How Hipaa Works
how hipaa works
As an IT consultant working with a health care organization, what is my responsibility in regards to HIPAA?
If I see HIPAA violations, how should I approach the client about them?
Am I liable if the client asks me to implement something if I know it is illegal? Should I refuse?
This is an open discussion question, so I am very open to hearing your thoughts and ideas.
Let me provide an example:
Healthcare group is discussing using 3rd party like eFax to receive faxes of patient information.
I mention that doing so is a violation of HIPAA because the email will be traveling over the internet unencrypted.
Client says, “Well, it’s not like the HIPAA police is going to catch us.”
Thoughts on this?
HIPAA is a Federal law and has federal consequences (fines and jail). If you handle HIPAA materials you should have had a HIPAA briefing according to HIPPA standards.
~
You must report any & all violations to the person who has overall responsibility for HIPAA in the organization or you share responsibility. You can not knowingly implement anything you know violates HIPAA. You must safeguard all patient records.
103 – Hospital Protocol – Part 2/6
|
|
The Paper Office, Fourth Edition: Forms, Guidelines, and Resources to Make Your Practice Work Ethically, Legally, and Profitably (The Clinician’s Toolbox) $58.33 Providing essential recordkeeping and risk-reduction tools that every psychotherapy practice needs, this highly practical resource is now in a fully updated fourth edition. It is ideal for new practitioners who want to hit the ground running and for seasoned pros who want to streamline their paperwork and clinical efficiency. Presented are methods for assuring informed consent and documenting trea… |
|
|
Coding for Hipaa: How to Report Professional Claims $45.00 This resource takes readers from the paper-based world of health care claims and gives them the data content knowledge necessary for reporting claims in the HIPAA environment. It examines the CMS 1500 claim form in detail, gives a brief overview of the electronic transactions standards mandated by the secretary of the Department of Health and Human Services, and primarily addresses the non-medical… |












