HIPAA
Health Insurance Portability and Accountability Act
There are 3 main HIPAA compliance rules:
HIPAA Privacy Rule - It address the risk of Protected Health Information (PHI) being compromised or used for identity theft.
HIPAA Security Rule - Outlines the regulations for protecting ePHI.
HIPAA Breach Notification Rule - Defines the steps an organization must take if they suspect a data breach involving ePHI has occurred.
HIPAA Violations:
Lack of employee training on HIPAA compliance
Database breaches affecting ePHI
Sharing PHI between coworkers
Loss of a laptop or mobile device containing unencrypted ePHI
Improperly disposing of ePHI in ways that make it accessible to unauthorized users
7 Elements of effective HIPAA compliance:
Implementing written policies, procedures, and standards of conduct.
Designating a compliance officer and compliance committee.
Conducting effective training and education.
Developing effective lines of communication.
Conducting internal monitoring and auditing.
Enforcing standards through well-publicized disciplinary guidelines.
Responding promptly to detected offenses and undertaking corrective action.
Last updated