General Surgery Coding Alert - 2010 Issue 11
PATIENT PRIVACY: Outsourcing Security on Patient Privacy Can Be Helpful -- If You Know These 5 Essential Truths
Subscribe or sign in to view the full article.
Article Overview
This piece discusses whether and how healthcare practices can use outside help for HIPAA privacy protection. It covers broad considerations for working with consultants, maintaining privacy programs over time, tailoring services to a practice, and evaluating supplemental identity-theft monitoring and breach-related support. The article is aimed at practices trying to understand what to look for before outsourcing privacy-related responsibilities.
Why This Topic Matters
It helps healthcare organizations assess privacy vendors and outside consultants without assuming all services are equivalent or complete. That matters because HIPAA privacy responsibilities remain ongoing and a practice may need broader support than a one-time setup.
Article Sections
-
Government allowance for HIPAA consultants
Introduces the use of outside consultants for privacy-related support and frames the general legal permissibility of that approach.
-
HIPAA requires ongoing upkeep
Describes why privacy protection is not a one-time task and emphasizes the continuing nature of practice responsibilities.
-
Be wary of cookie-cutter contracts
Discusses the importance of tailoring privacy-related services to the practice’s size, specialty, workflow, and setup.
-
Don't forget the scope of identity theft
Addresses the broader privacy and identity-theft exposure associated with patient information and related records.
-
Consider tracking and monitoring services
Covers additional support options that may be considered after a privacy plan is in place, including monitoring and breach-response assistance.
What You Will Learn
- How outside consultants may fit into a HIPAA privacy program
- Why privacy compliance support may need to be maintained over time
- What to consider when evaluating standardized versus tailored service offerings
- How patient information can create identity-theft exposure concerns
- What types of supplemental monitoring or breach-response services may be discussed
Who Should Read This
- Medical practice owners
- Privacy officers
- Compliance staff
- Healthcare administrators
- Billing and office managers
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com