Академический Документы
Профессиональный Документы
Культура Документы
HIPAA is the Health Insurance Portability The guidelines governing audits have
and Accountability Act, the 1996 federal changed. Prior to 2008, an organization
regulation that mandated health‐data was only put through an intense
About DataMotion
privacy. investigation when a routine audit found
DataMotion is the first
an egregious problem—and such routine Intelligent Information
This regulation requires compliance by all audits were usually scheduled. Transport service that
insurers and health care providers, automates key business
including physician’s offices, hospitals, But in February 2008, the U.S. processes, so you can easily
health plans, employers, public health Department of Health and Human and quickly exchange
authorities, life insurers, clearinghouses, Services, which oversees HIPAA information with your
billing agencies, information systems compliance, contracted with the firm partners, customers, and
vendors, service organizations, and PricewaterhouseCoopers to conduct colleagues.
universities. surprise audits of hospitals. The DataMotion solution
automates key business
But that’s not all. If you work at a hospital, or communicate processes, such as
with one, you could be targeted for a automated billing, credit
The Act’s Privacy Rule also regulates surprise audit this year. This changes the application processing, or
medical payment history privacy. Simply stakes for everyone’s need to be ready. customer outreach, to help
put, it requires that all health entities you send critical
take reasonable steps to ensure the And if that’s not enough to worry you, the information over the
confidentiality of all communications that states are getting into the picture as well. Internet.
contain patient or customer information. In New York State, the loss or
compromise of 10 or more patient
And things could get even more serious records must now be reported to the
very quickly. The passage of the HITECH New York State Department of Health.
Act creates mandatory reporting
requirements of HIPAA violations, even
So, ask yourself, “Would my company And relieves your board of directors.
know if we lost 10 patient records?” If
you’re in the state of New York, your And satisfies your customers and
answer must be “Yes.” patients.
At the same time, you can’t afford to stop It can happen any time and any place
communications. Likewise, you can’t where data is transferred between:
afford to handle hundreds of false For more
positive alerts— alarms signaling that a • People inside your company’s information:
breach has occurred when one hasn’t. No firewall http://www.datamotion.com/Solutions
/HealthcareInsurance.aspx
one has time for that. • People inside and outside your
company’s firewall
Many companies are hesitant to apply • Your people and your partners
filters to their most important • Your people and your customers (or
communications— email and patients)
attachments. For example, if a filter were • Two different systems
to keep every piece of mail from leaving
your company that included the word Whenever information passes between
“diabetes” and a person’s name, you systems and people, the data needs to be
couldn’t send out an email message with secured at all times, even when in transit.
an attachment that says, “Watch for You must also ensure the data that is sent
these symptoms, they may indicate you to people outside your firewall is always
have diabetes.” sent in encrypted format, so that no one
but its intended recipients can read it.
On the other hand, you must be sure that
the attachments that include a patient’s For example, should you need to transmit
name, id number, and blood‐test results patient data from a doctor’s office to a For a free 5-user,
can never be intercepted accidentally, or central database, if it is encrypted, it 30 day trial
be sent outside your company could be sent automatically as an email http://www.datamotion.com/Resources/
FreeTrial.aspx
unencrypted. attachment.