Skip to content
Off the Cusp

Off the Cusp

Dental industry news, trends and information from Patterson Dental.

Menu
  • Home
  • Categories
    • Business of Dentistry
      • Dental Practice Marketing
      • Practice Finance
      • Practice Growth
    • Dental Industry News
      • Industry Events
    • Dental Practice Management
      • Human Resources
    • Dental Practice Safety
      • Infection Control
    • Future of Dentistry
      • Dental Equipment
      • Dental Technology
      • CAD/CAM
  • About
    • Off The Cusp Privacy Policy
    • Off The Cusp Terms of Use
  • pattersondental.com
  • Home
  • Dental Office Education
  • What Is Your HIPAA Compliance IQ?
Dental Office Education Dental Practice Management

What Is Your HIPAA Compliance IQ?

Linda HarveyLinda Harvey Linda HarveyMay 27, 2015May 26, 2015
What is your HIPAA IQ?

Share

Facebook
Twitter
Pinterest
LinkedIn
Email
Read Time:3 Minute, 13 Second

All healthcare professionals would agree that maintaining confidentiality and privacy of patient information is of utmost importance. The requirements for maintaining confidentiality and privacy are strictly mandated under the HIPAA laws.

The privacy and security regulations apply equally to all covered entities and business associates and have been in effect for over 10 years. Based upon your experience, how would you rate your compliance IQ? Check out these actual scenarios (Note: real names not used). How would you have responded?

What is your HIPAA IQ?
CC image courtesy of Recrea HQ on Flickr.

Samantha emailed a copy of Mrs. Preston’s orthodontic consult to the referring dentist. Unfortunately, Mrs. Preston had requested that none of her information be transmitted via unencrypted email. Samantha realized her error, but did not admit it until her boss questioned her. To make matters worse, Mrs. Preston had specifically discussed her email preferences during her consult with the orthodontist.

What should you have done if you were in Samantha’s shoes? Should the patient be notified?

What is your HIPAA IQ?

When Mrs. Johnston called to inquire about her husband’s upcoming dental appointment, Eileen explained the treatment plan and fees to her. Mrs. Johnston became irate as she felt her husband was being overcharged for treatment he did not need. At that point, Eileen realized there was a note buried in the electronic record that Mr. Johnston had requested his treatment not be discussed with anyone, including his wife.

How should this have been handled? How could it have been prevented?

Both of these situations deal with the patient’s right to confidential communication under the Privacy Rule. Once you agree to a patient’s request such as not emailing their protected health information (PHI) or restricting whom you can talk to about their care, you are obliged to comply.

In Samantha’s case, perhaps she did not review the electronic chart prior to sending the email or the chart was not appropriately marked with an alert not to use unencrypted electronic communication. Either way, she should have notified the doctor so it could have been addressed with the patient. Electing to ignore the situation could prove problematic if the referring dentist happened to mention the email to Mrs. Preston.

Initially, Eileen thought she was being helpful. It didn’t cross her mind to check the administrative notes about Mr. Johnston’s HIPAA request; after all, they were under the same account. Eileen should have taken a few extra seconds to review any electronic administrative notes or the HIPAA forms indicating the patient’s preference.

What would you have done in each scenario? Or are you wondering, “What’s the big deal?”

In the end, small HIPAA hiccups could result in a “big deal” if the patient exercises his/her right to file a complaint with the Office of Civil Rights (OCR). Even if the OCR only conducted an informal investigation and no fine was levied, the headache and potential loss of patient trust and your reputation carries indirect as well as direct costs.

Maintaining patient confidentiality and privacy throughout your practice necessitates a comprehensive approach. It’s a mistake to believe compliance consists of just conducting annual team training or taking a CE course. Nor is it limited to a checklist provided by your IT vendor related to technical safeguards. And you are not in compliance if you purchased a manual, but have not customized the policies.

Being fully HIPAA compliant first and foremost means understanding the legal requirements of the security and privacy laws, then adhering to those requirements. Start by reviewing the directions and table of contents of your current manual to ensure you completed everything as directed. Next, review the prior blog post titled “Maintaining Readiness in the Dental Office” for compliance tips. Lastly, refer to the this link to read more about the regulations.

 

Linda HarveyLinda Harvey

About Post Author

Linda Harvey

As a nationally recognized healthcare risk manager and compliance expert, Linda Harvey teaches dentists and teams how to effectively integrate regulatory compliance into their practices. Linda draws from real-world experience, having worked with clients who have undergone HIPAA, OSHA and Dental Board audits. <a href="http://www.lindaharvey.net/">Linda speaks and consults</a> in the areas of risk management, regulatory compliance, remediation courses and dental record audits. In addition to active membership in the National Speakers Association, Academy of Dental Management Consultants and American Society of Healthcare Risk Management, Linda is also a Distinguished Fellow in the American Society of Healthcare Risk Management.
Total
15
Shares
Share 15
Tweet 0
Pin it 0
Share 0
Tagged compliance, HIPAA, HIPAA compliance, OCR, office of civil rights, patient data, patient privacy, PHI, Protected Health Information

Post navigation

Previous

Previous post:

3 Reasons Patients Love Technology

Next

Next post:

Understanding your Dental Lease: Exclusivity Clause

Subscribe

* indicates required

Recent posts

  • 5 Proven Ways To Keep Patients Engaged, Returning And Referring
  • 3 Steps to Consider When Selling A Multilocation Practice
  • 3 Reasons To Explore Tech-Savvy Cavity Prep
  • 3 Ways A Complimentary Eaglesoft Wellness Check Can Help Advance Your Practice!
  • How to Detect and Prevent Microleakage in Dental Restorations

Search Off the Cusp

Close
Menu
  • Home
  • Categories
    • Business of Dentistry
      • Dental Practice Marketing
      • Practice Finance
      • Practice Growth
    • Dental Industry News
      • Industry Events
    • Dental Practice Management
      • Human Resources
    • Dental Practice Safety
      • Infection Control
    • Future of Dentistry
      • Dental Equipment
      • Dental Technology
      • CAD/CAM
  • About
    • Off The Cusp Privacy Policy
    • Off The Cusp Terms of Use
  • pattersondental.com

Related Post

3D-Printed Splint Against Noctural Bruxism

February 8, 2023February 8, 2023

How Safe Are Kids’ Smiles Today?

January 27, 2023January 27, 2023

3 ways to build stronger relationships with your patients

October 26, 2022October 26, 2022

7 tried-and-true tactics to curb revenue-crippling no-shows

October 25, 2022October 25, 2022

How to reduce cancellations and increase case acceptance with patient engagement

October 24, 2022October 24, 2022

Brush up on hand hygiene for Global Handwashing Day

October 14, 2022October 14, 2022
Copyright Patterson Dental. All rights reserved.
 

Loading Comments...
 

You must be logged in to post a comment.