How HIPAA final rules affect health information technology vendors.

نویسندگان

  • Lisa W Clark
  • Neville M Bilimoria
چکیده

I n addition to healthcare reform, healthcare providers and their vendors now have to grapple with recently promulgated federal rules regarding privacy and security of health information. Key to the future of the healthcare reform efforts is health information technology (HIT), a broad term that is often used in conjunction with electronic health records (EHRs), mobile health (mHealth), telemedicine, health information organizations/health information exchanges (HIOs, also known as HIEs), and other developments that are revolutionizing the healthcare industry. HIT supports the development of a national information highway to facilitate the transmission of health data for treatment, payment, quality analysis, and a myriad of other uses. HIPAA-covered entities and many of their vendors (e.g., HIO and EHR consultants, data analytic firms, data transmission facilitators, software vendors, device vendors) rely on HIT to accomplish their individual roles in the U.S. healthcare system. Large data companies, small entrepreneurs, and investors are all participating in the growth of HIT. These unsuspecting vendors of the HIT system may unwittingly violate HIPAA if they do not pay close attention to new rules affecting the privacy and security of health information. While the use of HIT presents efficiency and potential quality improvements in healthcare, it also poses significant risks with respect to the privacy and security of health data. On January 25, 2013, the U.S. Department of Health and Human Services (HHS) announced the final omnibus rule amending HIPAA in accordance with the HITECH Act of 2009 (the “2013 Amendments”). The 2013 Amendments, which were effective on March 26, 2013 (with some exceptions), supplement and modify the HIPAA Privacy, Security, Breach Notification and Enforcement Rules (the “HIPAA Rules”). This article examines the key ways in which the 2013 Amendments impact HIT. BUSINESS ASSOCIATES NOW INCLUDE HIOS, DATA TRANSMISSION SERVICES, AND OTHERS

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

HIPAA Privacy/Security Rules: where we've been and where we are going. Updates from the HITECH Act to dramatically impact HIPAA privacy/security.

When HIPAA was passed, many applauded the portability aspects of HIPAA that allowed for continuing healthcare coverage for individuals who lost their jobs and attendant healthcare insurance. But few back in 1996 anticipated the dramatic impact that HIPAA would have later on the privacy and security of health information in the United States. This article discusses not only the history of HIPAA ...

متن کامل

Health Insurance Portability and Accountability Act (HIPPA) Compliant Access Control Model for Web Services

Health Insurance Portability and Accountability Act of 1996 (HIPAA) is a set of rules to be followed by health plans, doctors, hospitals, and other healthcare providers in the U.S. HIPAA privacy rules create national standards to protect individuals’ health information. Recently, there have been increasing demands and discussions about Web services-based healthcare applications. It is, therefor...

متن کامل

New Proposed HIPAA Disclosures Vex Health Care Players: Who Is Asking for the Information Anyway?

is urging rule-makers not to include access report requirements in the final rule. If rule-makers do include access reports in the new rules, CHIME believes that only data gathered through certified EHRs—not the full array of designated record sets—should be expected to populate such reports. There are also numerous critics of the HHS’s conception of an expanded AOD. Daniel C. Walden, Senior Vi...

متن کامل

New HIPAA rules: a guide for radiology providers.

The Office for Civil Rights issued its long awaited final regulations modifying the HIPAA privacy, security, enforcement, and breach notification rules--the HIPAA Megarule. The new HIPAA rules will require revisions to Notice of Privacy Practices, changes to business associate agreements, revisions to HIPAA privacy and security policies and procedures, and an overall assessment of HIPAA complia...

متن کامل

Health IT Security: An Examination of Modern Challenges in Maintaining HIPAA and HITECH Compliance

This work describes an undergraduate honors research project into some of the challenges modern healthcare providers face in maintaining compliance with the Health Insurance Portability and Accountability Act (HIPAA) and HITECH (Health Information Technology for Economic and Clinical Health) Act. An overview of the pertinent sections of both the HIPAA and HITECH Acts regarding health informatio...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • The Journal of medical practice management : MPM

دوره 29 1  شماره 

صفحات  -

تاریخ انتشار 2013