Tasks attached
HIPAA : Overview
By: Prabhakar Rao Kandula,
New England College
The Health Insurance Portability and Accountability Act, also known as HIPAA, was established on August 21, 1996
What IS HIPAA?
2
WHY HIPAA WAS INTRODUCED ?
3
TO Maintain the Patients Privacy
TO protect the Patients Information
TO provide right to Patient for controlling their data
TO ensure security of Patients information regardless of its state
4
HIPAA Signed into Law by President Bill Clinton
YEAR 1996
HIPAA Privacy Rule
YEAR 2003
HIPAA Security Rule
YEAR 2005
HIPAA Breach Enforcement Rule
YEAR 2006
HITECH and the Breach Notification Rule
YEAR 2009
Final Omnibus Rule
YEAR 2013
TRANSFORMATION OF HIPAA
PRIVACY RULE:
Defined Protected Health Information (PHI)
18 identifiers of PHI
Rights to Patients to withhold their information
Track the disclosure of information
SECURITY RULE:
Regulations for Safeguarding ePHI
Safeguards to be in place to maintain the security of ePHI
Administrative
Physical
Technical
ENFORCEMENT RULE:
Allowing the Department of Health and Human Services to investigate covered entities reported for failing to comply with HIPAA regulations.
HITECH RULE
Healthcare groups to maintain the Protected Health Information of patients in electronic format, instead of paper files.
Introduction of the Breach Notification Rule
OMNIBUS RULE
Addressing the gaps between HIPAA and HITECH
Changes in Privacy and Security Rules
New penalties
Amendments
Securing HEALTHCARE DATA in CLOUD
Encryption at rest, transit, use
Rotate keys
Monitoring
Auditing
Assessments
Firewalls
DLP
IDS/IPS
Conclusion:
Securing healthcare data is important meeting HIPAA compliance
Being non-compliant would put the organizations in risk and lead to pay heavy penalties.
Thank you
References:
AWS. (2020). Architecting for HIPAA Security and Compliance on Amazon Web Services. https://d1.awsstatic.com/whitepapers/compliance/AWS_HIPAA_Compliance_Whitepaper.pdf.
Borten, K. (2014). The No-hassle Guide to HIPAA Policies : A Privacy and Security Toolkit. https://eds-b-ebscohost-com.nec.gmilcs.org/eds/ebookviewer/ebook?sid=09d9ceb3-3c2d-46d1-95ae-8226867f8753%40pdc-v-sessmgr06&ppid=pp_I&vid=1&format=EB.
Journal, H. (2019). HIPAA History. https://www.hipaajournal.com/hipaa-history/.
Mary Woten, R. B. (2018). Health Insurance Portability and Accountability Act (HIPAA): an Overview. https://eds-b-ebscohost-com.nec.gmilcs.org/eds/pdfviewer/pdfviewer?vid=3&sid=187cec5d-66e7-4459-a1ae-b062b6cbcd8c%40sessionmgr4006.
Serrano, H. (2019). How to avoid the devastating consequences of HIPAA noncompliance . https://eds-b-ebscohost-com.nec.gmilcs.org/eds/pdfviewer/pdfviewer?vid=0&sid=4b82bb3a-c0bf-4ed7-95c6-3fa6b7a5df40%40pdc-v-sessmgr03.