HIPAA Compliance and Medical Privacy:
Strategies for your Practice

Since your practice needs to comply with HIPAA regulations and your local system needs to be secure as well. You need to ensure you are HIPAA compliant because on your local system the patient information is NOT de-identified.

Here are some steps we require or recommend:

1. Firewall software must be installed on your system.
2. Protect access to use or view the application.
3. Keep printed materials protected and private.

Some further suggestions to keep in mind:
  • Keep information displayed on the computer confidential. Make sure computer monitors are not visible to your patients, so medical and personal details displayed on the screen cannot be viewed by unauthorized people.
  • Keep information on paper confidential. Any printouts of Treatment Option Plans, etc. should be kept confidential (for example, not sitting up on the counter at reception waiting for the patient to return from the exam room).
  • Protect any paper documents as you would any other sensitive medical records
  • Don't throw printed information into the trash or recycling receptacles without shredding them (e.g. Treatment Option Plan reports or Risk Assessment Input Forms with patient data)
  • Don't transfer information that identifies the patient that also includes the PreViser ID, which then nullifies the "de-identification" process. For example, don't email Treatment Option Plans to patients or billing statements to your bookkeeper.
 

Again, for more resources to answer questions you and your patients may have, please visit the PreViser Support Center.

Next Topic:
Disaster Recovery