Confidentiality
Health Care Capstone
In January 2004 to June
2006, 120 workers at a Los
Angeles hospital looked at
celebrities’ medical records
and other personal
information without
permission.
Confidentiality


HIPPA

 Health Insurance Portability and Accountability Act- The act
 was enacted by the U.S. Congress in 1996 to protect patients
 personal health information (PHI).

 Federal Law
Confidentiality

       Failure to comply with HIPAA can
       result in civil and criminal
       penalties

             HIPAA Violation

Minimum Penalty and Maximum Penalty
Individual did not know (and by exercising reasonable diligence would
not have known) that he/she violated HIPAA
$100 per violation, with an annual maximum of $25,000 for repeat
violations (Note: maximum that can be imposed by State Attorneys
General regardless of the type of violation)

$50,000 per violation, with an annual maximum of $1.5 million
HIPAA violation due to reasonable cause and not due to willful neglect

$1,000 per violation, with an annual maximum of $100,000 for repeat
violations
$50,000 per violation, with an annual maximum of $1.5 million

HIPAA violation due to willful neglect but violation is corrected within
the required time period
$10,000 per violation, with an annual maximum of $250,000 for repeat
violations

$50,000 per violation, with an annual maximum of $1.5 million
Cyberknife Protocol

Anything about the patient in which the individuals has learned,
it is to be kept confidential.

Information maybe used by peers and co workers only during
training/teaching sessions

Be cognizant of where the discussions are being done, just be
aware.

Minimum necessary rule : only look at what is needed
Confidentially

Basic Concepts

  Don’t leave charts open and left unattended.

  Important to discard information in appropriate bins.

  Do not take patient information home

  Make sure all computers are lock once finished with access to
  patient information.

  Do not email patient information without secure access.
How to avoid violations


Do not look up information about patients unless its medical
necessary.

If there is question contact department manager.

Just use common sense.

Report individuals violating the protocol.

Hippa

  • 1.
  • 2.
    In January 2004to June 2006, 120 workers at a Los Angeles hospital looked at celebrities’ medical records and other personal information without permission.
  • 3.
    Confidentiality HIPPA Health InsurancePortability and Accountability Act- The act was enacted by the U.S. Congress in 1996 to protect patients personal health information (PHI). Federal Law
  • 4.
    Confidentiality Failure to comply with HIPAA can result in civil and criminal penalties HIPAA Violation Minimum Penalty and Maximum Penalty Individual did not know (and by exercising reasonable diligence would not have known) that he/she violated HIPAA $100 per violation, with an annual maximum of $25,000 for repeat violations (Note: maximum that can be imposed by State Attorneys General regardless of the type of violation) $50,000 per violation, with an annual maximum of $1.5 million HIPAA violation due to reasonable cause and not due to willful neglect $1,000 per violation, with an annual maximum of $100,000 for repeat violations $50,000 per violation, with an annual maximum of $1.5 million HIPAA violation due to willful neglect but violation is corrected within the required time period $10,000 per violation, with an annual maximum of $250,000 for repeat violations $50,000 per violation, with an annual maximum of $1.5 million
  • 5.
    Cyberknife Protocol Anything aboutthe patient in which the individuals has learned, it is to be kept confidential. Information maybe used by peers and co workers only during training/teaching sessions Be cognizant of where the discussions are being done, just be aware. Minimum necessary rule : only look at what is needed
  • 6.
    Confidentially Basic Concepts Don’t leave charts open and left unattended. Important to discard information in appropriate bins. Do not take patient information home Make sure all computers are lock once finished with access to patient information. Do not email patient information without secure access.
  • 7.
    How to avoidviolations Do not look up information about patients unless its medical necessary. If there is question contact department manager. Just use common sense. Report individuals violating the protocol.

Editor's Notes