tci Medicare Compliance & Reimbursement - 2007 Issue 19
HIPAA COMPLIANCE: Avoid Rough Waters WIth A Business Associate Agreement
Subscribe or sign in to view the full article.
Article Overview
This article covers HIPAA compliance issues involving protected health information sent to a data warehouse and the role of a business associate agreement. It is aimed at providers, compliance staff, and others responsible for safeguarding patient information when using third-party warehousing or related vendor services. The discussion focuses on broad categories of data handling, encryption, de-identification, confidentiality protections, breach awareness, and the potential involvement of HHS or other regulators.
Why This Topic Matters
Understanding when third-party data handling may trigger HIPAA business associate considerations can help organizations reduce privacy and security risk and document good-faith compliance efforts.
What You Will Learn
- How HIPAA concerns may arise when patient information is stored by a third-party warehouse
- The difference between de-identified, encrypted, and otherwise accessible information in a vendor setting
- Why agreements and other privacy protections may matter when using outside data services
- How breach awareness and remediation relate to compliance risk
- Why regulators may scrutinize weak oversight of warehoused patient information
Who Should Read This
- Healthcare providers
- Practice managers
- Compliance officers
- Privacy and security staff
- Healthcare administrators
- Vendor management staff
Subscribe or sign in to view the full article.
Thank you for choosing Find-A-Code, please Sign In to remove ads.


Quick, Current, Complete - www.findacode.com