Running Head: HIPAA f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f 1
4-2 Journal: HIPAA
HIM422
SNHU
May 29,2022
HIPAA f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f 2
• The integration of social media, telehealth and mobile technologies in the health care
setting has increased the importance of policies relating to how these technology-based elements
are integrated into health care services. Since these digital elements increase cybersecurity risks, it
is of paramount importance to comply with relevant policies and regulations that can help to
minimize or mitigate the risks that arise in the uncertain cyber domain. According to Kruse and
Williams, health policies can play an instrumental role in influencing how technology is used to
reach patients and increase the accessibility of care services (Kruse et al., 2021). Such policies can
also play a critical role in making sure that the use of innovative digital technologies does not
increase the risk relating to violation of sensitive patient health information. The policies can serve
as guidance and allow health care professionals and practitioners to responsibly use social media
platforms, mobile technologies, etc. so that value can be created for patients and their medical data
will be managed in a safe and secure manner by health care entities.
• In the digitalized era, when the issue relating to data breaches in the health care domain is on
the rise, the role of HIPAA privacy and security rules is of extreme importance. The HIPAA
Privacy rule fundamentally establishes standards for safeguarding patients’ medical records along
with other sensitive personal health information (PHI). It highlights the basic rights of patients in
relation to their confidential information that is available with health care entities (Summary of the
HIPAA security rule. HHS.gov, 2021). Organizations have the responsibility to treat sensitive and
confidential patient information with utmost care and caution so that the privacy of patients will not
get compromised. HIPAA Privacy rule is vital since it addresses how patient information is
handled and managed. These rules are of high value since they empower patients to have better
control over their PHI.
HIPAA f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f 3
• The Notice of Privacy Practices (NPP) is a HIPAA-mandated notice that specific
organizations need to give to patients as well as research subjects that captures how the entities may
utilize or disclose their personal health information (PHI). This notice also informs the patients
about the legal rights that they have in relation to their PHI. Some of the key elements that have
been integrated into the notice include treatment, alternatives to treatments, appointment
reminders, treatment as well as health care operations, etc. (Notice of privacy practices (NPP).
Electronic Frontier Foundation, 2021). The fundamental purpose of NPP is to make sure that
covered health care entities can improve the patient experience as well as comprehension by
providing a clear, user-friendly explanation relating to their PHI-related rights and privacy
practices relating to health plan and health care service providers. The NPP plays an instrumental
role in influencing how patient information is used for the purpose of treatment, payment as well as
conducting health care operations. The proper comprehension, as well as adherence to Notice of
Privacy Practices, is vital for entities that operate in the delicate and dynamic health care setting
since it can impact the level of empowerment of patients who avail health care services.
HIPAA f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f f 4
References
Kruse, C. S., Williams, K., Bohls, J., & Shamsi, W. (2021). Telemedicine and health policy: a
systematic review. Health Policy and Technology, 10(1), 209-229.
Summary of the HIPAA security rule. HHS.gov. (2021, June 28). Retrieved May 28, 2022, from
https://www.hhs.gov/hipaa/for-professionals/security/laws-regulations/index.html
Notice of privacy practices (NPP). Electronic Frontier Foundation. (2021). Retrieved May 28,
2022, from https://www.eff.org/glossary/notice-privacy-practices-
npp#:~:text=HIPAA%2Dmandated%20notice%20that%20covered,their%20legal%20right
s%20regarding%20PHI.