ED Coding & Reimbursement Alert - 2011 Issue 15
Patient Privacy: Determine Whether You're at Risk of Making This HIPAA Mistake
Subscribe or sign in to view the full article.
Article Overview
This article addresses HIPAA privacy and breach-prevention concerns for organizations whose staff transport paper protected health information outside the workplace. It explains why offsite handling of paper records can create compliance risk, summarizes an OCR enforcement example, and highlights broad prevention themes such as physical safeguards, staff education, and awareness of breach-reporting consequences. The piece is aimed at providers and compliance staff looking to reduce the chance of an avoidable privacy incident.
Why This Topic Matters
Paper PHI can be vulnerable during transit and offsite handling, and a single lapse may trigger reporting obligations and enforcement exposure. The article helps readers understand the general compliance areas that matter when building or reviewing privacy safeguards.
Article Sections
-
What Happened
Summarizes the reported offsite incident and the OCR enforcement action discussed in the article. Introduces the privacy and breach context without detailing the underlying records or outcomes.
-
Lesson Learned
Discusses general safeguards for handling paper PHI outside the office and the importance of physical protections and audits. Focuses on preventive compliance themes rather than specific operational steps.
-
Keep in Mind
Addresses broader breach-risk considerations for lost or stolen information and the article's emphasis on de-identification concepts. Covers privacy and reporting awareness at a high level.
-
Don't Overlook Education as A Critical Component
Explains the role of staff training, policy awareness, and periodic reminders in reducing privacy lapses. Emphasizes organizational education as part of a compliance program.
-
Driving the Point Home
Highlights the article's discussion of using public breach information to reinforce compliance messaging. Focuses on general awareness and accountability themes.
What You Will Learn
- Why paper PHI transported offsite can create privacy risk
- How organizations can think about physical safeguards for offsite records
- Why staff education and reminders are part of HIPAA compliance
- How breach awareness can support privacy training and accountability
- What kinds of organizational practices are discussed for reducing accidental loss of PHI
Who Should Read This
- Hospitals and health systems
- Part B providers
- Compliance officers
- Privacy officers
- Healthcare administrators
- Healthcare staff who handle records
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com