Overview: The New Final HIPAA Breach Notification Rule that becomes enforceable on September 23, 2012 requires all HIPAA covered entities and business associates to follow a number of steps to be in compliance.
If there is a breach of protected health information that does not qualify for one of the reporting exceptions, the breach must be reported, unless a risk assessment shows that there is a "low probability of compromise." All reportable breaches must be reported to the Secretary of the US Department of Health and Human Services at least annually.
Areas Covered in the Session:
Breach Notification Laws
State Breach Notification Laws
Changes to HIPAA Breach Notification
Federal Breach Notification Law and Regulation
The Who, What, and How of Breach Notification
The Risk Assessment Process in Breach Notification
Preventing and Preparing for Breaches
Using an Information Security Management Process
Using Risk Analysis and Risk Assessment Before a Breach
Most Common Types of Breaches
Information Security, Incident, and Breach Notification Policies
The Importance of Documentation
Enforcement and Audits
New HIPAA Violation Categories and Penalties
Preparing for HIPAA Audits
Case Studies
Future Trends and New Threats to Prepare For
History vs. the Future
Why Security Trends Are Changing
Implications of New Directions in Attacks and Targets
Who Will Benefit:
Compliance director
CEO
CFO
Privacy Officer
Security Officer
Information Systems Manager
HIPAA Officer
Chief Information Officer
Health Information Manager
Healthcare Counsel/lawyer
Office Manager
Jim Sheldon-Dean is the founder and director of compliance services at Lewis Creek Systems, LLC, a Vermont-based consulting firm founded in 1982, providing information privacy and security regulatory compliance services to a variety of health care providers, businesses, universities, small and large hospitals, urban and rural mental health and social service agencies, health insurance plans, and health care business associates.
Sheldon-Dean serves on the HIMSS Information Systems Security Workgroup, has co-chaired the Workgroup for Electronic Data Interchange Privacy and Security Workgroup, serves on the WEDI Breach Notification sub-workgroup, and is a recipient of the WEDI 2011 Award of Merit. He is a frequent speaker regarding HIPAA and information privacy and security compliance issues at seminars and conferences, including speaking engagements at numerous regional and national healthcare association conferences and conventions.
More info visit the site http://alturl.com/6ygpb
Added by Roger Steven on March 17, 2013