Skip to main content

HIPAA Compliance with the New Omnibus Rule: How to Pass an Audit to Avoid Penalties and Criminal Convictions

                                            Jonathan P. Tomes
Jonathan P. Tomes , J.D., is Keynote Speaker at Compliance key Inc. He is a health care attorney practicing in the greater Kansas City. He is a nationally recognized authority and expert witness on the legal requirements for health information. Jon has written more than 60 books.

 Webinar Id:  HIPHJPT001
 12:30 PM PT | 03:30 PM ET 
 01/18/2018
 Duration: 60 mins 


Overview
Before the HITECH Act, DHHS could audit covered entities for HIPAA compliance, but did not have to. With that Act, now the must audit those entities and business associates as well. In the first audits, the Phase I audits, DHHS came on site. The subsequent Phase II audits, however, were paper audits in which those audited had to provide documentation of their compliance. As yet, we do not know what form Phase III will take, but the necessary actions to prepare will be largely the same whether the audit is purely a paper one or includes an on-site component.
Why should you attend this webinar?
If you are audited and found to be non-compliant, you could face civil money penalties, supervised Corrective Action Plans, bad publicity with concomitant loss of patients, and significant remediation costs.
Civil money penalties to date range from $50,000 to two in the $4 million range. Some of these penalties resulted from improper access by a workforce member, improper use, or improper disclosure. Such improper actions can also result in criminal liability. A physician went to federal prison for improper chart access. A nurse was convicted of improperly using PHI to threaten a lawsuit.
Nor are these penalties reserved for large practices. Fines have been assessed against two-physician practices and a small hospice in North Dakota. Being not-for-profit provides no immunity, nor does being a government entity. Alaska Medicaid was fined $1.5 million; and a county government (Skagit County in Washington State), $215,000.
Areas Covered in the Session:
  • Overview of HIPAA and the Security and Privacy Rules.
  • The Requirement for DHHS to Audit.
  • Audits to Date.
    • Who audits?
    • Phase I audits.
    • Phase II audits.
    • Audit Findings.
    • Possible penalties for failing audits.
    • Benefits of preparing for audits.
    • Will you be audited?
  • Preparing for audits.
    • Audit protocol.
    • Gap analysis.
    • Risk Analysis.
    • Prioritizing remediation.
    • Key areas DHHS focuses on.
    • Documentation.
  • Conclusion and Question and Answer.
Who can Benefit:
Health Professionals and their staffs, Privacy and Security Officers, Medical Records Professionals, IT Professionals, Office Managers, Risk Managers, Business Associates of Covered Entities (those that provide a service for the Covered Entity involving the use of individually identifiable health information (transcription services, billing services, cloud storage companies, and the like), Healthcare Attorneys, Compliance Officers, HIPAA consultants

Comments

Popular posts from this blog

The 5 most Dangerous Risks Under New HIPAA Laws

Compliance Key  -   Online hipaa training for employees in US Overview This 90-minute webinar will be addressing how practice/business managers (or compliance offers) need to get their HIPAA house in order before the imminent audits occur. It will also address major changes under the Omnibus Rule and any other applicable updates for 2018. We will go into detail about the 5 biggest "gotcha's" related to compliance with this enigmatic law. I will also speak of multiple litigated cases I have been involved with involving HIPAA compliance (or lack there of areas also covered will be texting, email, encryption, medical messaging, voice data and risk factors as they relate to IT.  The primary goal is to ensure everyone is well educated on what is myth and what is reality with this law, there is so much misleading information regarding the do's and don'ts with HIPAA - I want to add clarity for compliance officers and what you guys need to do and how to best im...

Strategies for Becoming a Business Partner to Your Healthcare Leaders.Compliance Key INC -

Compliance Key INC  -  Healthcare Training Online                                                    Jay Anstine Mr. Anstine's professional background includes working on the provider and the payer side of the market, for large for-profit and non-profit health systems, and small physician-owned entities. In tackling the countless regulatory and operational issues for these diverse organization types, he has developed a deep understanding of the business of healthcare and the regulations that govern the industry.  Webinar Id:  LSHCSJA022  10:00 AM PT | 01:00 PM ET  12/13/2017  Duration 60 mins  Overview All too often compliance is seen as an obstacle or otherwise viewed negatively by healthcare leaders. This presentation will discuss strategies and insights to help the compliance of...

Essentials of Affirmative Action and OFCCP Compliance

Compliance Key INC  -  Human Resource Training Online                                                                  Janette Levey Frisch Janette Levey Frisch is Keynote Speaker at Compliance key Inc. She is founder of  The EmpLAWyerologist Firm, has over 20 years of legal experience, more than 10 of which she has spent in Employment Law. It was during her tenure as sole in-house counsel for a mid-size staffing company headquartered in Central New Jersey, with operations all over the continental US, that she truly developed her passion for Employment Law.   Webinar Id:   CICJE001  10.00 AM PT | 01.00 PM ET   01/09/2018  Duration: 90 mins  Overview If you are a federal contractor, having a firm grasp on the essentials ...