You are on page 1of 12

HIPPA

BY ELISA CARRILLO
WHAT
 HIPAA = Health
DOES Insurance Portability
HIPAA and Accountability Act
STAND of 1996

FOR?
What is HIPAA?

HIPAA is a
comprehensive federal HIPAA is enforced by the
law that sets forth data U.S. Dept. of Health and
privacy and security Human Services (HHS)
requirements for the Office for Civil Rights
safeguarding of medical (OCR).
information.
What information is
covered by HIPAA?

 HIPAA applies to all


 Identifiable health
information, also known as
Protected Health
Information (PHI).
What is PHI?

 Information either identifying an individual or


information that may reasonably be used to
determine the identity of an individual.
Health plans
Covered Health care providers
Who must Entities Health care
clearinghouses
comply with
the HIPAA
Business All vendors and
regulations? Associate subcontractors that use,
disclose, create, receive,
s maintain, or transmit PHI.
Major HIPAA
Components
 HIPAA is comprised of several parts.
Two of the specific sections relevant
to covered entities and business
associates include:
 The Privacy Rule
 The Security Rule
 Covered Entities & Business
Associates must:
 Implement workforce training so that
all employees are familiar with the
HIPAA regulations, and appoint a
Privacy Officer to monitor and enforce
the regulations.
Privacy Rule  Have Business Associate Agreements
between the Covered Entity and
Business Associate, and between the
Business Associate and all vendors and
subcontractors in the chain that create,
receive, maintain, or transmit PHI.
 Covered Entities and their Business
Associates must:
 Ensure the confidentiality, integrity,
and availability of all e-PHI they create,

Security Rule 
receive, maintain or transmit
Protect against reasonably anticipated,
impermissible uses or disclosures
 Ensure compliance by their workforce.
Employee HIPAA Responsibilities

 All employees must comply with the following:


 Not access, use, or disclose PHI unless authorized
 If permitted to PHI, limit your use or disclosure to the Minimum Necessary Standard
level based on your role and the assigned task
 Immediately report any suspected or actual PHI issues to your manager or the
Security Director.
Work Cited

 Compliancy Group. “What Is HIPAA Compliance? - Requirements & Who It


Applies To.” Compliancy Group, Compliancy Group, 10 Mar. 2020,
compliancy-group.com/hipaa/.
 Department of Health Care Services. “Health Insurance Portability &
Accountability Act.” What Is HIPAA,
www.dhcs.ca.gov/formsandpubs/laws/hipaa/Pages/1.00WhatisHIPAA.aspx.
 “Health Insurance Portability and Accountability Act (HIPAA) - DMA
Resources.” Thedma.org, thedma.org/resources/compliance-
resources/hipaa/.
 Ocr. “187-What Does the HIPAA Privacy Rule Do.” HHS.gov, 18 Dec. 2015,
www.hhs.gov/hipaa/for-individuals/faq/187/what-does-the-hipaa-privacy-
rule-do/index.html.
Thank You

You might also like