hipaa and confidentiality

11
HIPAA Training and Confidentiality Reginald L. Harris MHA690:Health Care Capstone Dr. Jared Rutledge 7 Jan 2016

Upload: reggie2469

Post on 15-Apr-2017

220 views

Category:

Healthcare


1 download

TRANSCRIPT

Confidentiality

HIPAA Training and ConfidentialityReginald L. HarrisMHA690:Health Care CapstoneDr. Jared Rutledge7 Jan 2016

Training StrategyIn the UCLA report, staff members violated HIPAA rules by viewing protected heath information of celebrity patients without a clear need to know.To combat the prevalence of this violation it is imperative that leaders train on HIPAA standards when on-boarding, annually, and each time a breach is investigated and substantiated. Leaders should utilize methods that stimulate adult learning by incorporating visual, auditory, and written training platforms.

2

Training InitiativeTo effectively train employees on the Health Information Portability & Accountability Act (HIPAA) compliance effectively, the training program must include: Computer Base Training To train and test knowledgeSmall Group Instruction To share experiential knowledge with peersRole Playing To animate real life scenariosCase Study Review To discuss real life examples of violationsInformation Technology Strategies To highlight Information Technology vulnerabilityPenalties for Violation To highlight the repercussions for violating established policies

3

Health Information Portability & Accountability Act (HIPAA) RequirementsTraining must focus on HIPAAs necessary requirementAdministrative Safeguards Physical SafeguardsTechnical Safeguards

HIPAA Privacy RuleThe HIPAA Privacy Rule requires that protected health information be guarded from unnecessary disclosure or use (Semel, 2013), and that there is a delicate balance between too little and too much exposure; either extreme can be detrimental to patient care The Rule requires the setting of limits and conditions that may be made without a patients authorization (HHS, 2016)

Administrative SafeguardsInvolves creating and enforcing policies and procedures to protect the health information of patients.

Employees must be aware of the organizations policies, where they are located for referencing and who to speak to if questions arise concerning gaps in administrate protective measures.

Physical SafeguardsInvolves securing protected health information (PHI) physically, in locked containers, through office layouts, and authorized access to restricted spaces.

Employees must work to remain mindful of what PHI is present in there immediate surroundings and must take active steps to ensure the information is secured immediately following use.

Technical SafeguardsInvolves securing protected health information (PHI) on information systems and entails the granting of roles to restrict access, the creation of passwords to authenticate privileges and the use of automatic timers to hide inactive computer screens.

Employees must be granted the level of access appropriate for completing their duties and access must be re-verified when duties change.

Confidentiality

In the truest sense of the word involvesa commitment between two or more individuals to keep private (privileged) information private and to respect a patients right to privacy, legally, ethically and professionally. (Griffith, 2015) Confidentiality training, unlikeprivacy training, goes beyond the administrative, physical and technological aspects of privacy to speaks to violations of public trust.

Training ConclusionTraining on HIPAA and confidentiality is an ongoing objective of organizations and leaders at all levels must check for breaches periodically and investigate thoroughly allegations. Substantiated cases must be dealt with immediately to emphasis the organizations position on the topic and to strengthen public trust.Training should remain realistic and support reaching adult leaners.

10

ReferencesGriffith, R. (2015). Understanding the Code: scope of the duty of confidentiality. British Journal Of Community Nursing, 20(6), 304-306 3p.Semel, M. (2013, March 18). HIPAA Privacy Rule - Minimal Necessary Access Requirements. Retrieved January 7, 2016, from http://www.4medapproved.com/hitsecurity/hipaa-privacy-rules-minimal-requirements/ The HIPAA Privacy Rule. (2008, May 7). Retrieved January 7, 2016, from http://www.hhs.gov/hipaa/for-professionals/privacy/index.html

Sixteen AgainSmooth Jazz All StarsTrin-i-tee 5:7 Smooth Jazz Tribute, track 7, disc 1/12007R&B227593.17eng - Amazon.com Song ID: 204981184