Chapter 5 Flashcards
compliance
adherence to rules-for instance, regulations and standards; also refers to the culture of an organization to provide high-quality, cost-effective, efficient healthcare that operates within the requirements of regulatory, accreditation, and other requirements
covered entity
any health-care provider or contractor that transmits in electronic form any individually identifiable health information
business associate
an individual or organization with which a covered entity contracts to perform functions or duties that involve the use or disclosure of individually identifiable health information
clearinghouse
an organization or entity (public or private) that processes data into a standardized billing format and checks for inconsistencies or other errors in the claims data
individually identifiable health information
data that identify a patient, such as name, address, date of birth and gender
privacy
the right to be left alone and to expect that one’s health information is available only to those who have a need to access it
protected health information (PHI)
any piece of data that identifies a patient as well as the clinical data tied to the patient
Notice of privacy practices (NPP)
written notification, which must be signed by the patient/legal representative, that communicates how PHI is used, disclosures made without the need for authorization, the patient’s rights regarding PHI, the persons to whom PHI may be released, and the covered entity’s legal duties with respect to that information.
security rule
the HIPAA rule that protects PHI through standard procedures and methods of storage, access, and transmission, as well as through auditing for security breaches
National Provider Identifier (NPI) number
a unique 10-diget number that identifies each care provider on all administrative or financial transactions-for instance, claim forms.
Health plan identifier (HPID)
a unique identifier assigned to every health plan that controls its own business activities, actions, or policies or that is controlled by entities that are not health plans’ the effective dates for use of HPID are November 5, 2015, for small plans
Omnibus Final Rule to the HITECH Act
legislation that updates and clarifies the requirements in the HITECH Act.
-increases the requirements for protecting patient privacy, adds to patients’ rights, and strengthens enforcement ability of law enforcement
Accounting of disclosures
a listing of all disclosures of a patient’s PHI, including those for treatment, payment, and health-care operations
Deemed status
be virtue of achieving accreditation status, a facility is also in compliance with CoP.
Critical Access Hospital
a hospital that has no more than 25 inpatient beds’ maintains an annual average length of stay of 96 hours or less for acute inpatient care; offers 24-hour, 7-day a week emergency care’ and is located in a rural area at least 35 miles drive away from any other hospital or other critical access hospital; the CoP regulations for CAHs differ from those for hospitals that are not CAHs.