ehealth EHR Viewer & Integration Joint Service/Access Policy Executive Summary for Authorized Provider Organizations ("APOs")

Size: px
Start display at page:

Download "ehealth EHR Viewer & Integration Joint Service/Access Policy Executive Summary for Authorized Provider Organizations ("APOs")"

Transcription

1 ehealth EHR Viewer & Integration Joint Service/Access Policy July 31, 2013 Version BACKGROUND: Executive Summary for Authorized Provider Organizations ("APOs") ehealth Saskatchewan ("ehealth") is a Treasury Board Crown Corporation whose mission is to make patient information available electronically to patients and their healthcare team. One of ehealth's key initiatives is the Electronic Health Record Initiative ("EHR Initiative"). The focus of the EHR Initiative is as follows: To bring personal health information together from various sources such as Regional Health Authorities ("RHAs") and pharmacies; To standardize and organize the information for presentation on a client-centric basis; To provide the information to RHAs and Authorized Provider Organizations ("APOs"), such as physician clinics and pharmacies, through system-to-system integration or a webbased viewer. The personal health information brought together through the EHR Initiative (the "EHR Data") includes: Laboratory test results; Prescription drug information; Clinical documents, including discharge summaries; Immunization information; Chronic disease information; and Additional clinical information as added from time to time. Version -, 2013

2 2. HIGH LEVEL INFORMATION FLOW: Source Systems (Mostly RHAs & Ministry of Health for PIP) ehealth EHR Initiative - Standardize and normalize EHR Data - Organize on a patient-centric basis EHR Integration EHR Viewer Patient Portal* Point of Service Systems RHAs & APOs Healthcare Providers RHAs & APOs Patients (caregivers) * The Patient Portal is not included in the Policy. The Policy is focused on the sharing of information between ehealth and the APOs. The Patient Portal is in the initial planning phases. ehealth will be the trustee under the Health Information Protection Act ("HIPA") for the EHR Data shared with the APOs, with the exception of the Pharmaceutical Information Program ("PIP"). The Ministry of Health will remain as the trustee for PIP under HIPA. Once the EHR Data is shared with an APO through the EHR Integration or EHR Viewer, the APO becomes responsible under HIPA as the trustee of the information. 3. PURPOSE: The purpose of the Joint Services/Access Policy (the "Policy") is to outline the responsibilities of ehealth and the APOs for the sharing of EHR Data. The Policy is a legally binding document. All APOs must agree to comply with the Policy as a pre-requisite to collecting and using the EHR Data. The purpose of this Executive Summary is to provide a summary of the Policy for the APOs. It is intended as a summary only and all APOs must review the Policy in its entirety. 2

3 4. RESPONSIBILITY: ehealth is responsible to protect the EHR Data for so long as it is in ehealth's system. Once the EHR Data is transferred through a system-to-system integration (EHR Integration) or viewed (EHR Viewer) by employees or contractors of the APO, all further use and disclosure is fully the APO's responsibility. It is the responsibility of each APO to ensure they have authority and consent to collect and use EHR Data as outlined in the Policy. The APOs must comply with HIPA (or other applicable laws) and their detailed responsibilities as set out in the Policy. The APOs will be asked to fill out a Privacy and Security checklist when registering for access to the EHR Viewer. APOs must review and complete this form carefully. ehealth will be relying on the accurate completion of the forms by the APOs. 5. RESTRICTION ON COLLECTION AND USE: The primary purpose for collection and use of the EHR Data by the APOs is to provide and support a healthcare service for the individual to whom the information relates. Collection and use of EHR Data for any other purpose is prohibited unless pre-approved specifically in the Policy or in writing by ehealth and the Ministry of Health. 6. CONSENT: The EHR Data is only to be collected and used by APOs for the primary purpose of providing and supporting a healthcare service for the individual to whom the information relates. The issue of consent and communication with patients is one that always needs to be addressed by the individual healthcare provider with the individual patient. ehealth recommends APOs and healthcare providers use implied or express consent rather than deemed consent as set out in HIPA. ehealth will support the APOs or healthcare provider's use of implied consent as follows: Ensure brochures and other communication materials are available for the APOs; Have information available for patients via the ehealth web-site; Answer questions from patients or healthcare providers by providing telephone support. Contact information is as follows: Mail: ehealth Privacy Service Suite 360, 10 Research Drive Regina, SK S4S 7J7 Phone: PrivacyandAccess@eHealthsask.ca Fax: (306)

4 Offer patient control mechanisms to patients to restrict access to their EHR Data. Current patient control mechanisms include: o Full Block this allows the patient to prevent any access to their EHR Data through the EHR Integration or EHR Viewer. o Masking this allows the patient to mask their EHR Data. A User can unmask the EHR Data where the patient expressly consents, in emergency circumstances, etc. In addition, on request from the patient, ehealth will provide a report to the patient showing who has viewed their information in the EHR Viewer. 7. NEED-TO-KNOW: All APOs must ensure all employees or contractors access and use information only on a strict need-to-know basis to provide or support patient care. 8. SAFEGUARDS: As a trustee, the APO must ensure that it has appropriate physical, organizational and technical safeguards in place as required by HIPA (or other applicable law). All APOs must ensure they follow all recommendations provided by ehealth for system requirements, etc. Assistance is available from the websites for the Saskatchewan Medical Association, College of Physicians & Surgeons, College of Pharmacy, and the Saskatchewan Office of the Information and Privacy Commissioner. 9. AUDITS: ehealth will log and track all access by Users and investigate if there is evidence of improper collection or use. On request, ehealth will provide an audit report to the APO showing the employees or contractors of that APO who have accessed personal health information through the EHR Viewer. 10. ENFORCEMENT: A breach of the Policy or HIPA (or other applicable law) is serious for both healthcare providers and the APO. Enforcement action may include: Investigation and suspension or termination of the healthcare provider's or APO's access to the EHR Initiative; Reporting the incident to the Professional Colleges or to the police for investigation HIPA includes criminal penalties with a fine of up to $50,000 and imprisonment of not more than one year; and/or Liability for any damages for claims from patients. 4

5 11. CHRONIC DISEASE MANAGEMENT QUALITY IMPROVEMENT PROGRAM ("CDM_QIP"): If you are a Physician participating in the CDM-QIP Program, please see the Clinical Best Practices at regarding the completion of the CDM-QIP templates and forms. ***END*** 5

REQUEST FOR INTEGRATED SERVICES

REQUEST FOR INTEGRATED SERVICES REQUEST FOR INTEGRATED SERVICES Call the Service Desk 1-888-316-7446 (local 306-337-0600) if you are unclear about any fields below. Return to: Fax Number: 306-781-8480 : servicedesk@ehealthsask.ca CLINIC

More information

Privacy and Security Resource Materials for Saskatchewan EMR Physicians: Guidelines, Samples and Templates. Reference Manual

Privacy and Security Resource Materials for Saskatchewan EMR Physicians: Guidelines, Samples and Templates. Reference Manual Privacy and Security Resource Materials for Saskatchewan EMR Physicians: Guidelines, Samples and Templates Guidelines on Requirements and Good Practices For Protecting Personal Health Information Disclaimer

More information

PACS JOINT SERVICES/ACCESS POLICY

PACS JOINT SERVICES/ACCESS POLICY PACS JOINT SERVICES/ACCESS POLICY 1. High Level Policy The identifiable Diagnostic Imaging Data stored in PACS constitutes personal health information and is subject to the provisions of The Health Information

More information

REQUESTING ORGANIZATION INFORMATION:

REQUESTING ORGANIZATION INFORMATION: Instructions: Please fill in this form, print it, and sign it (5 pages in total). You may then either: fax the completed and signed forms to the ehealth Service Desk at 306-781-8480 or scan the completed

More information

EMR and ehr Together for patients and providers. ehealth Conference October 3-4, 2014

EMR and ehr Together for patients and providers. ehealth Conference October 3-4, 2014 EMR and ehr Together for patients and providers ehealth Conference October 3-4, 2014 DISCLOSURES: Commercial Interests NONE Susan Antosh is CEO of ehealth Saskatchewan Vision: Empowering Patients, Enabling

More information

Alberta Electronic Health Record Regulation Section 5 Framework September 2011 Version 1.1

Alberta Electronic Health Record Regulation Section 5 Framework September 2011 Version 1.1 Alberta Electronic Health Record Regulation Section 5 Framework September 2011 Version 1.1 Acknowledgements The College of Physicians & Surgeons of Alberta thanks the following stakeholders for their valuable

More information

Complaint Reporting Form

Complaint Reporting Form College of Physicians and Surgeons of Saskatchewan Complaint Reporting Form Instructions 1. Complete this form with as much detail as possible. 2. Ensure all signatures are authorized. 3. Ensure additional

More information

Table of Contents. Preface... 1. 1 CPSA Position... 2. 1.1 How EMRs and Alberta Netcare are Changing Practice... 2. 2 Evolving Standards of Care...

Table of Contents. Preface... 1. 1 CPSA Position... 2. 1.1 How EMRs and Alberta Netcare are Changing Practice... 2. 2 Evolving Standards of Care... March 2015 Table of Contents Preface... 1 1 CPSA Position... 2 1.1 How EMRs and Alberta Netcare are Changing Practice... 2 2 Evolving Standards of Care... 4 2.1 The Medical Record... 4 2.2 Shared Medical

More information

HIPAA Privacy Overview

HIPAA Privacy Overview HIPAA Privacy Overview General HIPAA stands for a federal law called the Health Insurance Portability and Accountability Act. This law, among other purposes, was created to protect the privacy and security

More information

HIPAA PRIVACY AND SECURITY AWARENESS

HIPAA PRIVACY AND SECURITY AWARENESS HIPAA PRIVACY AND SECURITY AWARENESS Introduction The Health Insurance Portability and Accountability Act (known as HIPAA) was enacted by Congress in 1996. HIPAA serves three main purposes: To protect

More information

Helpful Tips. Privacy Breach Guidelines. September 2010

Helpful Tips. Privacy Breach Guidelines. September 2010 Helpful Tips Privacy Breach Guidelines September 2010 Office of the Saskatchewan Information and Privacy Commissioner 503 1801 Hamilton Street Regina, Saskatchewan S4P 4B4 Office of the Saskatchewan Information

More information

BENCHMARK MEDICAL LLC, BUSINESS ASSOCIATE AGREEMENT

BENCHMARK MEDICAL LLC, BUSINESS ASSOCIATE AGREEMENT BENCHMARK MEDICAL LLC, BUSINESS ASSOCIATE AGREEMENT This BUSINESS ASSOCIATE AGREEMENT ( Agreement ) dated as of the signature below, (the Effective Date ), is entered into by and between the signing organization

More information

Somansa Data Security and Regulatory Compliance for Healthcare

Somansa Data Security and Regulatory Compliance for Healthcare Somansa White Paper Somansa Data Security and Regulatory Compliance for Healthcare How Somansa can protect ephi- electronic patient health information and meet the requirements for healthcare compliances,

More information

Privacy Incident and Breach Management Policy

Privacy Incident and Breach Management Policy Privacy Incident and Breach Management Policy Privacy Office Document ID: 2480 Version: 2.1 Owner: Chief Privacy Officer Sensitivity Level: Low Copyright Notice Copyright 2014, ehealth Ontario All rights

More information

Oregon Prescription Drug Monitoring Program. Terms & Conditions of Account Use Agreement. Statutory Authority:

Oregon Prescription Drug Monitoring Program. Terms & Conditions of Account Use Agreement. Statutory Authority: Oregon Prescription Drug Monitoring Program Terms & Conditions of Account Use Agreement Statutory Authority: The Oregon Health Authority (OHA) was given authority under ORS 431.962 to establish and maintain

More information

From Vision to Action: Enabling Interoperable Electronic Health Records in Minnesota

From Vision to Action: Enabling Interoperable Electronic Health Records in Minnesota From Vision to Action: Enabling Interoperable Electronic Health Records in Minnesota 2008 State Alliance for e-health meeting Washington DC. September 26th, 2008 Scott Leitz Assistant Commissioner Minnesota

More information

BUSINESS ASSOCIATE AGREEMENT

BUSINESS ASSOCIATE AGREEMENT BUSINESS ASSOCIATE AGREEMENT THIS BUSINESS ASSOCIATE AGREEMENT ( Agreement ) by and between OUR LADY OF LOURDES HEALTH CARE SERVICES, INC., hereinafter referred to as Covered Entity, and hereinafter referred

More information

Additional Information

Additional Information HIPAA Privacy Procedure #17-7 Effective Date: April 14, 2003 Reviewed Date: February, 2011 Communication of Electronic Protected Health Revised Date: Information by E-mail Scope: Radiation Oncology ****************************************************************************

More information

BUSINESS ASSOCIATE AGREEMENT

BUSINESS ASSOCIATE AGREEMENT COLUMBIA AGREEMENT BUSINESS ASSOCIATE AGREEMENT This Business Associate Agreement ( Agreement ) is entered into as of ( Effective Date ) by and between The Trustees of Columbia University in the City of

More information

Alberta Electronic Health Record (EHR) An Alberta Netcare Guide for Authorized Custodians and/or their Authorized Affiliates

Alberta Electronic Health Record (EHR) An Alberta Netcare Guide for Authorized Custodians and/or their Authorized Affiliates Health Information Technology and Systems (HITS) Information Management Branch (IM) HIA Policy, Privacy and Security Unit 21 Floor, ATB Place 10025 Jasper Avenue Edmonton, Alberta T5J 1S6 Telephone: 780-422-8642

More information

Canada Health Infoway

Canada Health Infoway Canada Health Infoway EHR s in the Canadian Context June 7, 2005 Mike Sheridan, COO Canada Health Infoway Healthcare Renewal In Canada National Healthcare Priorities A 10-year Plan to Strengthen Healthcare

More information

CITIZENS MEDICAL ALERT SERVICE AGREEMENT

CITIZENS MEDICAL ALERT SERVICE AGREEMENT CITIZENS MEDICAL ALERT SERVICE AGREEMENT 1. PARTIES AND SERVICES: The person named as Subscriber and the person named as Payer (which for purposes of these terms and conditions are collectively referred

More information

HIPAA PRIVACY FOR EMPLOYERS A Comprehensive Introduction. HIPAA Privacy Regulations-General

HIPAA PRIVACY FOR EMPLOYERS A Comprehensive Introduction. HIPAA Privacy Regulations-General HIPAA PRIVACY FOR EMPLOYERS A Comprehensive Introduction HIPAA Privacy Regulations-General The final HIPAA Privacy regulation was released on December 20, 2000 and was effective for compliance on April

More information

Table of Contents. Page 1

Table of Contents. Page 1 Table of Contents Executive Summary... 2 1 CPSA Interests and Roles in ehealth... 4 1.1 CPSA Endorsement of ehealth... 4 1.2 CPSA Vision for ehealth... 5 1.3 Dependencies... 5 2 ehealth Policies and Trends...

More information

Evolution of HB 300. HIPAA passed in 1996 Originally, HIPAA only directly impacted certain covered entities :

Evolution of HB 300. HIPAA passed in 1996 Originally, HIPAA only directly impacted certain covered entities : Texas HB 300 HB 300: Background Texas House Research Organizational Bill Analysis for HB 300 shows state legislators believed HIPAA did not provide enough protection for private health information (PHI)

More information

Fraud, Waste, and Abuse

Fraud, Waste, and Abuse These training materials are divided into three topics to meet the responsibilities stated on the previous pages: Fraud, Waste, Compliance Program Standards of Conduct Although the information contained

More information

NORTHSTAR DERMATOLOGY, PA NOTICE OF PRIVACY PRACTICES

NORTHSTAR DERMATOLOGY, PA NOTICE OF PRIVACY PRACTICES NORTHSTAR DERMATOLOGY, PA NOTICE OF PRIVACY PRACTICES THIS NOTICE DESCRIBES HOW MEDICAL INFORMATION ABOUT YOU MAY BE USED AND DISCLOSED AND HOW YOU CAN GET ACCESS TO THIS INFORMATION. PLEASE REVIEW IT

More information

Questions and answers for custodians about the Personal Health Information Privacy and Access Act (PHIPAA)

Questions and answers for custodians about the Personal Health Information Privacy and Access Act (PHIPAA) Questions and answers for custodians about the Personal Health Information Privacy and Access Act (PHIPAA) This document provides answers to some frequently asked questions about the The Personal Health

More information

The Health Information Protection Act

The Health Information Protection Act 1 The Health Information Protection Act being Chapter H-0.021* of the Statutes of Saskatchewan, 1999 (effective September 1, 2003, except for subsections 17(1), 18(2) and (4) and section 69) as amended

More information

How To Ensure Health Information Is Protected

How To Ensure Health Information Is Protected pic pic CIHI Submission: 2011 Prescribed Entity Review October 2011 Who We Are Established in 1994, CIHI is an independent, not-for-profit corporation that provides essential information on Canada s health

More information

SCHEDULE "C" to the MEMORANDUM OF UNDERSTANDING BETWEEN ALBERTA HEALTH SERVICES AND THE ALBERTA MEDICAL ASSOCIATION (CMA ALBERTA DIVISION)

SCHEDULE C to the MEMORANDUM OF UNDERSTANDING BETWEEN ALBERTA HEALTH SERVICES AND THE ALBERTA MEDICAL ASSOCIATION (CMA ALBERTA DIVISION) SCHEDULE "C" to the MEMORANDUM OF UNDERSTANDING BETWEEN ALBERTA HEALTH SERVICES AND THE ALBERTA MEDICAL ASSOCIATION (CMA ALBERTA DIVISION) ELECTRONIC MEDICAL RECORD INFORMATION EXCHANGE PROTOCOL (AHS AND

More information

Fraud, Waste & Abuse. Training Course for UHCG Employees

Fraud, Waste & Abuse. Training Course for UHCG Employees Fraud, Waste & Abuse Training Course for UHCG Employees Overview The Centers for Medicare & Medicaid Services (CMS) require Medicare Advantage Organizations and Part D Plan Sponsors to provide annual fraud,

More information

Chapter 2 Standards for EHRs 1 Chapter 2 Content: LO 2.1 Describe EHR Standards History LO 2.2 Identify basic HIPAA regulations LO 2.3 List basic CHI regulations LO 2.4 Summarize IOM s Core Functions LO

More information

HEALTH INFORMATION ACT (HIA) BILL QUESTIONS AND ANSWERS

HEALTH INFORMATION ACT (HIA) BILL QUESTIONS AND ANSWERS HEALTH INFORMATION ACT (HIA) BILL QUESTIONS AND ANSWERS KEY HIA CONCEPTS AND PROVISIONS Q. What is the purpose of the legislation? To protect clients personal health information. To set rules on the collection,

More information

Texas House Bill 300 & HIPAA. A MainNerve Whitepaper

Texas House Bill 300 & HIPAA. A MainNerve Whitepaper A MainNerve Whitepaper Overview If you do business in Texas and your organization handles, creates, stores, transmits or has access to electronic patient healthcare information, you need to be mindful

More information

NOTICE OF PRIVACY PRACTICES TEMPLATE. Sections highlighted in yellow are optional sections, depending on if applicable

NOTICE OF PRIVACY PRACTICES TEMPLATE. Sections highlighted in yellow are optional sections, depending on if applicable NOTICE OF PRIVACY PRACTICES TEMPLATE Sections highlighted in yellow are optional sections, depending on if applicable Original Date: ##/##/#### Revised per HIPAA Omnibus Rule ##/##/#### Revised Date Implementation:

More information

ONLINE CREDIT REPORTING S SUITE SOLUTIONS MEMBERSHIP GUIDELINES

ONLINE CREDIT REPORTING S SUITE SOLUTIONS MEMBERSHIP GUIDELINES ONLINE CREDIT REPORTING S SUITE SOLUTIONS MEMBERSHIP GUIDELINES The following procedures are needed to establish your account in order to download three bureau credit reports into your bankruptcy software.

More information

SOUTHLAKE DERMATOLOGY 1170 N. Carroll Ave. Southlake, TX 76092 www.southlakedermatology.com Main 817-251-6500 Fax 817-442-0550

SOUTHLAKE DERMATOLOGY 1170 N. Carroll Ave. Southlake, TX 76092 www.southlakedermatology.com Main 817-251-6500 Fax 817-442-0550 THIS NOTICE DESCRIBES HOW MEDICAL INFORMATION ABOUT YOU MAY BE USED AND DISCLOSED AND HOW YOU CAN GET ACCESS TO THIS INFORMATION. PLEASE REVIEW IT CAREFULLY. EFFECTIVE September 15, 2014 This Notice of

More information

SASKATCHEWAN OFFICE OF THE INFORMATION AND PRIVACY COMMISSIONER INVESTIGATION REPORT F-2012 003. Saskatchewan Workers Compensation Board

SASKATCHEWAN OFFICE OF THE INFORMATION AND PRIVACY COMMISSIONER INVESTIGATION REPORT F-2012 003. Saskatchewan Workers Compensation Board Date: August 29, 2012 File No.: 2008/101 SASKATCHEWAN OFFICE OF THE INFORMATION AND PRIVACY COMMISSIONER INVESTIGATION REPORT F-2012 003 Saskatchewan Workers Compensation Board Summary: The Commissioner

More information

PIP Quality Improvement Program (QIP) Information Sheet

PIP Quality Improvement Program (QIP) Information Sheet PIP Quality Improvement Program (QIP) Information Sheet Contents PIP QIP Recommendations... 2 Discontinue Old and Duplicate Prescriptions (as required)... 2 What does HOLD mean in the PIP?... 5 Performing

More information

How To Prepare For A Patient Care System

How To Prepare For A Patient Care System Preparing for Online Communication with Your Patients A Guide for Providers This easy-to-use, time-saving guide is designed to help medical practices and community clinics prepare for communicating with

More information

EHR Contributor Agreement

EHR Contributor Agreement This EHR Contributor Agreement (this Agreement ) is made effective (the Effective Date ) and sets out certain terms and conditions that apply to the sharing of Personal

More information

WDS LIMITED WDS PERSONNEL SHARE TRADING POLICY

WDS LIMITED WDS PERSONNEL SHARE TRADING POLICY WDS LIMITED WDS PERSONNEL SHARE TRADING POLICY 1. INTRODUCTION The Corporations Act contains provisions which prohibit a person in possession of material, non-public information relating to a company from

More information

FIVE EASY STEPS FOR HANDLING NEW HIPAA REQUIREMENTS & MANAGING YOUR ELECTRONIC COMMUNICATIONS

FIVE EASY STEPS FOR HANDLING NEW HIPAA REQUIREMENTS & MANAGING YOUR ELECTRONIC COMMUNICATIONS FIVE EASY STEPS FOR HANDLING NEW HIPAA REQUIREMENTS & MANAGING YOUR ELECTRONIC COMMUNICATIONS James J. Eischen, Jr., Esq. October 2013 Chicago, Illinois JAMES J. EISCHEN, JR., ESQ. Partner at Higgs, Fletcher

More information

HIPAA and Patient Safety: Why It Matters April 24, 2015 (GEN-AO1)

HIPAA and Patient Safety: Why It Matters April 24, 2015 (GEN-AO1) 2015 User Conference HIPAA and Patient Safety: Why It Matters April 24, 2015 (GEN-AO1) Presented by: Susan J. Kressly, MD, FAAP Medical Director, Office Practicum General Session Learning Objectives Understand

More information

SUITE SOLUTIONS MEMBERSHIP GUIDELINES Clients using EZ-Filing Inc. Software

SUITE SOLUTIONS MEMBERSHIP GUIDELINES Clients using EZ-Filing Inc. Software SUITE SOLUTIONS MEMBERSHIP GUIDELINES Clients using EZ-Filing Inc. Software The following procedures are needed to establish your account in order to download three bureau credit reports into your bankruptcy

More information

Amgen GLOBAL CORPORATE COMPLIANCE POLICY

Amgen GLOBAL CORPORATE COMPLIANCE POLICY 1. Scope Applicable to all Amgen Inc. and subsidiary or affiliated company staff members, consultants, contract workers and temporary staff worldwide ( Covered Persons ). Consultants, contract workers,

More information

GlaxoSmithKline Single Sign On Portal for ClearView and Campaign Tracker - Terms of Use

GlaxoSmithKline Single Sign On Portal for ClearView and Campaign Tracker - Terms of Use GlaxoSmithKline Single Sign On Portal for ClearView and Campaign Tracker - Terms of Use IMPORTANT! YOUR REGISTRATION AND USE OF THIS GlaxoSmithKline Single Sign On Portal for ClearView and Campaign Tracker

More information

Arizona Medical Information Exchange Proof Of Concept. Privacy & Security Policy Manual version 1.0

Arizona Medical Information Exchange Proof Of Concept. Privacy & Security Policy Manual version 1.0 Arizona Medical Information Exchange Proof Of Concept Privacy & Security Policy Manual version 1.0 September 29, 2008 Chapter 100 Introduction Table of Contents... 2 Chapter 100 Introduction... 4 101:

More information

Prince Edward Island Drug Information System. Privacy and Security Awareness Training

Prince Edward Island Drug Information System. Privacy and Security Awareness Training Prince Edward Island Drug Information System Privacy and Security Awareness Training Purpose of the DIS The purpose of the PEI Drug Information System is established in section two (2) of the Pharmaceutical

More information

SASKATCHEWAN INFORMATION AND PRIVACY COMMISSIONER INVESTIGATION REPORT 046/2014. Saskatchewan Workers Compensation Board

SASKATCHEWAN INFORMATION AND PRIVACY COMMISSIONER INVESTIGATION REPORT 046/2014. Saskatchewan Workers Compensation Board Date: February 26, 2015 SASKATCHEWAN INFORMATION AND PRIVACY COMMISSIONER INVESTIGATION REPORT 046/2014 Saskatchewan Workers Compensation Board Summary: The Commissioner received a complaint that Saskatchewan

More information

HIPAA and the HITECH Act Privacy and Security of Health Information in 2009

HIPAA and the HITECH Act Privacy and Security of Health Information in 2009 HIPAA and the HITECH Act Privacy and Security of Health Information in 2009 What is HIPAA? Health Insurance Portability & Accountability Act of 1996 Effective April 13, 2003 Federal Law HIPAA Purpose:

More information

To the extent the federal government determines that it will directly operate prescription

To the extent the federal government determines that it will directly operate prescription Prescription Drug Abuse and Diversion: The Role of Prescription Drug Monitoring Programs Bill Number: Hearing Date: September 23, 2004, 2:00 pm Location: SD-430 Witness: Joy L. Pritts, J.D. Health Policy

More information

SASKATCHEWAN COLLEGE OF PHARMACISTS Electronic Transmission of Prescriptions. Policy Statement and Guidelines for Pharmacists

SASKATCHEWAN COLLEGE OF PHARMACISTS Electronic Transmission of Prescriptions. Policy Statement and Guidelines for Pharmacists SASKATCHEWAN COLLEGE OF PHARMACISTS Electronic Transmission of Prescriptions PREAMBLE This document replaces the Operational Guidelines - Facsimile Transmission of Prescriptions Current legislation allows

More information

How To Use Grand Lexis Port Dickson Website

How To Use Grand Lexis Port Dickson Website TERMS AND CONDITIONS OF USE Welcome to Grand Lexis Port Dickson website. If you continue to browse and use this website you are agreeing to comply with and be bound by the terms and conditions of use set

More information

HIPAA BUSINESS ASSOCIATE AGREEMENT

HIPAA BUSINESS ASSOCIATE AGREEMENT HIPAA BUSINESS ASSOCIATE AGREEMENT This HIPAA Business Associate Agreement ("BA AGREEMENT") supplements and is made a part of any and all agreements entered into by and between The Regents of the University

More information

River Valley Therapy & Sports Medicine, Inc. Notice of Privacy Practices

River Valley Therapy & Sports Medicine, Inc. Notice of Privacy Practices River Valley Therapy & Sports Medicine, Inc. Notice of Privacy Practices This notice describes how medical information about you may be used and disclosed and how you can get access to this information.

More information

University Healthcare Physicians Compliance and Privacy Policy

University Healthcare Physicians Compliance and Privacy Policy Page 1 of 11 POLICY University Healthcare Physicians (UHP) will enter into business associate agreements in compliance with the provisions of the Health Insurance Portability and Accountability Act of

More information

INVESTIGATION REPORT 176-2015

INVESTIGATION REPORT 176-2015 Saskatoon Regional Health Authority January 29, 2016 Summary: Saskatoon Regional Health Authority (SRHA) proactively reported a privacy breach to the Office of the Information and Privacy Commissioner

More information

Associates in Urology, LLC Notice of Privacy Practices

Associates in Urology, LLC Notice of Privacy Practices Associates in Urology, LLC Notice of Privacy Practices Associates in Urology, LLC 741 Northfield Avenue, Suite 206 West Orange, New Jersey 07052 By using this website, you agree to the privacy notice as

More information

HIPAA Privacy Policy & Notice of Privacy Practices

HIPAA Privacy Policy & Notice of Privacy Practices HIPAA Privacy Policy & Notice of Privacy Practices 1. PURPOSE 1 The purpose of this policy is to comply with patient personal health information security rights and privacy regulations as outlined in the

More information

How To Get A Power Control Device From The Power Station

How To Get A Power Control Device From The Power Station RESIDENTIAL AND SMALL COMMERCIAL DEMAND RESPONSE PARTICIPANT AGREEMENT You have applied to participate in the Residential and Small Commercial Demand Response Initiative (the Initiative ) offered by Hydro

More information

Florida Health Information Exchange Subscription Agreement for Patient Look-Up and Delivery Services

Florida Health Information Exchange Subscription Agreement for Patient Look-Up and Delivery Services Florida Health Information Exchange Subscription Agreement for Patient Look-Up and Delivery Services This Florida Health Information Exchange Subscription Agreement for Patient Look-Up and Delivery Services

More information

NEWS ALERT WINSTEAD POTENTIAL OPPORTUNITIES FOR HEALTHCARE INDUSTRY UNDER THE AMERICAN RECOVERY AND REINVESTMENT ACT OF 2009. May 2009 Winstead PC

NEWS ALERT WINSTEAD POTENTIAL OPPORTUNITIES FOR HEALTHCARE INDUSTRY UNDER THE AMERICAN RECOVERY AND REINVESTMENT ACT OF 2009. May 2009 Winstead PC May 2009 Winstead PC POTENTIAL OPPORTUNITIES FOR HEALTHCARE INDUSTRY UNDER THE AMERICAN RECOVERY AND REINVESTMENT ACT OF 2009 Contact: The American Recovery and Reinvestment Act of 2009 (the "Act") was

More information

Infinedi HIPAA Business Associate Agreement RECITALS SAMPLE

Infinedi HIPAA Business Associate Agreement RECITALS SAMPLE Infinedi HIPAA Business Associate Agreement This Business Associate Agreement ( Agreement ) is entered into this day of, 20 between ( Company ) and Infinedi, LLC, a Limited Liability Corporation, ( Contractor

More information

Protecting Saskatchewan data the USA Patriot Act

Protecting Saskatchewan data the USA Patriot Act Protecting Saskatchewan data the USA Patriot Act Main points... 404 Introduction... 405 Standing Committee on Public Accounts motion... 405 Our response to the motion... 405 ITO, its service provider,

More information

DEPARTMENTAL POLICY. Northwestern Memorial Hospital

DEPARTMENTAL POLICY. Northwestern Memorial Hospital Northwestern Memorial Hospital DEPARTMENTAL POLICY Subject: DEPARTMENTAL ADMINISTRATION Title: 1 of 11 Revision of: NEW Effective Date: 01/09/03 I. PURPOSE: This policy defines general behavioral guidelines

More information

Meaningful Use Audits. NextGen Physician Consulting Services

Meaningful Use Audits. NextGen Physician Consulting Services Meaningful Use Audits NextGen Physician Consulting Services Agenda Audit Overview Documentation for measures requiring numerator and denominator data Documentation for attestation only measures Security

More information

Physician Champions David C. Kibbe, MD, & Daniel Mongiardo, MD FAQ Responses

Physician Champions David C. Kibbe, MD, & Daniel Mongiardo, MD FAQ Responses Physician Champions David C. Kibbe, MD, & Daniel Mongiardo, MD FAQ Responses DR. KIBBE S RESPONSES What is health information exchange? How can health information exchange help my practice? Can I comply

More information

Easy Participation for Healthcare Professionals

Easy Participation for Healthcare Professionals Easy Participation for Healthcare Professionals Electronic Health Record Sharing System Welcome to Join www.ehealth.gov.hk 3467 6230 What is an Electronic Health Record (ehr)? An electronic health record

More information

Whitefish School District. PERSONNEL 5510 page 1 of 5 HIPAA

Whitefish School District. PERSONNEL 5510 page 1 of 5 HIPAA Whitefish School District R PERSONNEL 5510 page 1 of 5 HIPAA Note: (1) Any school district offering a group health care plan for its employees is affected by HIPAA. School districts offering health plans

More information

Public Advisory Statement. The Personally-Controlled Electronic Health Record. Frequently Asked Questions by Consumers

Public Advisory Statement. The Personally-Controlled Electronic Health Record. Frequently Asked Questions by Consumers http://www.privacy.org.au Secretary@privacy.org.au http://www.privacy.org.au/about/contacts.html Background Public Advisory Statement The Personally-Controlled Electronic Health Record Frequently Asked

More information

MEDICAID COMPLIANCE POLICY

MEDICAID COMPLIANCE POLICY 6232 MEDICAID COMPLIANCE POLICY It is the policy of the Board of Education that all school district s practices regarding Medicaid claims for services be in compliance with all applicable federal and state

More information

REPRODUCTIVE ASSOCIATES OF DELAWARE (RAD) NOTICE OF PRIVACY PRACTICES PLEASE REVIEW IT CAREFULLY.

REPRODUCTIVE ASSOCIATES OF DELAWARE (RAD) NOTICE OF PRIVACY PRACTICES PLEASE REVIEW IT CAREFULLY. REPRODUCTIVE ASSOCIATES OF DELAWARE (RAD) NOTICE OF PRIVACY PRACTICES THIS NOTICE DESCRIBES HOW PROTECTED HEALTH INFORMATION (PHI) ABOUT YOU MAY BE USED AND DISCLOSED AND HOW YOU CAN GET ACCESS TO THIS

More information

St. John s Hospice. Job Description. Registered Nurse

St. John s Hospice. Job Description. Registered Nurse St. John s Hospice Job Description Registered Nurse POST: HOURS: ACCOUNTABLE TO: REPORTS TO: Registered Nurse 37.5 hours Head of Nursing and Quality Ward Sisters JOB PURPOSE To provide skilled nursing

More information

NOTICE OF PRIVACY PRACTICES

NOTICE OF PRIVACY PRACTICES NOTICE OF PRIVACY PRACTICES Effective Date: April 14, 2003 Revision Date: September 23, 2013 THIS NOTICE DESCRIBES HOW MEDICAL INFORMATION ABOUT YOU MAY BE USED AND DISCLOSED AND HOW YOU CAN GET ACCESS

More information

CAROLINA DENTAL Notice of Privacy Practices

CAROLINA DENTAL Notice of Privacy Practices CAROLINA DENTAL Notice of Privacy Practices This notice describes how medical information about you may be used and disclosed and how you can get access to this information. Please review it carefully.

More information

Annual Continuing Education (ACE) (Print version) Information Privacy and I.T. Security and Compliance

Annual Continuing Education (ACE) (Print version) Information Privacy and I.T. Security and Compliance Annual Continuing Education (ACE) (Print version) Information Privacy and I.T. Security and Compliance Information Privacy and IT Security & Compliance The information in this module in addition to the

More information

BUSINESS ASSOCIATE AGREEMENT

BUSINESS ASSOCIATE AGREEMENT BUSINESS ASSOCIATE AGREEMENT This Business Associate Agreement (the Agreement ) is entered into by and between Professional Office Services, Inc., with principal place of business at PO Box 450, Waterloo,

More information

Ontario Laboratories Information System ConnectingGTA Integration. Delta Privacy Impact Assessment Summary

Ontario Laboratories Information System ConnectingGTA Integration. Delta Privacy Impact Assessment Summary Ontario Laboratories Information System ConnectingGTA Integration Delta Privacy Impact Assessment Summary Copyright Notice Copyright 2012, ehealth Ontario All rights reserved Trademarks No part of this

More information

PHIPA Potpourri. Judith Goldstein, Legal Counsel Information and Privacy Commissioner/Ontario. IPC Mediators April 21, 2015

PHIPA Potpourri. Judith Goldstein, Legal Counsel Information and Privacy Commissioner/Ontario. IPC Mediators April 21, 2015 PHIPA Potpourri Judith Goldstein, Legal Counsel Information and Privacy Commissioner/Ontario IPC Mediators April 21, 2015 Powers of the Commissioner The Powers the Commissioner has to conduct a review

More information

HIPAA Business Associate Agreement

HIPAA Business Associate Agreement HIPAA Business Associate Agreement User of any Nemaris Inc. (Nemaris) products or services including but not limited to Surgimap Spine, Surgimap ISSG, Surgimap SRS, Surgimap Office, Surgimap Ortho, Surgimap

More information

Medicare Advantage and Part D Fraud, Waste, and Abuse Training. October 2010

Medicare Advantage and Part D Fraud, Waste, and Abuse Training. October 2010 Medicare Advantage and Part D Fraud, Waste, and Abuse Training October 2010 Introduction 2008: United States spent $2.3 trillion on health care. Federal fiscal year 2010: Medicare expected to cover an

More information

The term Broadway Pet Stores refers we to the owner of the website whose registered office is 6-8 Muswell Hill Broadway, London, N10 3RT.

The term Broadway Pet Stores refers we to the owner of the website whose registered office is 6-8 Muswell Hill Broadway, London, N10 3RT. Website - Terms and Conditions Welcome to our website. If you continue to browse and use this website you are agreeing to comply with and be bound by the following terms and conditions of use, which together

More information

Health Information Privacy Refresher Training. March 2013

Health Information Privacy Refresher Training. March 2013 Health Information Privacy Refresher Training March 2013 1 Disclosure There are no significant or relevant financial relationships to disclose. 2 Topics for Today State health information privacy law Federal

More information

Procedure for Managing a Privacy Breach

Procedure for Managing a Privacy Breach Procedure for Managing a Privacy Breach (From the Privacy Policy and Procedures available at: http://www.mun.ca/policy/site/view/index.php?privacy ) A privacy breach occurs when there is unauthorized access

More information

UNDERSTANDING THE HIPAA/HITECH BREACH NOTIFICATION RULE 2/25/14

UNDERSTANDING THE HIPAA/HITECH BREACH NOTIFICATION RULE 2/25/14 UNDERSTANDING THE HIPAA/HITECH BREACH NOTIFICATION RULE 2/25/14 RULES Issued August 19, 2009 Requires Covered Entities to notify individuals of a breach as well as HHS without reasonable delay or within

More information

HIPAA BUSINESS ASSOCIATE AGREEMENT

HIPAA BUSINESS ASSOCIATE AGREEMENT HIPAA BUSINESS ASSOCIATE AGREEMENT THIS HIPAA BUSINESS ASSOCIATE AGREEMENT ( BAA ) is entered into effective the day of, 20 ( Effective Date ), by and between the Regents of the University of Michigan,

More information

Align Technology. Data Protection Binding Corporate Rules Processor Policy. 2014 Align Technology, Inc. All rights reserved.

Align Technology. Data Protection Binding Corporate Rules Processor Policy. 2014 Align Technology, Inc. All rights reserved. Align Technology Data Protection Binding Corporate Rules Processor Policy Confidential Contents INTRODUCTION TO THIS POLICY 3 PART I: BACKGROUND AND ACTIONS 4 PART II: PROCESSOR OBLIGATIONS 6 PART III:

More information

Medical records - Summary of the Physicians Health Information System

Medical records - Summary of the Physicians Health Information System Medical Records: Policy Updates Mark Staz (Policy Analyst CPSO) QUALITY PROFESSIONALS HEALTHY SYSTEM PUBLIC TRUST Question: Results: Theme: Nothing has changed and yet everything is different (Jean-Paul

More information

HIPAA Notice of Privacy Practices

HIPAA Notice of Privacy Practices HIPAA Notice of Privacy Practices THIS NOTICE DESCRIBES HOW MEDICAL INFORMATION ABOUT YOU MAY BE USED AND DISCLOSED AND HOW YOU CAN GET ACCESS TO THIS INFORMATION. PLEASE REVIEW IT CAREFULLY. This Notice

More information

QUEENSLAND COUNTRY HEALTH FUND. privacy policy. Queensland Country Health Fund Ltd ABN 18 085 048 237. better health cover shouldn t hurt

QUEENSLAND COUNTRY HEALTH FUND. privacy policy. Queensland Country Health Fund Ltd ABN 18 085 048 237. better health cover shouldn t hurt QUEENSLAND COUNTRY HEALTH FUND privacy policy Queensland Country Health Fund Ltd ABN 18 085 048 237 better health cover shouldn t hurt 1 2 contents 1. Introduction 4 2. National Privacy Principles 5 3.

More information

QUESTIONS AND ANSWERS HEALTHCARE IDENTIFIERS BILL 2010

QUESTIONS AND ANSWERS HEALTHCARE IDENTIFIERS BILL 2010 About Healthcare Identifiers QUESTIONS AND ANSWERS HEALTHCARE IDENTIFIERS BILL 2010 Q1. What is the Healthcare Identifiers Service? The Healthcare Identifiers (HI) Service will implement and maintain a

More information

Population Health Management Program Notice of Privacy Practices from Evolent Health

Population Health Management Program Notice of Privacy Practices from Evolent Health Population Health Management Program Notice of Privacy Practices from Evolent Health MedStar Health, Inc., a Maryland not-for-profit corporation, has contracted with Evolent Health, Inc., a Delaware corporation

More information

North Florida Medical Centers, Inc. Notice of Information Practices

North Florida Medical Centers, Inc. Notice of Information Practices North Florida Medical Centers, Inc. Notice of Information Practices THIS NOTICE DESCRIBES HOW MEDICAL INFORMATION ABOUT YOU MAY BE USED AND DISCLOSED AND HOW YOU CAN GET ACCESS TO THIS INFORMATION. PLEASE

More information

2010 Fraud, Waste, and Abuse Training Materials

2010 Fraud, Waste, and Abuse Training Materials 2010 Fraud, Waste, and Abuse Training Materials UnitedHealthcare Medicare Plans Medicare Advantage AARP MedicareComplete Erickson Advantage Evercare Sierra Spectrum Sierra Village Health SM SecureHorizons

More information

BUSINESS ASSOCIATE AGREEMENT

BUSINESS ASSOCIATE AGREEMENT BUSINESS ASSOCIATE AGREEMENT This Business Associate Agreement ( the Agreement ) is entered into this day of, 20 by and between the Tennessee Chapter of the American Academy of Pediatrics ( Business Associate

More information

Medicare Fraud, Waste, and Abuse Training for Healthcare Professionals 2010-2011

Medicare Fraud, Waste, and Abuse Training for Healthcare Professionals 2010-2011 Medicare Fraud, Waste, and Abuse Training for Healthcare Professionals 2010-2011 Y0067_H2816_H6169_WEB_UAMC IA 11/22/2010 Last Updated: 11/22/2010 Medicare Requirements The Centers for Medicare and Medicaid

More information

Personal Data (Privacy) Ordinance and Electronic Health Record Sharing System (Points to Note for Healthcare Providers and Healthcare Professionals)

Personal Data (Privacy) Ordinance and Electronic Health Record Sharing System (Points to Note for Healthcare Providers and Healthcare Professionals) Personal Data (Privacy) Ordinance and Electronic Health Record Sharing System (Points to Note for Healthcare Providers and Healthcare Professionals) The Electronic Health Record Sharing System Ordinance

More information

APPLETREE PEDIATRICS, PA NOTICE OF PRIVACY PRACTICES

APPLETREE PEDIATRICS, PA NOTICE OF PRIVACY PRACTICES APPLETREE PEDIATRICS, PA NOTICE OF PRIVACY PRACTICES THIS NOTICE DESCRIBES HOW MEDICAL INFORMATION ABOUT YOU MAY BE USED AND DISCLOSED AND HOW YOU CAN GET ACCESS TO THIS INFORMATION. PLEASE REVIEW IT CAREFULLY.

More information