Compliance Plan Required for ACO Participation



Similar documents
HIPAA Overview and updates since HITECH and PPACA

COMPLIANCE WITH LAWS AND REGULATIONS (CLR)

Sunday March 30, 2014, 9am noon HCCA Conference, San Diego

White Paper THE HIPAA FINAL OMNIBUS RULE: NEW CHANGES IMPACTING BUSINESS ASSOCIATES

PHI Air Medical, L.L.C. Compliance Plan

The Anti-Kickback Statute: A continuing compliance challenge. Suzanne Dallas Castaldo

Please Read. Apgar & Associates, LLC apgarandassoc.com P. O. Box Portland, OR Fax

Joe Dylewski President, ATMP Solutions

Securing Patient Portals. What You Need to Know to Comply With HIPAA Omnibus and Meaningful Use

Data Security and Integrity of e-phi. MLCHC Annual Clinical Conference Worcester, MA Wednesday, November 12, :15pm 3:30pm

HITRUST CSF Assurance Program You Need a HITRUST CSF Assessment Now What?

Santa Rosa Presents Webinar Series Electronic Health Records & Meaningful Use Incentives: Medicare & Medicaid

Code of Conduct. 3. SCOPE: All PHI Air Medical Personnel

Overview of Topics Covered

HIPAA Overview. Darren Skyles, Partner McGinnis Lochridge. Darren S. Skyles

Somansa Data Security and Regulatory Compliance for Healthcare

HIPAA The Law Explained. Click here to view the HIPAA information.

Decrypting the Security Risk Assessment (SRA) Requirement for Meaningful Use

HIT Audit Workshop. Jeffrey W. Short.

View the Replay on YouTube. Sustainable HIPAA Compliance: Enhancing Your Epic Reporting. FairWarning Executive Webinar Series October 17, 2013

Corporate Compliance, HIPAA & Privacy for Your Long Term Care Facility

Ethics, Privilege, and Practical Issues in Cloud Computing, Privacy, and Data Protection: HIPAA February 13, 2015

Compliance Training for Medicare Programs Version 1.0 2/22/2013

Medicare Advantage and Part D Fraud, Waste, and Abuse Training. October 2010

Understanding HIPAA Privacy and Security Helping Your Practice Select a HIPAA- Compliant IT Provider A White Paper by CMIT Solutions

ACO Accountable Care Organizations Cooperative Healthcare Requires Cooperative Security It s a Team Sport.

Developing HIPAA Security Compliance. Trish Lugtu CPHIMS, CHP, CHSS Health IT Consultant

Ready for an OCR Audit? Will you pass or fail an OCR security audit? Tom Walsh, CISSP

Medicare (Pioneer) Accountable Care Organization. Annual Compliance Training

HIPAA BUSINESS ASSOCIATE AGREEMENT

HIPAA-compliant Cloud Faxing

HIPAA in the Cloud How to Effectively Collaborate with Cloud Providers

Hosting for Healthcare: ADDRESSING THE UNIQUE ISSUES OF HEALTH IT & ACHIEVING END-TO-END COMPLIANCE

Federal Fraud and Abuse Laws

Need Assistance selecting an EMR/EHR? OCR Launches Full Scale HIPAA Audits in 2013 Are you ready for a HIPAA Audit?

Cyber Security An Exercise in Predicting the Future

HIPAA and HITECH Compliance for Cloud Applications

Well-Documented Controls Reduce Risk and Support Compliance Initiatives

2013 Healthcare Compliance Benchmark Study

ALLINA HOSPITALS & CLINICS System-wide Policy

HIPAA Security Rule Compliance

Auditing Mission-Critical Databases for Regulatory Compliance

Ensuring Privacy & Security of Patient Information

Arizona State University. HIPAA Compliance. Audit Report Number May 7, 2015

Medical Transportation Compliance. Mandated Compliance Guidance

Bridging the HIPAA/HITECH Compliance Gap

Compliance in an Outsourced World

The CIO s Guide to HIPAA Compliant Text Messaging

Meaningful Use Audit Red Flags: Pay Careful Attention To The Security Risk Analysis - Or Else

How To Write A Community Based Care Coordination Program Agreement

PrivacyPro ; A Key Component of Privacy Information Management Overview Whitepaper

BUSINESS ASSOCIATE PRIVACY AND SECURITY ADDENDUM RECITALS

The HIPAA Omnibus Final Rule

HIPAA RISKS & STRATEGIES. Health Insurance Portability and Accountability Act of 1996

RUTGERS POLICY. Policy Name: Standards for Privacy of Individually Identifiable Health Information

Why Lawyers? Why Now?

Compliance, Code of Conduct & Ethics Program Cantex Continuing Care Network. Contents

BUSINESS ASSOCIATE AGREEMENT

Sustainable Compliance: A System for Ongoing Audit Readiness

Assessing Your HIPAA Compliance Risk

CMS AND ONC FINAL REGULATIONS DEFINE MEANINGFUL USE AND SET STANDARDS FOR ELECTRONIC HEALTH RECORD INCENTIVE PROGRAM

Sustainable HIPAA Compliance: Protecting Patient Privacy through Highly Leveraged Investments

REGULATORY CHANGES DEMAND AN ENTERPRISE-WIDE APPROACH TO DISCLOSURE MANAGEMENT OF PHI

Accountable Care Organization. Medicare Shared Savings Program. Compliance Plan

ROLE OF CONTRACT MANAGEMENT IN A HEALTHCARE COMPLIANCE PROGRAM DESIGN

Nationwide Review of CMS s HIPAA Oversight. Brian C. Johnson, CPA, CISA. Wednesday, January 19, 2011

What Every Organization Needs to Know about Basic HIPAA Compliance and Technology. April 21, 2015

Meeting the HIPAA Training and Business Associate Requirements Questions and Answers, with HIPAA Security Expert Mike Semel

2/9/ HIPAA Privacy and Security Audit Readiness. Table of contents

Understanding HIPAA Regulations and How They Impact Your Organization!

North Carolina Health Information Management Association February 20, 2013 Chris Apgar, CISSP

Adding Cloud Solutions to Customer Contracts Robert J. Scott

Presented by Jack Kolk President ACR 2 Solutions, Inc.

HIPAA in the Cloud. How to Effectively Collaborate with Cloud Providers

WHITEPAPER XMEDIUSFAX CLOUD FOR HEALTHCARE AND HIPAA COMPLIANCE

1. Do I have to contact the pharmacies in my area before they start sending me refill requests electronically?

HIPAA, PHI and . How to Ensure your and Other ephi are HIPAA Compliant.

HIPAA Compliance and PrintFleet Software Applications

CODE OF CONDUCT. Our commitment to ethical conduct and compliance depends on all UHS personnel.

Integrity. Providence Integrity and Compliance Program Description

Office of Compliance and Ethics Introductory Report. Lynette Fons, Chief Compliance Officer

Stage 2 Medical Billing and reconciliation of Patients

How To Understand The Health Insurance Portability And Accountability Act (Hipaa)

HealthTECH Workforce Forum Presents: Electronic Health Records Adoption: Driving to 2015 and Beyond

False Claims, Exclusions, and Reporting Concerns

HIPAA Secure Now! How MSPs Can Profit From Selling HIPAA security services

InfoGard Healthcare Services InfoGard Laboratories Inc.

Four-step plan for HIPAA-compliant electronic communications. A road map for secure clinical communications

PCPCC National Briefing/Webinar

BUSINESS ASSOCIATE AGREEMENT

Objectives 5/5/2015. Quality Health Associates (QHA) of ND

Texas Medical Records Privacy Act (a.k.a. Texas House Bill 300)

The Impact of HIPAA and HITECH

MEDICARE COMPLIANCE TRAINING EMPLOYEES & FDR S Revised

The Basics of HIPAA Privacy and Security and HITECH

Privacy and Security Meaningful Use Requirement HIPAA Readiness Review

Health Insurance Portability and Accountability Act (HIPAA) and Health Information Technology for Economic and Clinical Health Act (HITECH)

Shipman & Goodwin LLP. HIPAA Alert STIMULUS PACKAGE SIGNIFICANTLY EXPANDS HIPAA REQUIREMENTS

Cornerstone Health Care, P.A.

ACO Fraud and Abuse Provisions

Transcription:

Compliance Plan Required for ACO Participation Presented by: Angela Miller Medical Auditing Solutions LLC 2012 (c)2012 Medical Auditing Solutions LLC 1

Experience Angela Miller over 18 years experience Certified in Healthcare Compliance Certified Medical Coder Founder of Medical Auditing Solutions 2005 Healthcare Compliance, HIPAA Programs, Billing, Collections Audits Billing and Coding Audits IT Audits PCI Compliance Training (c)2012 Medical Auditing Solutions LLC 2

Introduction Billing Compliance Programs are now required by 2013 with the new Health Care Reform Act & Patient Protection & Accountable Care Act signed in 2010 Sooner if you participate in ACO All Medicare & Medicaid Providers and all sizes Contracts, Relationships, and Billing It is in addition to HIPAA & HITECH requirements and PCI Compliance If you have questions on these come by our booth. (c)2012 Medical Auditing Solutions LLC 3

Compliance Program Required to Participate in ACO Program Integrity Requirements Compliance Plan ACO participant screenings Conflict of Interest Beneficiary Inducements Record Retention Corrective Action Plans http://www.gpo.gov/fdsys/pkg/fr-2011-11- 02/pdf/2011-27461.pdf (c)2012 Medical Auditing Solutions LLC 4

Compliance Plan So vague reference to Compliance Plan, Reference the OIG Compliance Guidance Plus all changes and requirements that have been added Refund overpayments within 60 days of identification (c)2012 Medical Auditing Solutions LLC 5

Compliance Plan Elements What are the essential components of a compliance program? Compliance Officer Compliance Committee Compliance Manual Standards of Conduct Policy & Procedure Manual Implementation of the Program Education & Training with Tracking 5 hr per year, min. Monitoring & Audit Procedures, annual min. Enforcement & Discipline Commitment from all employees (c)2012 Medical Auditing Solutions LLC 6

Compliance Plan Implementation Do you have a Standards of Conduct? Policies & Procedures on Billing, Contracts, Relationships, Overpayments, Corrective Action, Disciplinary Action, etc? Annual Training Documented and Proven? Reporting Process Setup? Risk Assessment and Auditing Process Setup? An employee, contractor, vendor screening process in place? (c)2012 Medical Auditing Solutions LLC 7

HIPAA & HITECH Transmission Security What security measures are currently being used to protect ephi during transmission for payment? Audit Controls What audit policies and procedures are in place to record and monitor the ephi for payment of healthcare services? Access Control What technical policies and procedures have been implemented to allow only authorized users access? (c)2012 Medical Auditing Solutions LLC 8

HIPAA & HITECH HIPAA (2003) & HITECH (2010) Compliance Programs are already required and OCR is auditing. For all Providers. Privacy primarily of PHI on paper Security is primarily guarding electronic PHI Do you have policies and procedures? Annual training of 2 hours minimum? IT Network and System audits? Do you have a PCI Certificate (Credit Card Terminal)? Are your transmitting data over public network? Do you realize the risk of credit card processing? (c)2012 Medical Auditing Solutions LLC 9

How We Help You We want to work with your ACO Participants To ensure they have an Effective Compliance Program, Active HIPAA Program Mandated Security Audits Active PCI Compliance Programs For continued participation in ACO Reduce overall ACO and provider risk One Stop Regulatory Compliance Needs (c)2012 Medical Auditing Solutions LLC 10

Questions What are your challenges? (c)2012 Medical Auditing Solutions LLC 11

Contact Information Angela Miller, CHC, President/CEO Medical Auditing Solutions, LLC MAS Compliance University 972-459-1508 or 409-673-7103 angela@medicalauditingsolutions.com (if you do not hear back via email in 24 hours, call me) www.medicalauditingsolutions.com All 7 hours of Training Available at: ComplianceUniversity.MedicalAuditingSolutions.com Follow us on Linkedin, Facebook, Blog & others (c)2012 Medical Auditing Solutions LLC 12