3. Contract Terms... 2 4. Purpose, Description

More information

Sample Business Associate Agreement Provisions

Sample Business Associate Agreement Provisions Sample Business Associate Agreement Provisions Words or phrases contained in brackets are intended as either optional language or as instructions to the users of these sample provisions. Definitions Catch-all

More information

STATE OF NEVADA Department of Administration Division of Human Resource Management CLASS SPECIFICATION

STATE OF NEVADA Department of Administration Division of Human Resource Management CLASS SPECIFICATION STATE OF NEVADA Department of Administration Division of Human Resource Management LASS SPEIFIATION TITLE GRADE EEO-4 ODE IT TEHNIIAN SUPERVISOR 37 7.927 SERIES ONEPT Information Technology (IT) Technicians

More information

HealtheConnections RHIO Transitioning HIE Platform to Mirth FAQ

HealtheConnections RHIO Transitioning HIE Platform to Mirth FAQ HealtheConnections RHIO Transitioning HIE Platform to Mirth FAQ The Change 1. What drove the need to seek a new HIE solution? 2. Why move away from the current solution? 3. What other drivers were important

More information

Copyright 2011 Sentry Data Systems, Inc. All Rights Reserved. No Unauthorized Reproduction.

Copyright 2011 Sentry Data Systems, Inc. All Rights Reserved. No Unauthorized Reproduction. The Datanex Platform is a healthcare focused cloud computing platform that allows solution providers to construct rich healthcare business intelligence applications that leverage the world s fastest and

More information

OVERVIEW. We seek consultative services that would deal with the following objectives:

OVERVIEW. We seek consultative services that would deal with the following objectives: Massachusetts College of Art and Design - Framingham State University CISO and Managed Information Security Services RFP 13-07 Attachment #1 - Specifications and Descriptions of Services OVERVIEW In an

More information

Disclaimer: Template Business Associate Agreement (45 C.F.R. 164.308)

Disclaimer: Template Business Associate Agreement (45 C.F.R. 164.308) HIPAA Business Associate Agreement Sample Notice Disclaimer: Template Business Associate Agreement (45 C.F.R. 164.308) The information provided in this document does not constitute, and is no substitute

More information

INTEGRATION STRATEGIES FOR HEALTHCARE IT VENDORS COST-EFFECTIVE INTEROPERABILITY SOLUTIONS

INTEGRATION STRATEGIES FOR HEALTHCARE IT VENDORS COST-EFFECTIVE INTEROPERABILITY SOLUTIONS COST-EFFECTIVE INTEROPERABILITY SOLUTIONS Orion Health White Paper Drew Ivan, Director of Business Technology Table of Contents 1 Introduction 3 2 Problem 3 3 Solution 4 3.1 Solution benefits 5 4 Migration

More information

Enterprise Scheduler Rev. 0 Bid #24078582. Scope of Work

Enterprise Scheduler Rev. 0 Bid #24078582. Scope of Work Scope of Work I. Scope of Solicitation II. Instructions to Offerors III. Scope of Work / Specifications IV. Terms and Conditions - Special V. Appendices to Scope of Work (if required) VI. Bidding Schedule

More information

Delivery models refer to the method by which Information and Business Intelligence is sent from its source to its destination (consumer).

Delivery models refer to the method by which Information and Business Intelligence is sent from its source to its destination (consumer). Delivery Models Delivery models refer to the method by which Information and Business Intelligence is sent from its source to its destination (consumer). The primary delivery models within and Enterprise

More information

Accelerating EMR Interoperability with ELINCS. Streamlining Lab Connectivity to Physician EMRs

Accelerating EMR Interoperability with ELINCS. Streamlining Lab Connectivity to Physician EMRs Accelerating EMR Interoperability with ELINCS Streamlining Lab Connectivity to Physician EMRs A New Standard for Electronic Results What is ELINCS? The EHR-Lab Interoperability and Connectivity Standards

More information

Ross Cantor Director of Sales and Client Relations Lifepoint Informatics

Ross Cantor Director of Sales and Client Relations Lifepoint Informatics Lifepoint User Conference 2014 Leveraging CPOE Connect for Clean Orders: Embedding Lifepoint s Best of Breed Order Entry Functionality into Disparate EMR Systems Ross Cantor Director of Sales and Client

More information

OFFICE OF CONTRACT ADMINISTRATION 60400 PURCHASING DIVISION. Appendix A HEALTHCARE INSURANCE PORTABILITY AND ACCOUNTABILITY ACT (HIPPA)

OFFICE OF CONTRACT ADMINISTRATION 60400 PURCHASING DIVISION. Appendix A HEALTHCARE INSURANCE PORTABILITY AND ACCOUNTABILITY ACT (HIPPA) Appendix A HEALTHCARE INSURANCE PORTABILITY AND ACCOUNTABILITY ACT (HIPPA) BUSINESS ASSOCIATE ADDENDUM This Business Associate Addendum ( Addendum ) supplements and is made a part of the contract ( Contract

More information

New York State All Payer Database Request for Information

New York State All Payer Database Request for Information New York State All Payer Database Request for Information July 26, 2012 RFI 1205180104 Schedule of Events: Milestone APD RFI Released July 26, 2012 Date and Time Deadline Date for Questions Deadline for

More information

SaaS. Business Associate Agreement

SaaS. Business Associate Agreement SaaS Business Associate Agreement This Business Associate Agreement ( BA Agreement ) becomes effective pursuant to the terms of Section 5 of the End User Service Agreement ( EUSA ) between Customer ( Covered

More information

Security Controls What Works. Southside Virginia Community College: Security Awareness

Security Controls What Works. Southside Virginia Community College: Security Awareness Security Controls What Works Southside Virginia Community College: Security Awareness Session Overview Identification of Information Security Drivers Identification of Regulations and Acts Introduction

More information

HIPAA Privacy and Business Associate Agreement

HIPAA Privacy and Business Associate Agreement HR 2011-07 ATTACHMENT D HIPAA Privacy and Business Associate Agreement This Agreement is entered into this day of,, between [Employer] ( Employer ), acting on behalf of [Name of covered entity/plan(s)

More information

HIPAA in the Cloud How to Effectively Collaborate with Cloud Providers

HIPAA in the Cloud How to Effectively Collaborate with Cloud Providers How to Effectively Collaborate with Cloud Providers Agenda Overview of Topics Covered Agenda Evolution of the Cloud Comparison of Private vs. Public Clouds Other Regulatory Frameworks Similar to HIPAA

More information

The Keys to the Cloud: The Essentials of Cloud Contracting

The Keys to the Cloud: The Essentials of Cloud Contracting The Keys to the Cloud: The Essentials of Cloud Contracting September 30, 2014 Bert Kaminski Assistant General Counsel, Oracle North America Ken Adler Partner, Loeb & Loeb LLP Akiba Stern Partner, Loeb

More information

Request for Proposal. Contract Management Software

Request for Proposal. Contract Management Software Request for Proposal Contract Management Software Ogden City Information Technology Division RETURN TO: Ogden City Purchasing Agent 2549 Washington Blvd., Suite 510 Ogden, Utah 84401 Attn: Sandy Poll 1

More information

Simplifying the Interface Challenge in Healthcare. Healthcare Software Provider or Medical Device Manufacturer s Approach to Healthcare Integration

Simplifying the Interface Challenge in Healthcare. Healthcare Software Provider or Medical Device Manufacturer s Approach to Healthcare Integration Simplifying the Interface Challenge in Healthcare Healthcare Software Provider or Medical Device Manufacturer s Approach to Healthcare Integration Providers, application software developers, and medical

More information

Health Insurance Portability and Accountability Act (HIPAA) and Health Information Technology for Economic and Clinical Health Act (HITECH)

Health Insurance Portability and Accountability Act (HIPAA) and Health Information Technology for Economic and Clinical Health Act (HITECH) Health Insurance Portability and Accountability Act (HIPAA) and Health Information Technology for Economic and Clinical Health Act (HITECH) Table of Contents Introduction... 1 1. Administrative Safeguards...

More information

SAMPLE GASTROENTEROLOGY PRACTICE, PA ELECTRONIC MEDICAL RECORDS SYSTEM REQUEST FOR PROPOSALS

SAMPLE GASTROENTEROLOGY PRACTICE, PA ELECTRONIC MEDICAL RECORDS SYSTEM REQUEST FOR PROPOSALS SAMPLE GASTROENTEROLOGY PRACTICE, PA ELECTRONIC MEDICAL RECORDS SYSTEM REQUEST FOR PROPOSALS I INTRODUCTION AND OVERVIEW OF GASTROENTEROLOGY ASSOCIATES, PLLC. Sample Gastroenterology Associates, PA (SGA)

More information

Overview of Topics Covered

Overview of Topics Covered How to Effectively Collaborate with Cloud Providers Agenda Overview of Topics Covered Agenda Evolution of the Cloud Comparison of Private vs. Public Clouds Other Regulatory Frameworks Similar to HIPAA

More information

Meaningful Use Stage 2 & HIPAA: The Relationship between HIPAA and Meaningful Use Privacy & Security Regulations View the Replay on YouTube

Meaningful Use Stage 2 & HIPAA: The Relationship between HIPAA and Meaningful Use Privacy & Security Regulations View the Replay on YouTube 2012 FairWarning, Inc. Meaningful Use Stage 2 & HIPAA: The Relationship between HIPAA and Meaningful Use Privacy & Security Regulations View the Replay on YouTube April 12, 2012 2012 FairWarning, Inc.

More information

University Healthcare Physicians Compliance and Privacy Policy

University Healthcare Physicians Compliance and Privacy Policy Page 1 of 11 POLICY University Healthcare Physicians (UHP) will enter into business associate agreements in compliance with the provisions of the Health Insurance Portability and Accountability Act of

More information

Data Warehouse and Business Intelligence Tools RFP # 2013DWBI

Data Warehouse and Business Intelligence Tools RFP # 2013DWBI Data Warehouse and Business Intelligence Tools RFP # 2013DWBI Request for Proposals Issued: November 12, 2013 Deadline for Submittal of Proposals: December 3, 2013 5:00pm 1901 Arena Blvd. Sacramento, CA

More information

Remote Access to a Healthcare Facility and the IT professional s obligations under HIPAA and the HITECH Act

Remote Access to a Healthcare Facility and the IT professional s obligations under HIPAA and the HITECH Act Remote Access to a Healthcare Facility and the IT professional s obligations under HIPAA and the HITECH Act Are your authentication, access, and audit paradigms up to date? Table of Contents Synopsis...1

More information

BUSINESS ASSOCIATE ADDENDUM

BUSINESS ASSOCIATE ADDENDUM BUSINESS ASSOCIATE ADDENDUM This BA Agreement, effective as of the effective date of the Terms of Use, adds to and is made part of the Terms of Use by and between Business Associate and Covered Entity.

More information

Business Associate and Data Use Agreement

Business Associate and Data Use Agreement Business Associate and Data Use Agreement This Business Associate and Data Use Agreement (the Agreement ) is entered into by and between ( Covered Entity ) and HealtHIE Nevada ( Business Associate ). W

More information

Software as a Service (SaaS) Requirements

Software as a Service (SaaS) Requirements Introduction Software as a Service (SaaS) Requirements Software as a Service (SaaS) is a software service model where an application is hosted as a service provided to customers across the Internet. By

More information

For more information about UC4 products please visit www.uc4.com. Automation Within, Around, and Beyond Oracle E-Business Suite

For more information about UC4 products please visit www.uc4.com. Automation Within, Around, and Beyond Oracle E-Business Suite For more information about UC4 products please visit www.uc4.com Automation Within, Around, and Beyond Oracle E-Business Suite Content Executive Summary...3 Opportunities for Enhancement: Automation Within,

More information

Business Associate Agreement (BAA) Guidance

Business Associate Agreement (BAA) Guidance Business Associate Agreement (BAA) Guidance Introduction The purpose of this document is to provide guidance for creating or updating business associate agreements between your Practice ( Covered Entity

More information

New HIPAA Rules and EHRs: ARRA & Breach Notification

New HIPAA Rules and EHRs: ARRA & Breach Notification New HIPAA Rules and EHRs: ARRA & Breach Notification Jim Sheldon-Dean Director of Compliance Services Lewis Creek Systems, LLC www.lewiscreeksystems.com and Raj Goel Chief Technology Officer Brainlink

More information

CHAN Health Information Exchange (MPI/HIE) RFP

CHAN Health Information Exchange (MPI/HIE) RFP RESPONSE TO QUESTIONS CHAN Health Information Exchange (MPI/HIE) RFP Question 1 Does CHAN have an interest in Secure Messaging? Yes Answer 2 It appears that you want an on premise solution (hosted) or

More information

Customer Flow Management with a Round Robin Queuing System

Customer Flow Management with a Round Robin Queuing System Customer Flow Management with a Round Robin Queuing System Efficiently Managing Walk-ins and s Lowering Lobby Wait Time and Providing an Improved Customer Experience Introduction Managing lobby wait times

More information

Practice management system criteria checklist

Practice management system criteria checklist Practice management system criteria checklist The American Medical Association (AMA) and Medical Group Management Association (MGMA) have created the following checklist as a starting point for assessing

More information

Evolving Issues for Healthcare IT Contracting

Evolving Issues for Healthcare IT Contracting Evolving Issues for Healthcare IT Contracting By: Alan L. Friel This client advisory is based in part on an article appearing in FierceHealthIT. The emergence of mega-suite vendors, more use of the cloud,

More information

Implementation of ITIL Service Desk Improves Operational Efficiency and Customer Service for Australian Telco

Implementation of ITIL Service Desk Improves Operational Efficiency and Customer Service for Australian Telco Implementation of ITIL Service Desk Improves Operational Efficiency and Customer Service for Australian Telco A leading Australian telecommunications service provider wanted to implement a consolidated

More information

Appendix : Business Associate Agreement

Appendix : Business Associate Agreement I. Authority: Pursuant to 45 C.F.R. 164.502(e), the Indian Health Service (IHS), as a covered entity, is required to enter into an agreement with a business associate, as defined by 45 C.F.R. 160.103,

More information