Chapter 16
Health Insurance Portability and Accountability Act (HIPAA) Compliance
CHECKLIST
HIPAA/HITECH Compliance
□ Health Information Technology for Economic and Clinical Health (HITECH) Act
□ Civil and criminal penalties
□ Expanded definition of business associates (BAs)
Who Are BAs?
□ Working on or behalf of covered entities (CEs)
□ Providing protected health information (PHI) data to CEs
□ Vendors contracting with CEs
Fail to Comply with HIPAA
□ CMPs: $100–$10,000/violation
□ Criminal penalties
□ Mandatory Health and Human Services (HHS) investigation and assessment
□ Civil actions by state attorney generals (AGs)
Security Breach Notification
□ Must notify CEs of unsecured PHI breaches
□ CEs must notify individuals
□ CE may need ...
Get A Guide to IT Contracting, 2nd Edition now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.