Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech.
In our latest episode, we share ways to be proactive in light of the news that random HIPAA audits are returning.
We discuss why there's still no HIPAA police; the function of these random audits; where the gaps in compliance have been historically; what auditors will likely be looking for; the importance of risk analyses, risk mitigation plans, and policies & procedures; how many HIPAA covered entities were audited the last time the program was active; and PCT's resources to help you get started with formal compliance in a shame-free way.
Listen here: https://personcenteredtech.com/group/podcast/
For more, visit our website.
Resources & further information:
-
Results of prior audit period
-
HHS Notice in the Federal Register
-
JD Supra article: Never Say Never Again: HHS Signals the Return of HIPAA Audit Program
PCT Resources
-
HIPAA Risk Analysis & Risk Mitigation Planning service for mental health group practices -- care for your practice using our supportive, shame-free risk analysis and mitigation planning service. You'll have your Risk Analysis done within 2 hours, performed by a PCT consultant, using a tool built specifically for mental health group practice, and a mitigation checklist to help you reduce your risks.
-
Group Practice Care Premium
-
weekly (live & recorded) direct support & consultation service, Group Practice Office Hours
-
+ assignable staff HIPAA Security Awareness: Bring Your Own Device training + access to Device Security Center with step-by-step device-specific tutorials & registration forms for securing and documenting all personally owned & practice-provided devices (for *all* team members at no per-person cost)
-
+ assignable staff HIPAA Security Awareness: Remote Workspaces training for all team members + access to Remote Workspace Center with step-by-step tutorials & registration forms for securing and documenting Remote Workspaces (for *all* team members at no per-person cost) + more
-
Workforce Security Policies Agreement
-
Security Incident Report
-
PHI Access Determination
-
Password Policy Compliance
-
BYOD Registration & Termination
-
Data Backup & Confirmation
-
Access Log Review
-
Key & Access Code Issue and Loss
-
Third-Party Service Vendors
-
Building Security Plan
-
Security Schedule
-
Equipment Security Check
-
Computing System Access Granting & Revocation
-
Training Completion
-
Mini Risk Analysis
-
Security Incident Response
-
Security Reminder
-
Practice Equipment Catalog
-
+ Workforce Security Manual & Leadership Security Manual -- the role-based practical application oriented distillation of the formal Policies & Procedures
-
+ 2 complimentary seats of the Security Officer Endorsement Training Program (1 for Security Officer; 1 for Deputy (or future Deputy) Security Officer.