Negotiating EHR Agreements: Complying with HIPAA, Stark and AKS, Overcoming Privacy and Security Risks

Similar documents
Electronic Health Record License Agreements

How To Listen To A Conference On A Computer Or Cell Phone

Presenting a live 90-minute webinar with interactive Q&A. Today s faculty features:

ERISA Retirement Plans: Fiduciary Compliance and Risk Management for Investment Fund Selection and Fee Disclosures

Captive Insurance Companies in Estate Planning: A Profit Maximization and Risk Reduction Tool

Medical Expert Depositions in Workers' Comp Cases

Managing Sales Tax Data: Streamlining Internal Controls to Maximize Compliance Efficiency

Overcoming Ethical Challenges for Multi-Firm Lawyers and Their Firms: Fiduciary Duty, Conflict, Fee-Splitting and More

M&A Purchase Price Adjustment Clauses

Structuring Rooftop Lease Agreements: Legal and Business Considerations

Payment and Performance Surety Bonds in Construction Projects: Perspectives of Owners, Contractors and Sureties

Builder's Risk Insurance for Construction Projects: Legal Issues

Structuring Covenants in Leveraged Loans and High Yield Bonds for Borrowers and Lenders

Negotiating EBITDA and Financial Covenants in Middle Market Loan Agreements

Ensuring HIPAA Compliance When Transmitting PHI via Patient Portals, and Texting

for Landlords and Tenants Negotiating Insurance, Indemnity and Mutual Waiver of Subrogation Provisions

Sales Tax Audits in the Era of Digital Documentation Preparing for a Computer-Based Review Involving Electronic Invoices, Bills of Lading, Etc.

Commercial Leases: Risk Mitigation Strategies for Landlords and Tenants

Solar Leases: Legal Considerations for Property Owners

Presenting a live 90-minute webinar with interactive Q&A. Today s faculty features: Dean C. Berry, Partner, Cadwalader Wickersham & Taft, New York

Mobile Medical Devices and BYOD: Latest Legal Threat for Providers

Divorce: When a Spouse Files Bankruptcy

Settling Wage/Hour Claims: Weighing Settlement Options, Negotiating Damages, and Ensuring Court Approval

Preview of the Attestation System for the Medicare Electronic Health Record (EHR) Incentive Program

Estate Planning Using LLCs and Limited Partnerships Achieving Estate Tax Savings Through Valuation Discounts, Protecting Against Creditor Claims

EMR SHARING AND CONTRACTING ISSUES, RISKS AND PITFALLS KEVIN M. MOONEY, ESQ. COUNSEL/CHAIR IT PRACTICE GROUP THE CLEVELAND CLINIC FOUNDATION

HIPAA Audits: Preparing for Phase 2 Audits for Covered Entities and Business Associates

Presenting a live 90-minute webinar with interactive Q&A. Today s faculty features:

Commercial Real Estate Loans: Structuring Covenants, Events of Default Provisions and MAC Clauses

Marital Deduction Revocable Trusts: Funding Formulas to Minimize Tax and Maximize Spousal Benefits

ESI Discovery in Federal Criminal Cases: Leveraging the New JETWG Recommendations

Business Entity Conversions: Income Tax Consequences You May Not Anticipate

EHR Donation: Compliance with Stark Law and the Anti-Kickback Statute

Performance Bonds and CGL Insurance In Construction Projects: Navigating the Interplay Between Insurance and Surety

SBA Lending: Documenting, Closing and Servicing 7(a) and CDC/504 Loans

Rebecca Williams, RN, JD Partner Co-chair Health Information Technology/HIPAA Practice Davis Wright Tremaine LLP

Allocating Defense Costs Among Multiple Insurers and Between Covered and Uncovered Claims

Receivable and Inventory Strategies for Lenders and Borrowers Crafting Commercial Loan and Security Agreements

Structuring 340B Contract Pharmacy Arrangements: Meeting Legal and Regulatory Requirements

5/11/2015 AGENDA ROUNDTABLE PARTICIPANTS TALES FROM THE FRONTLINES OF MEANINGFUL USE: FOCUS ON OPTOMETRY

The Impact of Proposed Meaningful Use Modifications for June 23, 2015

New Partnership Debt for Equity Exchange Regulations Navigating Issues With COD Income, Gains and Losses, and Other Aspects of Sect.

Structuring Equity Compensation for Partnerships and LLCs

group practice journal

New Safe Harbors and Stark Exceptions for Electronic Prescribing and Electronic Health Records Arrangements

State Level Registration for Medicaid EHR Incentive Program. - Hospitals -

How To Defend An Ehr Subsidy

Meaningful Use Requires Meaningful Laboratory Results

As of January 1, 2014 all EHR certifications are required to meet 2014 Edition Criteria.

Adopting Electronic Medical Records: What Do the New Federal Incentives Mean to Your Individual Physician Practice?

CMS EHR Incentive Programs:

Estate and Trust Form 1041 Issues for Tax Return Preparers

Who are we? *Founded in 2005 by Purdue University, the Regenstrief Center for Healthcare Engineering, and the Indiana Hospital Association.

Medicare Attestation Guide

Generating a Certified EHR Technology (CEHRT) ID number through the Certified Health IT Product List (CHPL) site

VA Benefits and Medicaid Eligibility Meeting Complex Requirements for Benefits Qualification and Application

Wisconsin Medicaid Electronic Health Record Incentive Program for Eligible Hospitals

How to Play by the (Final) Rules:

STATE MEDICAID ELECTRONIC HEALTH RECORD INCENTIVE PROGRAM STAGE 1 AND 2 ATTESTATION REFERENCE GUIDE

Stage 2 Medical Billing and reconciliation of Patients

Federal Fraud and Abuse Laws

Builder's Risk and CGL Insurance for Construction Projects: Mitigating Developer and Contractor Risks

Meaningful Use: Registration & Attestation Eligible Professionals

Health information technology donations: A guide for physicians. Readiness survey inside

STATE MEDICAID ELECTRONIC HEALTH RECORD INCENTIVE PROGRAM STAGE 1 AND 2 ATTESTATION REFERENCE GUIDE WITH FLEXIBILITY

AHLA. Y. Advising Providers in Adopting or Substituting a Health IT System. Charles C. Dunham Bond Schoeneck & King PLLC Albany, NY

Considering Meaningful Use Participation when Acquiring a Hospital or Professional Practice

North Carolina Medicaid Electronic Health Record Incentive Program

Maryland Electronic Health Records (EHR) Incentive Program Registration and Attestation System. Provider User Guide. Version 2

Export Controls and Cloud Computing: Legal Risks

Leveraging New IRS Rules Eliminating 36-Month Testing Period for Cancellation of Debt Income

Insurance Due Diligence in M&A Deals: Evaluating Coverage and Gaps, Mitigating Risks and Potential Liabilities

How To Get A Meaningful Use Of Your Ehr

Maryland Electronic Health Records (EHR) Incentive Program Registration and Attestation System. Provider User Guide. Version 3

Meaningful Use for Physician Offices

STAGE 2 of the EHR Incentive Programs

Wisconsin Medicaid Electronic Health Record Incentive Program for Eligible Professionals

Providing Subsidized EHR to Physicians Under Stark and Anti-Kickback Statute. Charles B. Oppenheim, Esq.

Eligible Professional s Checklist 2015 Modified Stage 2 Meaningful Use

Legal Issues in Electronic Health Records Acquisition, Implementation and Monitoring

Structuring Physician Group Practices: Key Legal Considerations

To: From: Date: Subject: Proposed Rule on Meaningful Use Requirements Stage 2 Measures, Payment Penalties, Hardship Exceptions and Appeals

Demonstrating Meaningful Use of EHRs: The top 10 compliance challenges for Stage 1 and what s new with 2

How To Test For Meaningful Use In Minnesota

What is the Meaning of Meaningful Use? How to Decode the Opportunities and Risks in Health Information Technology

Meaningful Use Stage 2

Welcome to the PAHCOM/CMS Webinar Series on EHR Incen5ves

MEDICAL ASSISTANCE STAGE 2 SUMMARY

Stock Options in an Employee Stock Purchase Plan: Mastering the New IRS Regs Meeting the Comprehensive Rules for Plan Qualification and Tax Treatment

Health Law Bulletin. New Stark Law Exception and Anti-Kickback Statute Safe Harbor for E-Prescribing and Electronic Health Record Technology

Dermatology Practice Mergers, Acquisitions, Divestitures and Affiliations

Medisoft Clinical and Lytec MD EHR Meaningful Use Stage 2 Guide Configuration and End User Training 2014 and Beyond

Overcoming EHR Certification Hurdles & Gaps

Presenting a live 90-minute webinar with interactive Q&A. Today s faculty features:

HIPAA Compliance During Litigation and Discovery

NYS-HCCN TECHNICAL ASSISTANCE FOR USERS OF VITERA INTERGY

Meaningful Use 2015 and beyond. Presented by: Anna Mrvelj EMR Training Specialist

Medicaid EHR Incentive Program. Focus on Stage 2. Kim Davis-Allen, Outreach Coordinator

Meaningful Use Stage 2

Transcription:

Presenting a live 90-minute webinar with interactive Q&A Negotiating EHR Agreements: Complying with HIPAA, Stark and AKS, Overcoming Privacy and Security Risks Acquiring an EHR and Meeting Incentive Program Requirements WEDNESDAY, JULY 16, 2014 1pm Eastern 12pm Central 11am Mountain 10am Pacific Today s faculty features: Michael Batt, Shareholder, Hall Render Killian Heath & Lyman, Indianapolis Ammon R. Fillmore, Hall Render Killian Heath & Lyman, Indianapolis Pam Titus, MBA, Senior Account Manager, Spectrum Health, Grand Rapids, Mich. The audio portion of the conference may be accessed via the telephone or by using your computer's speakers. Please refer to the instructions emailed to registrants for additional information. If you have any questions, please contact Customer Service at 1-800-926-7926 ext. 10.

Tips for Optimal Quality FOR LIVE EVENT ONLY Sound Quality If you are listening via your computer speakers, please note that the quality of your sound will vary depending on the speed and quality of your internet connection. If the sound quality is not satisfactory, you may listen via the phone: dial 1-866-927-5568 and enter your PIN when prompted. Otherwise, please send us a chat or e-mail sound@straffordpub.com immediately so we can address the problem. If you dialed in and have any difficulties during the call, press *0 for assistance. Viewing Quality To maximize your screen, press the F11 key on your keyboard. To exit full screen, press the F11 key again.

Continuing Education Credits FOR LIVE EVENT ONLY For CLE purposes, please let us know how many people are listening at your location by completing each of the following steps: In the chat box, type (1) your company name and (2) the number of attendees at your location Click the SEND button beside the box If you have purchased Strafford CLE processing services, you must confirm your participation by completing and submitting an Official Record of Attendance (CLE Form). You may obtain your CLE form by going to the program page and selecting the appropriate form in the PROGRAM MATERIALS box at the top right corner. If you'd like to purchase CLE credit processing, it is available for a fee. For additional information about CLE credit processing, go to our website or call us at 1-800-926-7926 ext. 35.

Program Materials FOR LIVE EVENT ONLY If you have not printed the conference materials for this program, please complete the following steps: Click on the ^ symbol next to Conference Materials in the middle of the lefthand column on your screen. Click on the tab labeled Handouts that appears, and there you will see a PDF of the slides for today's program. Double click on the PDF and a separate page will open. Print the slides by clicking on the printer icon.

EHR Agreements: Acquiring an EHR and Meeting Incentive Program Requirements (Complying with HIPAA, Stark, and Anti-Kickback Statutes, Overcoming Privacy and Security Risks)

Presenters Michael Batt Hall, Render, Killian, Heath & Lyman, P. C. mbatt@hallrender.com Ammon Fillmore Hall, Render, Killian, Heath & Lyman, P.C. afillmore@hallrender.com Pam Titus Spectrum Health Pam.Titus@spectrumhealth.org 6

Define the Transaction Hospital evaluates the provision of certified electronic health record technology ( EHR or CEHRT ) to employed and non-employed medical staff (Allied Professionals) as a service. Negotiation and acquisition of an ambulatory EHR system. Build and pilot ambulatory EHR to employed medical staff. Promotion and rollout of ambulatory EHR to Allied Professionals through a donation program. Governance of the shared EHR environment and management of physician expectations. 7

Development of an EHR Donation Program Subject to limitations set forth in the applicable safe harbor and exception, through 2021 hospitals can donate 85% of the cost of items and services (in the form of software and training services) necessary and used predominantly to create, maintain, transmit or receive electronic health records. In addition, if the donor is a not-for-profit, the donor should consider the guidance provided by the IRS to avoid the donation being treated as an impermissible private benefit or inurement. 8

Acquisition of an EHR and Associated Physician Office Module EHRs are provided in a number for formats: Self-hosted, single database for both acute and ambulatory care. Self-hosted, separate databases with interfaces for acute care, ambulatory care and specialists. Remote-hosted, each hosted solution provided as a separate database with interface. A blend of any of the above. 9

Provision of Physician Office EHR to Allied Professionals Does the hospital provide the EHR as a service? or Does the hospital provide the funding for the EHR? 10

Governance of a Shared EHR Environment When the hospital is providing the Allied Professionals with an EHR, it becomes a service provider. How to set and maintain physician expectations in a world of rapidly changing regulations and developing standards of meaningful use. 11

Reporting of Meaningful Use of EHR System The hospital provisioned EHR will be the tool utilized by the Allied Professionals to make the attestation associated with being a meaningful user of Certified Electronic Health Record Technology. What does this mean and how does the hospital perform services as necessary in order to allow attestation to happen? 12

13 Acquiring the EHR

What Are You Buying? What are the functional requirements for your hospital (clinical and operational) and medical staff (employed and private practice), and are they defined in the Agreement? Does your EHR license agreement permit the resale of access and use of the EHR software to affiliates and Allied Professionals? 14

How Do We Know We Got It? Does the licensing include acceptance testing for both the acute and ambulatory care settings and a clear escalation and exit path if acceptance is not achieved? 15

How Do We Preserve Our Investment? Does the EHR license agreement properly protect the hospital from costs associated with upgrades, updates, product sunsets and an evolving regulatory landscape? Does the EHR license agreement meaningfully define service levels and reporting about service performance? Does the EHR license agreement reasonably allocate risks for compliance with law and regulatory changes? 16

Implementing the EHR Practical Solutions: A few tales from the road. Unexpected hurdles and how we got over them. 17

Ownership of Patient Information If the EHR is provided in multiple instances, one for each Allied Professional or practices, patient data is easily segregated. If patient data is maintained in a single or limited number of databases identifying the owner and extracting patient data at a time of disengagement (termination of the shared EHR relationship) can be much trickier. 18

Access to Patient Information Some configurations of a hospital hosted ambulatory EHR will impose the hospital s privacy and security policies on the access and use of the shared EHR. In these cases, the hospital will need to coordinate and educate physician office staff on the applicable policies. 19

Reselling the EHR to the Allied Professional Is the hospital and its IT staff ready to be the service provider of the main IT system of the Allied Professionals? 20

The EHR Services Agreement The hospital and physician practice must memorialize the provision of any services and any donation in writing. The EHR services agreement should limit the hospital s liability to only those things within the hospital s control. The exclusive remedy for the physicians should be reperformance of the services by the hospital. 21

Passing Through the EHR Licensor s Terms The Allied Professionals should receive the benefit of any warranty that can be assigned in the hospital s EHR Vendor Agreement. The assignment of pass through warranties should release the hospital form any further liability. 22

Management of the Environment Physician Governance Counsel. Receiving physician input, without giving up control. Limiting the scope of IT support, it is a Stark issue. 23

Pricing Cost Fair Market Value Pass Through Cost Time and Materials for Additional Work 24

Donation Agreements (Stark, Anti-Kickback and Tax Exempt) 13 Requirements, plus the IRS Memo s 4 Points Must be in writing. 85% of subsidy. Non-monetary remuneration (money should flow directly to vendor not physician). Upgrades, updates, standardization can be permitted in limited circumstances. Tax-exempt entities must justify variations among medical staff or provide the subsidy to all medical staff on the same terms. 25

Standardized Workflow Provision of an EHR solution as a service impacts physician workflow. Understand, anticipate and respond to physician complaints. 26

Meaningful Use Incentive Payment Program Requirements 27

Is Your EHR Certified for Meaningful Use? To earn an incentive payment, you must use CEHRT. CERHT must be certified by the Office of the National Coordinator for Health Information Technology-Authorized Testing and Certification Body. CEHRT can be either Modular or Complete Updated CEHRT list at: http://oncchpl.force.com/ehrcert?q=chpl 28

Is Your EHR Certified for Meaningful Use? Does your CEHRT cover all applicable Meaningful Use Measures? Be aware: ONC can de-certify CEHRT (April 2013) EHRMagic-Ambulatory EHRMagic-Inpatient Using multiple CEHRT s to meet Meaningful Use Remote Locations? Planning for updates, upgrades and beyond. 29

Stage 1 Requirements: Stage 1 and Stage 2 Objectives and Beyond New Proposed Rules: 2013 vs 2014 Requirements Notable Objectives: Protect electronic health information created or maintained by the certified EHR technology through the implementation of appropriate technical capabilities. Use computerized provider order entry (CPOE) for medication orders directly entered by any licensed health care professional who can enter orders into the medical record per state, local and professional guidelines. 30

Stage 2 Requirements: Notable Objectives: Stage 1 and Stage 2 Objectives and Beyond The Eligible Professional who transitions their patient to another setting of care or provider of care or refers their patient to another provider of care should provide summary care record for each transition of care or referral. Provide patients the ability to view online, download and transmit their health information within four business days of the information being available to the Eligible Professional. 31

Stage 1 and Stage 2 Objectives and Beyond Stage 3 Requirements (anticipated for 2017): Examples of Proposed Measures: Provide the ability to electronically submit patient-generated health information through structured or semi-structured questionnaires (e.g., screening questionnaires, intake forms, risk assessment, functional status) for more than 10% of all unique patients seen by the Eligible Professional during the EHR reporting period. Eligible Professionals should make information available within 24 hours if generated during the course of a visit. The Eligible Hospitals will send electronic notification of a significant health care event in a timely manner to key members of the patient s care team, such as the primary care provider, referring provider or care coordinator, with the patient s consent if required. 32

Challenges with Patient Portals Many Patient Portals are designed as a turnkey solution. Privacy Policy HIPAA Compliance Help Desk Responsibilities Designed to operate as a Shared Patient Portal 33

Be Prepared for a Meaningful Use Audit Approximately 1 in 20 Meaningful Use participants are audited. Audits can be performed by either CMS or State Medicaid third party auditor. Hospital may need to assist physician office with audit requirements. Do your agreements contemplate: Audit Assistance Audit Failure 34

HIPAA / Security The provision of an EHR as a hospital hosted service may place a great deal of control for HIPAA compliance in the hospital s hands. Consideration should be given to what hospital privacy and security policies and procedures will apply to recipients of the EHR service or if additional policies and procedures will need to be developed. 35

Technical Security Requirements for Physician Office End Points In hospital hosted model, the hospital may restrict access to only end users who comply with the applicable access policies. A shared database may require Allied Professional offices to adopt hospital procedures for remote login. 36

Business Associate Obligations 2013 Omnibus Final Rule Hospital should be able to answer the following: Do hospitals Business Associate Agreements with Vendors contemplate the Hospital functioning as a Service Provider? Do Business Associate Agreements contemplate a Hosted Environment? 37

Access Procedures for Shared Database What rights does the hospital or Allied Professionals have to run reports on shared patient records? What rights do vendors and content providers have to run analytics on the database data? 38