__Regulatory Compliance Terms__HIPAA (Terms) Flashcards
Covered Entity
A health plan health care clearinghouse
or health care provider that transmits any health information in electronic form in connection with a HIPAA transaction.
Business Associate
An individual or organization that performs certain functions or activities on behalf of a covered entity that involves the use or disclosure of protected health information (PHI).
Protected Health Information (PHI)
Any information including demographic data
that can be used to identify an individual and relates to the individual’s past
present
or future physical or mental health condition
health care services received
or payment for health care services. (ePHI = Electronic)
Notice of Privacy Practices
A document that a covered entity must provide to patients that explains how the entity will use and disclose PHI and the patient’s rights under HIPAA.
Breach
An impermissible use or disclosure of PHI that compromises the security or privacy of the information and poses a significant risk of financial
reputational
or other harm to the affected individual.
Breach Notification Rule
The HIPAA Breach Notification Rule requires covered entities to promptly notify individuals the government
and sometimes the media in the event of a breach of protected health information.
Security Rule
A set of administrative physical
and technical safeguards that covered entities and business associates must implement to protect the confidentiality
integrity
and availability of electronic PHI.
Privacy Rule
A set of national standards for the protection of certain health information.
Enforcement Rule
A set of rules that describes the process for investigating and resolving HIPAA violations and the penalties for non-compliance.