Government  Health IT
TwitterFacebookLinkedIn
  • Home
  • Topics
    • Cloud Computing
    • Election 2012
    • Electronic Health Record
    • ePrescribing
    • Health Information Exchange (HIE)
    • Meaningful Use
    • Medicaid
    • Medicare
    • Military Health
    • Mobile/ Wireless
    • NHIN
    • Policy & Legislation
    • Population Health
    • Privacy and Security
    • Quality and Safety
    • Telehealth
    • Workforce Management
  • Issues
    • Sept/Oct 2011
    • July/August 2011
    • May/June 2011
    • March/April 2011
    • Jan/Feb 2011
    • Nov/Dec 2010
  • Webinars
    • Upcoming Webinars
    • On Demand Webinars
  • White Papers
  • Blog
  • Events
  • Jobs
  • RSS
  • Slideshows
  • Videos
  • Podcasts
  • Newsletters
  • Advertise
  • LOGIN
  • REGISTER
  • SUBSCRIBE
Home » News » Electronic Health Record | Privacy and Security
Receive News
By Email

  • del.icio.us
  • Digg
  • Facebook
  • Google
  • Reddit
  • StumbleUpon
  • RSS Icon
  

Tweet

ONC offers physicians hands-on privacy, security guide

May 09, 2012 | Mary Mosquera

Suggested Content

  • Bipartisan Policy Center urges payment reform toward patient-centered care
  • Payers, providers skeptical HIX deadline will be met
  • AHIMA's 4 suggestions to ONC on clinical documentation
  • MAP weighs in on performance measures
  • VA Blue Button adds patient summary document tool
  • Commentary: A new CDS standard for meaningful use stage 3 and beyond

Related Resources

  • HIPAA Compliant Hosting
  • Delivering the Future of Healthcare: Maintain Compliance, Improve Efficiency and Continuity of Care...Virtually Anywhere
  • The State of EHR Adoption: On The Road to Improving Patient Safety
  • VMware View for Healthcare: Improve Clinician Workflow
  • QualSight LASIK Achieves HIPAA Compliance After Attempted Hack

The Office of the National Coordinator for Health IT has created a handbook to help physicians and their practice staff to understand the importance of privacy and security in the use of electronic health records and how to conduct the best practices to safeguard health information.

The Guide to Privacy and Security of Health Information (PDF) is meant to be easy to understand and to be a comprehensive instructional tool, including a 10-step plan for practices to take to integrate privacy and security into their EHRs and daily operations.

Applying privacy and security protections can “inspire confidence and trust in health IT and electronic health information exchange,” according to ONC's Office of the Chief Privacy Officer, which developed the guide in cooperation with the American Health Information Management Association Foundation, in a May 8 announcement.

To build trust, physicians need to make sure patients can request access to their medical record; carefully handle patients’ health information to protect their privacy; and keep the information in patients’ individual records as accurate as possible.

“Updating your privacy and security practices can be manageable and affordable, but it will require a sustained effort,” the guide said.

The 47-page handbook includes a guide for security risk analysis and management tips; working with EHR and health IT vendors; and the importance of privacy and security in meaningful use. The guide also has a section with health IT privacy and security education and training resources and videos.

Each chapter contains charts, lists and examples, such as among the five security components for risk management are administrative safeguards, which include training staff, reviewing user activities monthly and enforcing security policies.

[Q&A: RWJF's Michael Painter, MD, on MU stage 2's impact on public and population health.]

Under meaningful use requirements in stage 1, physicians must provide patients who request it an electronic copy of their health information within three business days. Providers must also conduct a security risk analysis, or review an existing one, that follows the security rule of the Health Insurance Portability and Accountability Act (HIPAA), an update where necessary.

According to the guide, some basic, common-sense reminders are important first steps in the privacy and security of health information, including:

• Is the server in a room only accessible by authorized staff, and is the door locked

• Are passwords easily found, such as taped to a monitor, or easy to guess

• Where, when and how is information backed up, and is at least one back-up offsite, and can data be recovered from the back-up

• How often is EHR server checked for viruses

• What is the plan if server crashes and data cannot be recovered directly, and is there documentation about the kind of server and software used.

Mary Mosquera
Senior Editor for Healthcare Finance News
Follow Mary on Twitter @GovHITreporter
Related Topics:
  • Online Only
  • Electronic Health Record
  • Privacy and Security
  • http://www.govhealthit.com/news/qa-rwjf-meaningful-use-stage-2s-potential-impact-public-and-population-health
  • http://www.healthit.gov/sites/default/files/pdf/privacy/privacy-and-security-guide.pdf
  • Michael Painter
  • pdf

Reader Comments (0)Login to Post a Comment

Most Popular

Latest Headlines
Most Popular
  • Deloitte: Docs underutilize various health technologies
  • Expert predicts 'meaningful use fatigue' in 2015
  • Commentary: How data sharing between AHLTA and VistA is possible
  • NYeC PHR design winners to shape public portal
  • First HIE launching in greater Philadelphia
  • 10 health reform benefits at risk in the election
  • Would Romney kill meaningful use?
  • CMS circulates final 2014 MU clinical quality measures
  • HIE is critical public utility in Sandy disaster
  • HIMSS: The intangibles of HIT employee retention
more news

WEBINARS AND WHITE PAPERS

  • WHITE PAPERS
    Enterprise-class API Patterns for Cloud & Mobile
  • WHITE PAPERS
    The VNA Strategy: Balancing Workflow and Enterprise Imaging Management
  • WHITE PAPERS
    Beyond the EHR: Seamlessly Connecting Nurses and Physicians Using an EHR-Extender (EHR-e)
  • WHITE PAPERS
    Your Cloud in Healthcare - How to Use the Cloud to Achieve Greater Business Agility
  • WHITE PAPERS
    Key Benefits to a Secure & Elastic Private Cloud
More Resources
Syndicate content

HIMSS JOBMINE

  • Director of Clinical Applications - MidMichigan Health - Midland, MI
  • Information Services Director - Central Peninsula Hospital - Soldotna, AK
  • Director, Marketing and Business Development - Vermont Information Technology Leaders, Inc. - Burlington, VT
  • CIO - Bend Memorial Clinic - Bend, Oregon
  • Director of Clinical Transformation - Agnesian Healthcare - Fond du Lac, WI
more jobs
receive news by email

Marketplace

  • Home
  • Resource Central
  • Blog
  • Events
  • Jobs
  • Mobile Site
  • Advertise
  • RSS
  • About
  • Site map
  • Privacy Policy
Follow Government Health IT on TwitterLike Government Health IT on FacebookJoin Government Health IT on LinkedInRSS Subscriptions
BlogEvents
JobsMobile SiteMobile App
 
Healthcare IT NewsHealthcare Finance NewsHealthcare Payer NewsHIEWatch ICD10Watch mHIMSS PhysBizTech
©2013 MedTech Media Government Health IT is a publication of MedTech Media
Advertise About Us Privacy Policy