preview

A Summary Of HIPAA Legislation

Decent Essays

• The Security Rule requires that covered entities must protect against reasonably anticipated, uses or disclosures of e-PHI that is not permitted. It requires them to perform risk analysis as a part of their security process.
• Who must comply and follow these rules that have been set in place by the HIPAA legislation? This applies to covered entities and their relevant business associates such as suppliers and vendors who maintain, transmit, store, or access PHI. Examples of these being chiropractors, clinics, doctors, dentists, nursing homes, and pharmacies. This further includes health plans which provide or pay the cost of health care such as company health plans, health insurance companies, health maintenance organizations, and government programs like Medicare and Medicaid.
…show more content…

• Other covered entities include business associates who are people or organizations that perform a service for the covered entity which involves access to personal health information. These types of services typically involve billing, data analysis, financial, and legal services.
• The Office of Civil Rights of the Department of Health and Human Services enforces HIPAA regulations. They conduct investigations of complaints and periodically conduct compliance audits.
• Noncompliance with HIPAA is not acceptable. It comes with punishments that can be monetary penalties of up to $50,000 or more per violation and a potential criminal penalty of a year in prison or if a breach occurs that is shown to have been done with malicious intent the punishment can be increased to $100,000-$250,000 and up to a 10-year prison

Get Access