<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>EHR Experts &#187; HHSM HIPAA</title>
	<atom:link href="http://www.ehrexperts.us/tag/hhsm-hipaa/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ehrexperts.us</link>
	<description></description>
	<lastBuildDate>Thu, 24 Nov 2011 11:29:03 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>HHS issues rule on EHR breach notification</title>
		<link>http://www.ehrexperts.us/hhs-issues-rule-on-ehr-breach-notification/</link>
		<comments>http://www.ehrexperts.us/hhs-issues-rule-on-ehr-breach-notification/#comments</comments>
		<pubDate>Mon, 21 Sep 2009 11:14:33 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[EHR]]></category>
		<category><![CDATA[Electronic Health Records]]></category>
		<category><![CDATA[electronic health information]]></category>
		<category><![CDATA[HHSM HIPAA]]></category>
		<category><![CDATA[HITECH]]></category>

		<guid isPermaLink="false">http://www.ehrexperts.us/?p=7</guid>
		<description><![CDATA[Diana Manos, Senior Editor
 
The Department of Health and Human Services issued new regulations Wednesday requiring healthcare providers, health plans and other entities covered by the Health Insurance Portability and Accountability Act (HIPAA) to notify patients if their electronic health information has been breached.
 
The regulations are mandated by the Health Information Technology for Economic [...]]]></description>
			<content:encoded><![CDATA[<p class="MsoNormal" style="text-align: justify;"><em><span style="font-size: 10pt; font-family: Arial;">Diana Manos, Senior Editor</span></em></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">The Department of Health and Human Services issued new regulations Wednesday requiring healthcare providers, health plans and other entities covered by the Health Insurance Portability and Accountability Act (HIPAA) to notify patients if their electronic health information has been breached.</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">The regulations are mandated by the Health Information Technology for Economic and Clinical Health (HITECH) Act, passed as part of American Recovery and Reinvestment Act of 2009 (ARRA) last February.</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">Developed by the HHS Office for Civil Rights, they require healthcare providers and other HIPAA &#8220;covered entities&#8221; to promptly notify people whose health records have been breached, as well as the HHS Secretary and the media in cases where a breach affects more than 500.</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">Covered entities include doctors, clinics, psychologists, dentists, chiropractors, nursing homes and pharmacies – if they transmit any information in an electronic form using a standard that HHS has adopted.</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">According to the OCR, the rule also applies to health insurance companies, HMOs, company health plans and government programs that pay for healthcare, such as Medicare, Medicaid and the military and veterans&#8217; health care programs. It includes healthcare clearinghouses that process non-standard health information received from another entity into a standard electronic format or data content, or vice versa.</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">&#8220;This new federal law ensures that covered entities and business associates are accountable to the department and to individuals for proper safeguarding of the private information entrusted to their care,&#8221; said Robinsue Frohboese, acting director and principal deputy director of the OCR. &#8220;These protections will be a cornerstone of maintaining consumer trust as we move forward with meaningful use of electronic health records and electronic exchange of health information.&#8221;</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">HHS officials said they developed the regulations after taking public comment last April and under &#8220;close consultation&#8221; with the Federal Trade Commission). The FTC has issued its own breach notification regulations that apply to vendors of personal health records and certain others not covered by HIPAA.</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">To help providers to determine when information is &#8220;unsecured&#8221; and notification is required by the HHS and FTC rules, HHS is also issuing an update to its guidance on encryption and destruction of technologies that are no longer usable. Providers that are subject to the HHS and FTC regulations that secure electronic health records according to HHS guidance through encryption or destruction are relieved from having to notify in the event of a breach. This guidance will be updated annually.</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">The HHS interim final regulations on breach notification will be effective 30 days after they are published in the Federal Register and will include a 60-day public comment period.</span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;">Above article published on </span></p>
<p class="MsoNormal" style="text-align: justify;"><a href="http://www.healthcareitnews.com/news/hhs-issues-rule-ehr-breach-notification" target="_blank"><span style="font-size: 10pt; font-family: Arial;">http://www.healthcareitnews.com/news/hhs-issues-rule-ehr-breach-notification</span></a></p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt; font-family: Arial;"> </span></p>
<p style="text-align: justify;"><script src="http://w.sharethis.com/button/sharethis.js#tabs=web%2Cpost%2Cemail&amp;charset=utf-8&amp;style=default&amp;publisher=09b00708-1e2c-4346-a72e-d4c1efb1b8fb&amp;headerbg=%231883ad&amp;inactivebg=%23abc1de&amp;inactivefg=%230d0c02&amp;linkfg=%236192ab" type="text/javascript"></script></p>
 
<span class = "" style = " "><iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/pages/OmniMD/148862785198859?sk=info&layout=standard&send=false&show_faces=true&width=&action=like&colorscheme=light&font=" scrolling="no" frameborder="0" allowTransparency="true" style="border:none; overflow:hidden; width:px; height:px"></iframe></span>]]></content:encoded>
			<wfw:commentRss>http://www.ehrexperts.us/hhs-issues-rule-on-ehr-breach-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

