Preview

Releasing Protected Health Information

Good Essays
Open Document
Open Document
1040 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
Releasing Protected Health Information
Releasing Protected Health Information

HCR 210
Sunday, October 3, 2010
Lisa Israel, MBA, CMT

Releasing Protected Health Information
The Health Insurance Portability and Accountability act of 1996 (HIPAA) is a federal law that defines the reasons protected health information (PHI) can be released. HIPAA created important rules and regulations safeguarding the confidentiality of protected health information (PHI) and published updated guidelines in 2003 to include electronically collected, maintained, used, or transmitted PHI. Any confidentiality violation could result in fines, termination, and possible imprisonment (Green, Bowie, 2010). In most cases, the covered entity is required to obtain an individual’s authorization prior to disclosing any health information to a third party. In most circumstances, the patient or a legal representative of the patient controls the disclosure of PHI to any third party. If there is a signed consent, the covered entity may release the PHI to anyone the patient wants without violating HIPAA regulation. If the patient is not present or is incapacitated, PHI may need to be disclosed to another person if it is found to be in the best interest of the patient (State of Idaho, 2000).
However, there are many situations in which government agencies or other covered entities have the right or legal obligation to access, obtain, or disclose PHI without needing or requiring written authorization from the patient or the patient’s representative. Covered entities may disclose protected health information for the purpose of audits to ensure quality improvement of the facility. If there is an investigation of professional misconduct PHI may be released for civil, administrative, or criminal investigations for malpractice suits. If governmental agencies as OSHA, Medicare or Medicaid serve a subpoena duces tecum to the hospital, no authorization from the patient is needed to release PHI (Understanding Health Information Privacy, 2010).



References: CDC. (2003). HIPAA Privacy Rule and Public Health. Retrieved July 11, 2010 from http://www.cdc.gov/mmwr/preview/mmwrhtml/m2e411a1.htm Green, M. A., & Bowie, M. J. (2010). Essentials of Health Information Management: Principles and Practices State of Idaho. (2000). Medical Privacy. Retrieved from http://www2.state.id.us/ag/consumer/privacy/medicalprivacy.htm Thacker, M.D.,M.Sc., Director, S. B. (2003). HIPAA Privacy Rule and Public Health.  Department of Health and Human Services. Retrieved from http://www.cdc.gov/mmwr/preview/mmwrhtml/m2e411a1.htm (Thacker, M.D.,M.Sc., Director, 2003). Understanding Health Information Privacy. (2010). Understanding Health Information Privacy. Retrieved from http://www.hhs.gov/ocr/privacy/hipaa/understanding/index.html (Understanding Health Information Privacy, 2010). U.S. Department of Health and Human Services. (2000). PROTECTING THE PRIVACY OF PATIENTS ' HEALTH. Retrieved from http://www.informatics-

You May Also Find These Documents Helpful

  • Satisfactory Essays

    1. How does HIPPA serve to protect patient rights? A patient’s health information can be shared with doctors and hospitals for treatment and care. The information can also be shared with family members who the patient has given permission to access the patient’s records. HIPPA’s guidelines make clear exactly what information about patients is protected. Called PHI, this information includes anything that would identify a patient, from name, Social Security numbers and addresses to broader identifiers like race, age and home state. Information about the person’s health care needs or medical history is also considered PHI.…

    • 388 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    MIS565 You Decide abc

    • 648 Words
    • 2 Pages

    The HIPAA privacy rule is a basic threshold promulgated by the US Department of Health and Human services (HHS) for the protection of health information and it applies to three sets of organizations, usually referred to as “covered entities” (US Dept. Health and Human Services). On April 5, 2015, this is a formal contract with Chief Compliance Officer, JFK Medical Center to take effective immediately and supersedes all other documents.…

    • 648 Words
    • 2 Pages
    Good Essays
  • Powerful Essays

    HIPAA allows patients’ health information to be disclosed under some circumstances, such as 1) to meet law requirements; 2) for reporting of abuse, neglect, and domestic violence; 3) for monitoring of healthcare operations; 4) to be presented as evidence in legal proceedings; 5) for assistance with police investigation; 6) for medical examinations and funerals; 7) for organ donation; 8) for research; 9) to avoid a significant threat to health or safety; 10) for workers’ compensation payments; 11) to execute government…

    • 81 Words
    • 1 Page
    Powerful Essays
  • Good Essays

    The HIPAA Privacy and Security Rules benefit and support the integrity of the healthcare industry, patients, and physicians by supplying the patient with the Notice of Privacy Practices before care is administered. It gives the patient all the pertinent information on how the information in their medical records will be used and shared along with the rights they have to the record. If there are any questions or if the patient feels like the confidentiality of their protected health information has been breached; there is a number contained in the notice for the patient to pose a formal complaint with the Office for Civil Rights (OCR). Also, by allowing patient access to their medical records to confirm the accuracy of the record and revise…

    • 309 Words
    • 2 Pages
    Good Essays
  • Good Essays

    One is court orders; the patient’s PHI may be used as evidence in a court of law. The second is worker’s compensation cases; the state may provide release to the state worker’s compensation administration board and the insurance company that may be handling the case. The third is statutory reports; this type of information required by law to be reported. The information like births, deaths, abuse cases, and communicable diseases is statutory reports. The fourth is research data; PHI may be available to researchers that are approved by the practice. A physician may conduct clinical trials and the appropriate information is…

    • 434 Words
    • 2 Pages
    Good Essays
  • Good Essays

    HIPPA Tutorial Summary

    • 1340 Words
    • 5 Pages

    HIPAA stands for Health Insurance Portability and Accountability Act. HIPAA privacy rule was passed by congress in August of 2002. According to Understanding Health Information Privacy (2014), "The HIPAA Privacy Rule provides federal protections for individually identifiable health information held by covered entities and their business associates and gives patients an array of rights with respect to that information. At the same time, the Privacy Rule is balanced so that it permits the disclosure of health information needed for patient care and other important purposes.” The Security Rule specifies a sequence of administrative, technical, and physical safeguards for covered entities and their business associates to use to assure the confidentiality, availability, and integrity of electronic protected health information (Understanding Health Information Privacy, 2014). The HIPAA, Health Insurance Portability and Accountability Act, tutorials are a memento that there is continuous need for progress on the part of health care professionals and individuals. There is a strong need among health care professionals to know the guidelines, rules and regulations to stay within the laws set onward by the federal government.…

    • 1340 Words
    • 5 Pages
    Good Essays
  • Powerful Essays

    Hipaa Summary

    • 1389 Words
    • 5 Pages

    Congress intended HIPAA to protect individually identifiable health information. Any entity, including a physician's office, a hospital or other health care facility, or an insurer that deals with personal health information must follow strict rules about how to handle that information to avoid disclosing it to someone not authorized to see it. For example, Health and Human Services allows physicians and insurance companies to exchange individually identifiable health information to pay a health claim, but would not allow them to release it publicly. Penalties for violating the regulations include civil fines of up to $50,000 per violation, according to Health and Human Services.…

    • 1389 Words
    • 5 Pages
    Powerful Essays
  • Satisfactory Essays

    Unit 1 Assignment 1

    • 286 Words
    • 1 Page

    HIPAA required the Secretary of the U.S. Department of Health and Human Services (HHS) to develop regulations protecting the privacy and security of certain health information. To fulfill this requirement, HHS published what are commonly known as the HIPAA Privacy Rule and the HIPAA Security Rule. The Privacy Rule, or Standards for Privacy of Individually Identifiable Health Information, establishes national standards for the protection of certain health information. The Security Standards for the Protection of Electronic Protected Health Information (the Security Rule) establish a national set of security standards for protecting certain health information that is held or transferred in electronic form. The Security Rule operationalizes the protections contained in the Privacy Rule by addressing the technical and non-technical safeguards that organizations called “covered entities” must put in place to secure individuals’ “electronic protected health information” (e-PHI).…

    • 286 Words
    • 1 Page
    Satisfactory Essays
  • Good Essays

    Hipaa Research Paper

    • 754 Words
    • 4 Pages

    Even though HIPAA was put in place to set standards to protect the privacy of patients health information, there are certain circumstances where your health information may be used: 1. Decedents -funeral directors, coroner’s and medical examiners, to determine cause of death and for identity if needed. 2. Donation and transplant of organs, eyes and tissue. 3. Public health activities. 4. Victims of abuse, neglect or domestic violence. 5. Judicial and administrative proceedings. 6. Workers’ compensation. 7. Law…

    • 754 Words
    • 4 Pages
    Good Essays
  • Satisfactory Essays

    The Health Insurance Portability and Accountability Act of 1996 (HIPAA) was created to develop regulations to protect the privacy and security of certain health information; which shouldn’t be accessible to individuals without the need to know. The U.S. Department of Health and Human Services (HHS) is responsible for HIPAA compliance within the Privacy Rule as well as the Security Rule. This Privacy Rule develops national standards for protecting certain health information while the Security Rule establishes a national set of security standards for protecting specific health information that is held or transferred in electronic form.…

    • 470 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    Est1 Task 1

    • 623 Words
    • 3 Pages

    Health Insurance Probability and Accountability Act (HIPAA) mandated the adoption of privacy and security protection for identifiable health information. This particular privacy rule has been implemented throughout the healthcare industry. The HIPAA privacy rule also protects all health information in a medical organization such as medical records and lab reports. In addition, security rule is limited in range and focuses primarily on electronic protected health information.…

    • 623 Words
    • 3 Pages
    Good Essays
  • Satisfactory Essays

    HIPAA Privacy Analysis

    • 170 Words
    • 1 Page

    Patient care has been vulnerable by HIPAA; healthcare providers cannot easily share patient’s information. Each patient or power of attorney must give implied permission for a healthcare provider to share any personal information. Deprived of not being able to share patient information between providers, it takes longer time to get critical information that can affect patient care. Healthcare organizations faces supplementary legal costs if they violate HIPAA privacy provisions. These costs make many organizations careful of sharing a patient information, even if the patient has given permission for information sharing, so that’s why everything has to be documented, initial, and signed.…

    • 170 Words
    • 1 Page
    Satisfactory Essays
  • Satisfactory Essays

    Hcs 483 Wk1Dq1 2

    • 457 Words
    • 2 Pages

    Prior to the enactment of the Health Insurance Portability and Accountability Act (HIPPA) health information was able to be shared without the knowledge or permission of the patient. This information was available to just about anyone including insurance agencies, places of employment and even loan lenders. People would potentially use individuals’ health information to deny them work or a loan for their home and even impacting higher insurance rates or denial of coverage. According to U.S. Department of Health and Human Services (n.d.), “The Privacy Rule establishes a Federal floor of safeguards to protect the confidentiality of medical information. State laws which provide stronger privacy protections will continue to apply over and above the new Federal privacy standards.” (para. 1). Also, as medical records continue to move entirely to the new standard of electronic records it is important to have one standard across the country to protect everyone’s information. Electronic health records (EHR) make it easier than ever to accidentally share medical information, to include having it stolen. Medical providers are just as likely to face consequence if their facility is broken in to and the hard drive with patients information is stolen as they would be if they gave the information away themselves. In general HIPPA protects patients’ information as well as their right to be treated equally.…

    • 457 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    The three broad objectives HIPAA privacy standards were designed to accomplish are; define and limit the circumstances in which individuals use and disclose patient health information, establish individual rights regarding patient health information, and require protected individuals to adopt administrative safeguards to protect the confidentiality and privacy of patient healthcare information (Cleverley, pg.95). The HIPAA Privacy Standards prohibit covered entities from using or disclosing individually identifiable health information that is or has been transmitted or maintained electronically. This requirement isn’t limited to the record in which the information appears but applies to the actual information itself. Any information that has been transmitted by email, fax, telephone, or any other…

    • 995 Words
    • 4 Pages
    Good Essays
  • Satisfactory Essays

    Health Information

    • 678 Words
    • 3 Pages

    | HIPAA Rules (1) A major goal of the Privacy Rule is to assure that individuals’ health information is properly protected while allowing the flow of health information needed to provide and promote high quality health care and to protect the public 's health and well-being. (2) The HIPAA Security Rule establishes national standards to protect individuals’ electronic personal health information that is created, received, used, or maintained by a covered entity. The Security Rule requires appropriate administrative, physical and technical safeguards to ensure the confidentiality, integrity, and security of electronic protected health information. (3) The HIPAA transactions and code set standards are rules to standardize the electronic exchange of patient-identifiable, health-related information. They are based on electronic data interchange (EDI) standards, which allow the electronic exchange of information from computer to computer without human involvement.…

    • 678 Words
    • 3 Pages
    Satisfactory Essays