decisionhealth Newsletters, Part B News - 2018 Issue 10 (October)
Protect PHI when it moves to and from business associates
Subscribe or sign in to view the full article.
Article Overview
This article discusses how HIPAA applies when protected health information moves between covered entities and business associates, including electronic transmission, networking, open-network communication, encryption practices, and paper-based transfer. It is relevant for practices, compliance teams, and business associates that handle PHI and want to understand the general categories of safeguards and risk considerations highlighted by OCR-related developments and related guidance resources.
Why This Topic Matters
Transmission of PHI creates compliance risk even when the information is not being stored or used on-site. Understanding the broad HIPAA security and handling considerations helps organizations reduce exposure when sharing data with business associates and other partners.
Article Sections
-
HIPAA and business associate transmission
Introduces the compliance context for sharing protected health information between covered entities and business associates. Summarizes the article’s focus on transmission-related safeguards and OCR-related context.
-
Take precautions with open networks
Discusses general security considerations for electronic transmission over open networks and the importance of safeguarding data in transit. Addresses broader safeguards such as network risk assessment, integrity, and encryption without providing operational instructions.
-
Paper records need protection too
Covers handling considerations for transmitting hard-copy protected health information. Notes the article’s attention to physical transfer methods and general risk concerns for paper records.
What You Will Learn
- How HIPAA relates to sharing protected health information with business associates
- What broad security considerations apply to electronic information in transit
- Why transmission safeguards matter for both digital and paper records
- Which general compliance issues are highlighted by OCR-related examples and guidance resources
Who Should Read This
- Health care providers
- Practice managers
- Compliance officers
- Privacy and security staff
- Business associates
- Medical records and health information management teams
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com