How To Assess Records Risk In An Ehr System



Similar documents
HL7 and HIT Standards

HL7 EHR-S Records Management & Evidentiary Support Functional Profile

HL7 PHR System Functional Model

Health Level Seven Records Management & Evidentiary Support (RM-ES) Supporting Clinical Documentation for Legal and Billing Purposes

6/8/2012. Cloning and Other Compliance Risks in Electronic Medical Records

HL7 EHR System Functional Model and Standard (ISO/HL ), Release 2

ISO/HL EHR System Functional Model Standard

Meaningful Use HL7 Version 2

Health IT Enabled Quality Measurement and Improvement: The HL7 Clinical Quality Information Workgroup

This document is a preview generated by EVS

Newcomer s Session *

Functional Profile Starter Pack based on HL7 EHR System Functional Model Release 2 (EHRS FM) 7 March 2014

How To Use A Medical Student Note For A Billable Service

AN ANALYSIS OF ELECTRONIC HEALTH RECORD-RELATED PATIENT SAFETY CONCERNS

Audit Compliance and Internal Audit Analysis for Dynamics

HIPAA for HIT and EHRs. Latest on Meaningful Use and EHR Certification: For Privacy and Security Professionals

2015 List of Major Management Challenges for the CFPB

AUSTIN INDEPENDENT SCHOOL DISTRICT INTERNAL AUDIT DEPARTMENT TRANSPORTATION AUDIT PROGRAM

HEALTH IT! LAW & INDUSTRY

Private Circulation Document: IST/35_07_0075

EHR Interoperability Framework Overview

THE CHALLENGE OF COORDINATING EMR

U.S. Department of Energy Office of Inspector General Office of Audits and Inspections

ALLOWING MEDICAL STUDENT DOCUMENTATION IN THE ELECTRONIC HEALTH RECORD. Background and Purpose

Hospital Certified Electronic Health Record (EHR) Technology Questionnaire

Interim Final Rule on Standards, Implementation Specifications, and Certification Criteria

7 Directorate Performance Managers. 7 Performance Reporting and Data Quality Officer. 8 Responsible Officers

Session 17 Windows 7 Professional DNS & Active Directory(Part 2)

Meaningful Use and Release of Information

Navigating Compliance Landmines in EHR Documentation

Personal data protection in Electronic Health Records and the mandatory use of HL7 standards in Mexico

Process Improvement: Impact on Provider Efficiency and Patient Care

The KHIE ConnectionPartnering to Improve Patient Health Outcomes

BEING MOBILE WITH WINDOWS 8.1

This document explains how to use Skyward s ACA Tracker to analyze employee ACA Hours and forecast future hours.

WEDI National Pre-Conference Program May 19, 2008

HL7 Personal Health Record System Functional Model and Standard & Industry Update

How To Use Haccp 4.1.1

Fluency Direct. Proof of Concept Requirements

York Catholic District School Board

Structured Data Capture (SDC) Trial Implementation

HL7 FHIR The Argonaut Project C-CDA

Self-Assessment of eresearch Compliance with 21 CFR Part 11, Electronic Record; Electronic Signatures

HL7 Clinical Genomics and Structured Documents Work Groups

MEDITECH CUSTOMERS & THE OIG QUESTIONNAIRE

CHAPTER 5 - SAFETY ASSESSMENTS, LOG OF DEFICIENCIES AND CORRECTIVE ACTION PLANS

Healthcare Information Exchange Software Testing

International Trade Administration

IT Service Continuity Management PinkVERIFY

Aberdeen City Council IT Security (Network and perimeter)

Assessing a Scientific Data Center as a Trustworthy Digital Repository

5/16/2014. Revenue Cycle Impact Documentation risks in an EMR AGENDA. EMR Challenges Related to Billing and Revenue Cycle

Auditing After a Cyber Attack JAX IIA Chapter Meeting Cybersecurity and Law Enforcement

Effectively Assessing IT General Controls

CITY OF VAUGHAN EXTRACT FROM COUNCIL MEETING MINUTES OF MARCH 24, 2015

Your responses will be saved every time you click the NEXT button.

Service Asset & Configuration Management PinkVERIFY

Compliance Risk Management IT Governance Assurance

Intel Entry Storage System SS4200-E Active Directory Implementation and Troubleshooting

HIPAA 203: Security. An Introduction to the Draft HIPAA Security Regulations

Electronic Health Records - An Overview - Martin C. Were, MD MS March 24, 2010

The presentation will begin in a few moments

A Database Security Management White Paper: Securing the Information Business Relies On. November 2004

THE CASL COUNTDOWN. Your week-by-week checklist to ensure your organization is CASL-ready for July 1st

An Overview of Information Security Frameworks. Presented to TIF September 25, 2013

Privacy Impact Assessment (PIA) for the. Certification & Accreditation (C&A) Web (SBU)

SharePoint Case Management System an Introduction

Aligning CMMI & ITIL. Where Am I and Which Way Do I Go? cognence, inc.

Transcription:

EHR Records Risk Assessments An Evolving Use of the EHR System Functional Model Standard HIMSS HL7 April 15, 2015 Reed D. Gelzer, MD, MPH Co-Chair, HL7 EHR Workgroup Co-Faciltator, HL7 EHR Records Management and Evidentiary Support Workgroup and HL7 EHR/Security Vocabulary Alignment Workgroup Provider Resources, Inc.

Overview EHR-S FM R2: Normative Standard The HL7 EHR-S Functional Model defines a standardized model of the functions that may be present in EHR Systems. 2

Overview What is Records Risk? What does Records Risk look like? How does the EHR-S FM R2 (aka R2) help? 3

Records Risk Records: Representations of acts and events in the real world Risks to their value as accurate representations: Reliable means of origination Security Authenticity Persistence 4

Origination Risk A group of inexperienced and uncertified inspectors for the Department of Licenses and Inspection conducted around 600 inspections of unsafe buildings in a single week last month, the Inquirer has learned. Each of the newly hired inspectors then recorded their work in L&I s database under the name of another man, an experienced inspector with the agency. 5

Origination Risk 6

8

EHR Systems: Systems of Systems Recommendation: Release of Information (ROI) Risk Assessment Evaluating: 1. Authorship 2. Log ( Audit ) functions 3. Amendments 9

Origination For Authenticity Recommendation: Release of Information (ROI) Risk Assessment Examples: Records releases for business or clinical requests (legal process or claims support/revenue integrity) Data extracts to support Quality measures Transitions of Care Support 10

EHR Functional Model

R2 Checklist: Originate & Retain 13

R2 Checklist: Originate & Retain 1. The system SHALL provide the ability to capture (originate) a Record Entry instance corresponding to an Action instance and context. 14

Checklist: Evidence of Originate & Retain 15

Know Your Objectives Risk Identification: Keep it simple and practical Risk Mitigation Mapping -Training? -Configuration? -Design? 16

Objectives Risk Mitigation: Keep it actionable Medical Staff Bylaws (Hospitals) Medical Records P&P EHR FM R2-Derived Due-Diligence Templates 17

Notables HIMSS presentation slides for Medical-Legal Cases That Went South by Dr. Keith Klein Electronic Health Records Systems: Testing The Limits of Digital Records Reliability and Trust in Ave Maria Law Review, Summer 2014 by Drury, Gelzer, Trites, and Paul.

Questions Reed D. Gelzer, MD, MPH RGelzer@Provider-Resources.com www.provider-resources.com Co-Chair, HL7 EHR Standards Workgroup Co-Facilitator, HL7 Records Management and Evidentiary Support Workgroup Trustworthy EHR, LLC Newbury, NH Philadelphia, PA 203-506-5361