HIPAA and State Laws Flashcards
How the HIPAA regulations interact with state laws
1
Q
federal vs. state scope
A
more protective supersedes
2
Q
California State Laws, CMIA
A
- Release of sensitive information: California requires a separate signed authorization for release of “sensitive” information
- Opt-in consent: covered entities must get opt-in consent for electronic information sharing
- unauthorized access and breaches: California defines unauthorized access as: “inappropriate reviewing/viewing of patient medical information without a direct need for diagnosis, treatment, or other lawful use. Orgs must report incidents within 5 days.