SlideShare una empresa de Scribd logo
1 de 19
HIPAA
Who does it Cover?


o   Healthcare providers

o   Health plans

o   Healthcare clearinghouses

o   Business associates who have
    access to patient records
What does HIPAA do?


o   Imposes new restrictions on the
    use and disclosure of Protected
    Health Information (PHI)

o   Gives patients greater access
    to their medical records

o   Gives patients greater
    protection of their medical
    records
What is Protected Health
         Information (PHI)?


o Any information about a patient’s physical or mental
  health, services rendered or payment for those services.

o Includes verbal, recorded, written, or electronic
  information
Use and Disclosure


o You are permitted to use and disclose PHI without written
  authorization:
  •   For treatment, payment, and health operations
  •   With verbal authorization or agreement from the individual
      patient
  •   For disclosure to the specific individual patient
  •   For incidental uses such as physicians talking to patients in
      a semi-private room
Use and Disclosure


o You are required to release PHI for use and disclosure
  without authorization:
  •   When requested or authorized by the patient (some
      exceptions apply)
  •   When required by the Department of Health and Human
      services (HHS) for compliance or investigation
  •   When the facility is required by law
Authorization


o Written authorization is required:
  •   For any purposes other than treatment, payment, or
      healthcare operations
  •   For use and disclosure of psychotherapy notes
  •   For research purposes
  •   For marketing activities
Authorization


o Written authorization is not required:
  •   To maintain WCMC’s patient directory
  •   To inform family members or other identified persons
      involved in the patient’s care or notify them on patient
      location, condition, or death
  •   To inform appropriate agencies during disaster relief efforts
  •   Public health activities related to disease prevention or
      control
Authorization: Continued...


•   To report victims of abuse, neglect, or domestic violence
•   Health oversight activities such as audits, legal
    investigations, licensure or for certain law enforcement
    purposes or government functions
•   For coroners, medical examiners, funeral directors or
    tissue/organ donations
•   To avert a serious threat to health and safety
Clergy


o Those who have been designated as “clergy” by their
  church will be able to view a list of patients in the hospital
  who have agreed to be included in the directory and who
  have indicated their religious affiliation to be that of the
  clergy member reviewing the list

o For example: the Baptist clergy member can only look at
  the Baptist list of patients
Minimum Necessary Standard


o The use and/or disclosure of PHI is limited to the
  minimum amount of health information necessary to get
  the job done right.
  •   WCMC has policies and practices that ensure the least
      amount of PHI is shared
  •   Employees must be identified who regularly access PHI
      along with the types of PHI needed and the conditions of
      access
Notice of Privacy Practices


o The patient has the right to have adequate notice
  concerning the use and disclosure of their PHI

o This includes:
  •   The patient’s rights and WCMC’s legal duties
  •   Being available in print
  •   Being displayed at the site of service
The Patient’s Privacy Rights


o The Patient has the right to :
  •   Request restricted uses and disclosures, although the
      covered entity is not required to agree
  •   Have PHI communicated to them by alternate means and at
      alternate locations to protect confidentiality
The Patient’s Privacy Rights


o The Patient has the right to :
  •   Inspect and amend PHI, and obtain copies, (with some
      exceptions)
  •   Receive the Notice of Privacy Practices at the time of the
      first delivery of service
  •   Request a history of disclosures for six years prior to the
      request, except for disclosures made for
      treatment, payment, healthcare operations or with prior
      authorization
The Patient’s Privacy Rights :
        Continued...


•   Contact WCMC Privacy Officer regarding any privacy
    concern or breach of privacy within the facility or contact
    HHS with the information
•   Parents have the right to access and control the PHI of their
    minor children, except when state law overrides parental
    control
Non-Compliance


o If you violate the HIPAA Privacy Rule you could
  face:
  • A civil penalty of up to $50,000 per offense, up to a
    maximum of $1.5 Million per year depending on the
    type of violation
  • A criminal penalty for knowingly disclosing PHI that
    may escalate to a maximum of $250,000 for
    conspicuously bad offenses and could include up to a
    10 year prison term
What can you do?


o Make sure you fully understand WCMC’s privacy
  practices
o Only use and disclose PHI when you need to do so to
  perform your job
o Only use and disclose the minimum amount of PHI
  needed to accomplish your job
o Make sure you handout the WCMC Notice of Privacy
  Practices to every patient
What can you do?


o Ask patients before talking to family members about their condition

o Speak softly when discussing PHI in open areas

o Avoid discussing patient issues in the cafeteria, on elevators, etc.

o Do not leave PHI laying out in open view - such as lab work,
   progress notes, or any patient record

o Shred any extra copies of PHI not needed

o Medical records should not be taken off campus
What can you do?


o Don’t leave messages concerning a patient’s condition or test
   results on any answering machine
o When releasing patient information over the phone, verify the
   identity of the caller
o Don’t share your password with anyone

o Log off your computer when you will be away from your work
   area
o Report privacy violations to our Compliance Officer, Debbie
   Hare,380-1062

Más contenido relacionado

La actualidad más candente

A Patient’S Bill Of Rights
A Patient’S Bill Of RightsA Patient’S Bill Of Rights
A Patient’S Bill Of Rights
Tosca Torres
 
Patients' rights and responsibilities
Patients' rights and responsibilitiesPatients' rights and responsibilities
Patients' rights and responsibilities
Ankuran Dutta
 
Patient rights
Patient rightsPatient rights
Patient rights
wcmc
 
Bioethics Patient's Rights
Bioethics Patient's RightsBioethics Patient's Rights
Bioethics Patient's Rights
Jofred Martinez
 

La actualidad más candente (20)

A Patient’S Bill Of Rights
A Patient’S Bill Of RightsA Patient’S Bill Of Rights
A Patient’S Bill Of Rights
 
Patient Rights-Final
Patient Rights-FinalPatient Rights-Final
Patient Rights-Final
 
Patients Bill of Rights
Patients Bill of RightsPatients Bill of Rights
Patients Bill of Rights
 
Patients' rights and responsibilities
Patients' rights and responsibilitiesPatients' rights and responsibilities
Patients' rights and responsibilities
 
Patients & family rights ppt
Patients  & family rights pptPatients  & family rights ppt
Patients & family rights ppt
 
7 Patient Rights & Responsibilities
7 Patient Rights & Responsibilities7 Patient Rights & Responsibilities
7 Patient Rights & Responsibilities
 
Patient’s Rights and Duties
Patient’s Rights and DutiesPatient’s Rights and Duties
Patient’s Rights and Duties
 
Patient rights ppt
Patient rights pptPatient rights ppt
Patient rights ppt
 
Patient rights
Patient rightsPatient rights
Patient rights
 
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
 
Patient anf family rights
Patient anf family rights Patient anf family rights
Patient anf family rights
 
Bioethics Patient's Rights
Bioethics Patient's RightsBioethics Patient's Rights
Bioethics Patient's Rights
 
SCHS Topic 5: Privacy, Confidentiality and Medical Records
SCHS Topic 5: Privacy, Confidentiality and Medical RecordsSCHS Topic 5: Privacy, Confidentiality and Medical Records
SCHS Topic 5: Privacy, Confidentiality and Medical Records
 
Healthcare bill of rights
Healthcare bill of rightsHealthcare bill of rights
Healthcare bill of rights
 
Patient privacy
Patient privacyPatient privacy
Patient privacy
 
Legal responsibilities of a nurse
Legal responsibilities of a nurseLegal responsibilities of a nurse
Legal responsibilities of a nurse
 
The Patients' Rights Charter
The Patients' Rights CharterThe Patients' Rights Charter
The Patients' Rights Charter
 
Consent & confidentiality
Consent & confidentialityConsent & confidentiality
Consent & confidentiality
 
Medico legal aspect of Medical Records
Medico legal aspect of Medical RecordsMedico legal aspect of Medical Records
Medico legal aspect of Medical Records
 
Confidentiality
ConfidentialityConfidentiality
Confidentiality
 

Destacado

Hipaa presentation
Hipaa presentationHipaa presentation
Hipaa presentation
cjkonsella
 
HIPPA---Chantel Artis Spencer
HIPPA---Chantel Artis SpencerHIPPA---Chantel Artis Spencer
HIPPA---Chantel Artis Spencer
shay1234
 
Hippa training on confidentiality
Hippa training on confidentialityHippa training on confidentiality
Hippa training on confidentiality
craig45365
 
Introduction to HIPAA for Healthcare Professionals by OUP
Introduction to HIPAA for Healthcare Professionals by OUPIntroduction to HIPAA for Healthcare Professionals by OUP
Introduction to HIPAA for Healthcare Professionals by OUP
Atlantic Training, LLC.
 

Destacado (6)

Hipaa presentation
Hipaa presentationHipaa presentation
Hipaa presentation
 
Hipaa
HipaaHipaa
Hipaa
 
HIPPA---Chantel Artis Spencer
HIPPA---Chantel Artis SpencerHIPPA---Chantel Artis Spencer
HIPPA---Chantel Artis Spencer
 
Hippa training on confidentiality
Hippa training on confidentialityHippa training on confidentiality
Hippa training on confidentiality
 
Hipaa slideshow
Hipaa slideshowHipaa slideshow
Hipaa slideshow
 
Introduction to HIPAA for Healthcare Professionals by OUP
Introduction to HIPAA for Healthcare Professionals by OUPIntroduction to HIPAA for Healthcare Professionals by OUP
Introduction to HIPAA for Healthcare Professionals by OUP
 

Similar a Hipaa

Health care confidentiality and privacy
Health care confidentiality and privacyHealth care confidentiality and privacy
Health care confidentiality and privacy
sawanda
 
Hipaa basics.pp2
Hipaa basics.pp2Hipaa basics.pp2
Hipaa basics.pp2
martykoepke
 
Patient confidentiality.ppt
Patient confidentiality.pptPatient confidentiality.ppt
Patient confidentiality.ppt
chwiso8418
 
Patient confidentiality power point
Patient confidentiality power pointPatient confidentiality power point
Patient confidentiality power point
chwiso8418
 
Patient confidentiality power point
Patient confidentiality power pointPatient confidentiality power point
Patient confidentiality power point
chwiso8418
 
HIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability ActHIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability Act
Harshit Trivedi
 
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
emdadhussain840
 

Similar a Hipaa (20)

Welcome to the hippa, privacy and security
Welcome to the hippa, privacy and securityWelcome to the hippa, privacy and security
Welcome to the hippa, privacy and security
 
Hipaa conf
Hipaa confHipaa conf
Hipaa conf
 
Health care confidentiality and privacy
Health care confidentiality and privacyHealth care confidentiality and privacy
Health care confidentiality and privacy
 
Hipaa basics.pp2
Hipaa basics.pp2Hipaa basics.pp2
Hipaa basics.pp2
 
HIPAA HITECH training 7-9-12
HIPAA HITECH training 7-9-12HIPAA HITECH training 7-9-12
HIPAA HITECH training 7-9-12
 
HIPAA & PHI Training
HIPAA & PHI TrainingHIPAA & PHI Training
HIPAA & PHI Training
 
Are You HIPAA Safe?
Are You HIPAA Safe?Are You HIPAA Safe?
Are You HIPAA Safe?
 
Data Security and Privacy Practices
Data Security and Privacy PracticesData Security and Privacy Practices
Data Security and Privacy Practices
 
2018-HIPAA-Renewal-Training.pptx
2018-HIPAA-Renewal-Training.pptx2018-HIPAA-Renewal-Training.pptx
2018-HIPAA-Renewal-Training.pptx
 
Patient confidentiality.ppt
Patient confidentiality.pptPatient confidentiality.ppt
Patient confidentiality.ppt
 
Patient confidentiality power point
Patient confidentiality power pointPatient confidentiality power point
Patient confidentiality power point
 
Patient confidentiality
Patient confidentialityPatient confidentiality
Patient confidentiality
 
Patient confidentiality power point
Patient confidentiality power pointPatient confidentiality power point
Patient confidentiality power point
 
HIPAA, PHI, & 42 CFR Part 2
HIPAA, PHI, & 42 CFR Part 2HIPAA, PHI, & 42 CFR Part 2
HIPAA, PHI, & 42 CFR Part 2
 
Rems hipaa
Rems hipaaRems hipaa
Rems hipaa
 
HIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability ActHIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability Act
 
Healthcare Compliance and Privacy/Security Training by UCONN
Healthcare Compliance and Privacy/Security Training by UCONNHealthcare Compliance and Privacy/Security Training by UCONN
Healthcare Compliance and Privacy/Security Training by UCONN
 
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
Medical Ethics: Principles of medical ethics, patient rights, confidentiality...
 
Hipaa pesentation
Hipaa pesentationHipaa pesentation
Hipaa pesentation
 
UNA HIPAA Training 8-13
UNA HIPAA Training   8-13UNA HIPAA Training   8-13
UNA HIPAA Training 8-13
 

Más de wcmc

Dress code
Dress codeDress code
Dress code
wcmc
 
Suicide precautions
Suicide precautions   Suicide precautions
Suicide precautions
wcmc
 
Social work services
Social work servicesSocial work services
Social work services
wcmc
 
Rounding
Rounding   Rounding
Rounding
wcmc
 
Restraints
Restraints   Restraints
Restraints
wcmc
 
Preparing for surgery
Preparing for surgeryPreparing for surgery
Preparing for surgery
wcmc
 
Pharmacy
Pharmacy   Pharmacy
Pharmacy
wcmc
 
Peritoneal dialysis
Peritoneal dialysis  Peritoneal dialysis
Peritoneal dialysis
wcmc
 
Peak & trough
Peak & trough   Peak & trough
Peak & trough
wcmc
 
Pca
Pca Pca
Pca
wcmc
 
Pain management
Pain management   Pain management
Pain management
wcmc
 
Organ tissue donation
Organ tissue donation Organ tissue donation
Organ tissue donation
wcmc
 
Medication reconciliation
Medication reconciliationMedication reconciliation
Medication reconciliation
wcmc
 
Medication administration
Medication administrationMedication administration
Medication administration
wcmc
 
Iv therapy
Iv therapy Iv therapy
Iv therapy
wcmc
 
Isolation
Isolation  Isolation
Isolation
wcmc
 
Insulin drips
Insulin dripsInsulin drips
Insulin drips
wcmc
 
Hemodialysis
Hemodialysis Hemodialysis
Hemodialysis
wcmc
 
Haldol drips
Haldol drips Haldol drips
Haldol drips
wcmc
 
Epidural
Epidural   Epidural
Epidural
wcmc
 

Más de wcmc (20)

Dress code
Dress codeDress code
Dress code
 
Suicide precautions
Suicide precautions   Suicide precautions
Suicide precautions
 
Social work services
Social work servicesSocial work services
Social work services
 
Rounding
Rounding   Rounding
Rounding
 
Restraints
Restraints   Restraints
Restraints
 
Preparing for surgery
Preparing for surgeryPreparing for surgery
Preparing for surgery
 
Pharmacy
Pharmacy   Pharmacy
Pharmacy
 
Peritoneal dialysis
Peritoneal dialysis  Peritoneal dialysis
Peritoneal dialysis
 
Peak & trough
Peak & trough   Peak & trough
Peak & trough
 
Pca
Pca Pca
Pca
 
Pain management
Pain management   Pain management
Pain management
 
Organ tissue donation
Organ tissue donation Organ tissue donation
Organ tissue donation
 
Medication reconciliation
Medication reconciliationMedication reconciliation
Medication reconciliation
 
Medication administration
Medication administrationMedication administration
Medication administration
 
Iv therapy
Iv therapy Iv therapy
Iv therapy
 
Isolation
Isolation  Isolation
Isolation
 
Insulin drips
Insulin dripsInsulin drips
Insulin drips
 
Hemodialysis
Hemodialysis Hemodialysis
Hemodialysis
 
Haldol drips
Haldol drips Haldol drips
Haldol drips
 
Epidural
Epidural   Epidural
Epidural
 

Último

Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
Earley Information Science
 

Último (20)

2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024
 

Hipaa

  • 2. Who does it Cover? o Healthcare providers o Health plans o Healthcare clearinghouses o Business associates who have access to patient records
  • 3. What does HIPAA do? o Imposes new restrictions on the use and disclosure of Protected Health Information (PHI) o Gives patients greater access to their medical records o Gives patients greater protection of their medical records
  • 4. What is Protected Health Information (PHI)? o Any information about a patient’s physical or mental health, services rendered or payment for those services. o Includes verbal, recorded, written, or electronic information
  • 5. Use and Disclosure o You are permitted to use and disclose PHI without written authorization: • For treatment, payment, and health operations • With verbal authorization or agreement from the individual patient • For disclosure to the specific individual patient • For incidental uses such as physicians talking to patients in a semi-private room
  • 6. Use and Disclosure o You are required to release PHI for use and disclosure without authorization: • When requested or authorized by the patient (some exceptions apply) • When required by the Department of Health and Human services (HHS) for compliance or investigation • When the facility is required by law
  • 7. Authorization o Written authorization is required: • For any purposes other than treatment, payment, or healthcare operations • For use and disclosure of psychotherapy notes • For research purposes • For marketing activities
  • 8. Authorization o Written authorization is not required: • To maintain WCMC’s patient directory • To inform family members or other identified persons involved in the patient’s care or notify them on patient location, condition, or death • To inform appropriate agencies during disaster relief efforts • Public health activities related to disease prevention or control
  • 9. Authorization: Continued... • To report victims of abuse, neglect, or domestic violence • Health oversight activities such as audits, legal investigations, licensure or for certain law enforcement purposes or government functions • For coroners, medical examiners, funeral directors or tissue/organ donations • To avert a serious threat to health and safety
  • 10. Clergy o Those who have been designated as “clergy” by their church will be able to view a list of patients in the hospital who have agreed to be included in the directory and who have indicated their religious affiliation to be that of the clergy member reviewing the list o For example: the Baptist clergy member can only look at the Baptist list of patients
  • 11. Minimum Necessary Standard o The use and/or disclosure of PHI is limited to the minimum amount of health information necessary to get the job done right. • WCMC has policies and practices that ensure the least amount of PHI is shared • Employees must be identified who regularly access PHI along with the types of PHI needed and the conditions of access
  • 12. Notice of Privacy Practices o The patient has the right to have adequate notice concerning the use and disclosure of their PHI o This includes: • The patient’s rights and WCMC’s legal duties • Being available in print • Being displayed at the site of service
  • 13. The Patient’s Privacy Rights o The Patient has the right to : • Request restricted uses and disclosures, although the covered entity is not required to agree • Have PHI communicated to them by alternate means and at alternate locations to protect confidentiality
  • 14. The Patient’s Privacy Rights o The Patient has the right to : • Inspect and amend PHI, and obtain copies, (with some exceptions) • Receive the Notice of Privacy Practices at the time of the first delivery of service • Request a history of disclosures for six years prior to the request, except for disclosures made for treatment, payment, healthcare operations or with prior authorization
  • 15. The Patient’s Privacy Rights : Continued... • Contact WCMC Privacy Officer regarding any privacy concern or breach of privacy within the facility or contact HHS with the information • Parents have the right to access and control the PHI of their minor children, except when state law overrides parental control
  • 16. Non-Compliance o If you violate the HIPAA Privacy Rule you could face: • A civil penalty of up to $50,000 per offense, up to a maximum of $1.5 Million per year depending on the type of violation • A criminal penalty for knowingly disclosing PHI that may escalate to a maximum of $250,000 for conspicuously bad offenses and could include up to a 10 year prison term
  • 17. What can you do? o Make sure you fully understand WCMC’s privacy practices o Only use and disclose PHI when you need to do so to perform your job o Only use and disclose the minimum amount of PHI needed to accomplish your job o Make sure you handout the WCMC Notice of Privacy Practices to every patient
  • 18. What can you do? o Ask patients before talking to family members about their condition o Speak softly when discussing PHI in open areas o Avoid discussing patient issues in the cafeteria, on elevators, etc. o Do not leave PHI laying out in open view - such as lab work, progress notes, or any patient record o Shred any extra copies of PHI not needed o Medical records should not be taken off campus
  • 19. What can you do? o Don’t leave messages concerning a patient’s condition or test results on any answering machine o When releasing patient information over the phone, verify the identity of the caller o Don’t share your password with anyone o Log off your computer when you will be away from your work area o Report privacy violations to our Compliance Officer, Debbie Hare,380-1062