
Develop a compliant HIPAA/HITECH workforce through a four-part pathway that builds a robust training program, privacy and security standards policies, breach reporting, risk analysis, and ongoing compliance resources.
Explore how HIPAA and the HITECH Act drive administrative simplification, privacy, and security for covered entities and business associates, including minimum necessary access and workforce training.
Identify privacy and security obligations for PHI and the permitted uses and disclosures under HIPAA and HITECH. Outline consent and authorization requirements and the workforce's ongoing training responsibilities.
Identify how a HIPAA and HITECH compliant workplace provides ongoing workforce training and documented policies. Outline privacy and security officers' roles, sanctions, and breach reporting procedures.
Part 4 of HIPAA and HITECH: Pathway to Compliance provides the basics for building workforce training programs with an emphasis on the individual employee's accountability for compliance. Part 4 is made up of three sections which can be used by the Covered Entity or Business Associate to build its workforce's understanding of its compliance requirements:
Section 1: HIPAA/HITECH, What's it all about outlines the purpose of HIPAA's Administrative Simplification Provisions and provides definitions for general HIPAA/HITECH terms which have become a part of the healthcare lexicon for the administration of healthcare today. Compliance is best nurtured by knowing the history and intent of regulations which regulate workforce performance.
Section 2: What the workforce needs to know equips the individual employee with basic definitions of key HIPAA/HITECH terms, such as PHI, Consent, Privacy Notice and Authorization, which are likely to be encountered in regular workforce functions. Compliance is best implemented by well-trained processes and a well-trained workforce.
Section 3: HIPAA Compliant Workforce helps the individual employee appreciate the employee’s responsibility for compliance and the basic elements of a compliant workplace. This section encourages the employee to seek out the resources that should be available through a Covered Entity's or Business Associate's Compliance Plan and to make use of the resources when needed to guide workplace compliance. This Section also includes case studies, and questions to enhance the key learning points. A template for Verification at Workforce Training Program and Employer Feedback on the Elements of a HIPAA-compliant Workforce are available with this Part.