decisionhealth Newsletters, Part B News - 2011 Issue 7 (July)
5 steps to protect patient data, meet meaningful use security requirement
Subscribe or sign in to view the full article.
Article Overview
This article covers a practical, practice-level overview of a meaningful use security requirement tied to EHR incentive participation. It discusses the general security review process, documentation expectations, use of internal or external help, and attestation considerations for healthcare organizations and clinicians.
Why This Topic Matters
The topic matters because it connects patient data protection obligations with EHR incentive program participation and related audit readiness. It is relevant to practices that need a high-level understanding of security review expectations and documentation needs.
Article Sections
-
Introduction
Introduces the relationship between patient data protection, HIPAA security obligations, and a meaningful use security requirement tied to EHR participation.
-
How to meet measure 15
Outlines the article’s five broad approaches for addressing the security requirement and preparing for attestation-related scrutiny.
-
Know the difference between measure 15 and existing HIPAA requirements
Discusses the distinction between general privacy and security obligations and the broader review activity associated with the meaningful use program.
-
Turn to your vendor or regional extension center (REC)
Describes the option of seeking outside assistance for a security review and the role of external support resources.
-
Do the security assessment yourself
Covers the option of performing the review internally and the general types of environment factors practices may consider.
-
Preserve a record of the assessment and measures taken
Addresses documentation of the review process and retention of records showing that security-related evaluation and follow-up occurred.
-
Take the very simple step of attesting to measure 15
Summarizes the attestation component and the article’s discussion of recordkeeping, reporting, and audit awareness.
What You Will Learn
- How the article frames the security-related meaningful use requirement
- What kinds of review and documentation topics are discussed
- When outside help or an internal review may be considered
- What attestation and audit-readiness issues are highlighted
Who Should Read This
- Physicians
- Small medical practices
- Practice managers
- Health information management staff
- Healthcare compliance staff
- EHR implementers
Codes Discussed
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com