HIPAA. August 12, 2008



Similar documents
HIPAA Training for Hospice Staff and Volunteers

8.03 Health Insurance Portability and Accountability Act (HIPAA)

HIPAA Training for Staff and Volunteers

HIPAA Awareness Training

HIPAA Training For Research Investigators and Study Staff

HIPAA Privacy at SCG...

2014 Core Training 1

HIPAA In The Workplace. What Every Employee Should Know and Remember

What is HIPAA? The Health Insurance Portability and Accountability Act (HIPAA) was enacted in 1996.

HIPAA, Licensed Health Care Providers and The Ohio State Dental Board (Board)

HIPAA and Privacy Policy Training

Louisiana Department of Health and Hospitals Basic HIPAA Privacy Training: Policies and Procedures

ACRONYMS: HIPAA: Health Insurance Portability and Accountability Act PHI: Protected Health Information

Protection of Clients' Personal Health Information G & G LIVING CENTERS, INC.'s Privacy Practices

Health Insurance Portability and Accountability Act of 1996 (HIPAA) Contents

HIPAA Auditing Tool. Department: Site Location: Visit Date:

HIPAA Privacy Overview

HIPAA 101: Privacy and Security Basics

HIPAA Privacy Overview

HIPAA SELF STUDY TRAINING GUIDE

CREATIVE SOLUTIONS IN HEALTHCARE, INC. Privacy Policy

HIPAA And Public Health. March 2006 Delaware s Division of Public Health 1

ELECTRONIC HEALTH RECORDS

HIPAA Privacy Policy & Notice of Privacy Practices

Health Insurance Portability and Accountability Act (HIPAA)

HIPAA Privacy & Security Health Insurance Portability and Accountability Act

HIPAA The Law Explained. Click here to view the HIPAA information.

JEWISH FAMILY SERVICE NOTICE OF PRIVACY PRACTICES

HIPAA Security Rule Compliance

HIPAA PRIVACY AND SECURITY AWARENESS. Covering Kids and Families of Indiana April 10, 2014

Welcome to the Privacy and Security PowerPoint presentation in the Data Analytics Toolkit. This presentation will provide introductory information

General Compliance. General Compliance Training. Course Overview. General Compliance. The intent of the Compliance Program is to:

Metropolitan Living, LLC 151 W. Burnsville Parkway, Suite 101 Burnsville, MN Ph: (952) Fax: (651)

HIPAA PRIVACY DIRECTIONS. HIPAA Privacy/Security Personal Privacy. What is HIPAA? 6/28/2012

Page 1. NAOP HIPAA and Privacy Risks 3/11/2014. Privacy means being able to have control over how your information is collected, used, or shared;

ELKIN & ASSOCIATES, LLC. HIPAA Privacy Policy and Procedures INTRODUCTION

The Family Counseling Center of Fulton County NOTICE OF PRIVACY PRACTICES

Patient Privacy and HIPAA/HITECH

HIPAA. Developed by The University of Texas at Dallas Callier Center for Communication Disorders

Privacy and Information Security Awareness Training. Health Insurance Portability & Accountability Act of HIPAA

HIPAA Privacy & Security Training for Clinicians

Donna S. Sheperis, PhD, LPC, NCC, CCMHC, ACS Sue Sadik, PhD, LPC, NCC, BC-HSP Carl Sheperis, PhD, LPC, NCC, MAC, ACS

Notice of Privacy Practices

Heather L. Hughes, J.D. HIPAA Privacy Officer U.S. Legal Support, Inc.

SDC-League Health Fund

Health Insurance Portability and Accountability Act (HIPAA) Overview

HFS DATA SECURITY TRAINING WITH TECHNOLOGY COMES RESPONSIBILITY

This notice describes how psychological and medical information about you may be used and disclosed and how you can get access to this information.

3/13/2015 HIPAA/HITECH WHAT S YOUR COMPLIANCE STATUS? Daniel B. Mills Pretzel & Stouffer, Chartered WHAT IS HIPAA?

Privacy for Beginners: What Every Healthcare Worker Needs to Know About HIPAA and Privacy

TOURO UNIVERSITY WORLDWIDE AND TOURO COLLEGE LOS ANGELES IDENTITY THEFT PREVENTION POLICY 1.0 POLICY/PROCEDURE 2.0 PURPOSE 3.0 SCOPE 4.

What is HIPAA? The Health Insurance Portability and Accountability Act of 1996

SCHOOL DISTRICT OF BLACK RIVER FALLS HIPAA PRIVACY AND SECURITY POLICY

NOTICE OF PRIVACY PRACTICES


Schindler Elevator Corporation

THE HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT (HIPAA) EMPLOYEE TRAINING MANUAL

Health Insurance Portability and Accountability Act of 1996 (HIPAA)

HIPAA POLICY PROCEDURE GUIDE

HIPAA and You The Basics

SCDA and SCDA Member Benefits Group

Section C: Data Use Agreement. Illinois Department of Healthcare and Family Services. And DATA USE AGREEMENT

HIPAA Security Manual Administrative Security/Omnibus Rule

HIPAA Self-Study Module Patient Privacy at Unity Health Care, Inc HIPAA Hotline

Approved By: Agency Name Management

HIPAA: Privacy/Info Security

Department of Health and Human Services Policy ADMN 004, Attachment A

USES AND DISCLOSURES OF HEALTH INFORMATION

TriageLogic Information Security Policy

Guide to INFORMATION SECURITY FOR THE HEALTH CARE SECTOR

INFORMATION SECURITY & HIPAA COMPLIANCE MPCA

HIPAA Happenings in Hospital Systems. Donna J Brock, RHIT System HIM Audit & Privacy Coordinator

Business Associate Agreement

HIPAA PRIVACY AND SECURITY AWARENESS

Privacy & Security of Patient Information 2010

Grand Rapids Medical Education Partners Mercy Health Saint Mary s Spectrum Health. Pam Jager, GRMEP Director of Education & Development

HIPAA Employee Training Guide. Revision Date: April 11, 2015

Clinician s Guide to HIPAA Privacy. I. Introduction What is HIPAA? Health Information Privacy Protected Health Information

PHI- Protected Health Information

BUSINESS ASSOCIATE AGREEMENT ( BAA )

NOTICE OF HIPAA PRIVACY AND SECURITY PRACTICES

APPENDIX 1: Frequently Asked Questions

Alphabet Soup - GLBA, FERPA and HIPAA: Security Best Practices

Dear New Lilly Associate and Spouse or Domestic Partner:

HIPAA Compliance Annual Mandatory Education

Welcome to ChiroCare s Fourth Annual Fall Business Summit. October 3, 2013

HIPAA TRAINING. A training course for Shiawassee County Community Mental Health Authority Employees

Policy Scope: The policy applies across the Division to all DPH workgroups who maintain, use, have access to, or come into contact with IIHI.

Under the Start Your Search Now box, you may search by author, title and key words.

HIPAA Employee Compliance Program TRAINING MANUAL

PROTECTING PATIENT PRIVACY and INFORMATION SECURITY

HIPAA NOTICE OF PRIVACY PRACTICES

HIPAA Privacy Keys to Success Updated January 2010

HIPAA and the HITECH Act Privacy and Security of Health Information in 2009

Section 5 Identify Theft Red Flags and Address Discrepancy Procedures Index

CHIS, Inc. Privacy General Guidelines

HIPAA Compliance for Students

HIPAA Privacy Policies

HIPAA 100 Training Manual Table of Contents. V. A Word About Business Associate Agreements 10

HIPAA COMPLIANT STORAGE AND ACCESS POLICY

Transcription:

HIPAA August 12, 2008

What does HIPAA mean? Health Insurance Portability and Accountability Act Intended to improve portability of health insurance coverage Intended to reduce waste, fraud and abuse Intended to increase access to long-term care services and coverage Intended to simplify the administration of health insurance

Why does HIPAA apply to Imagine! Health Insurance-use use of group insurance- Medicaid Imagine! is a Covered Entity under definitions of HIPAA Imagine! transmits health/billing information electronically

HIPAA Basics Privacy Regulations intended to: Give consumers/guardians control over health information Create boundaries for use and disclosure of health information Create safeguards to ensure protection of consumer information Create accountability measures for violations of policies

What is PHI? Protected Health Information Any information that could be reasonably expected to identify the individual in services or their family or contact persons: Name Social Security Number/Medicaid Number Address/Phone Number Photograph Email address

HIPAA Basics All information maintained by Imagine! is considered to be individually identifiable All information, both written and verbal, needs to be safeguarded Imagine! must ensure that health information is used appropriately and not abused Imagine! must ensure that the minimum amount of information is disclosed

How does Imagine! protect PHI? Collectively used printers and fax machines are to be located in areas not accessible to the general public Employee mailboxes have folders to be used to place documents with PHI Envelopes secure documents when going from building to building or to provider organizations Boxes for documents to be shred are located throughout the Imagine! offices

PHI Protections Protecting PHI in the office: Ensure that documents with PHI are not left in public areas of Imagine! Copiers/printers/fax machines Pick up print jobs promptly Unclaimed print jobs will be shred during the day If you see print jobs with PHI, turn the document upside down, deliver to person who printed, if able Documents left exposed in work areas Close record, turn documents upside down, lock information in records room, lock information in filing cabinet or desk at end of work day

Other Ways to Protect PHI Work areas Lists that are posted in work areas, should not include first and last names of individuals Photographs-releases, releases, use of first name or initials General Identifying information about an individual should not be discussed in public, public areas of the Imagine! offices or with those who are not entitled to PHI Discussions in public should not include consumer/family last names Discussions in public should not include other information that may breech confidentiality

Other Ways to Protect PHI Main records (CCB) are not permitted out of the Imagine! Dixon building No main records may be out of the records room overnight Confidential information that will not be stored securely will be b shred All computers are to be password protected Screen savers are to activate after 5 minutes and are password protected Release of information forms will be used as required Limited information can be released per Imagine! Policy and Procedure Documents are not to be stored in vehicles; while traveling, documents should be secured in the trunk of the car or in a locking box If working at home, documents or electronic information should not be accessible by other members of the household

Who has access? Release of information is not needed for: Individual receiving services Parent or guardian of the individual Authorized representative, if designated Employees of Imagine!, Department of Human Services, Department of Health, Division for Developmental Disabilities Approved service providers Imagine! Committee members, as needed

When can others have access? With a release from the consumer, parent of a minor or guardian With a Business Associate Agreement When ordered by the court (need to go through Case Management department) When there is a public health risk When civil or law enforcement needs information in connection with an allegation or crime Other