USA Operations Centers Health Insurance Portability and Accountability Act (HIPPA)for Protected Health Information (PHI) May 2017
As this policy is reviewed, please note the following State for which exceptions exist:
Not Applicable
The Health Insurance Portability and Accountability Act (HIPAA) of 1996 established privacy and security standards and responsibilities for companies that create, receive, use, disclose, maintain, or transmit Protected Health Information (PHI).
The Privacy Official, within the Office of Privacy (OOP) of Enterprise Compliance & Ethics (ECE), has been assigned oversight and accountability to provide direction for HIPAA Privacy. The Chief Information Security Officer (CISO) within Systems is assigned oversight and responsibility to provide direction for HIPAA Security.
The Enterprise Information Security Policy (EISP) sets forth the expectations of the Joyner Enterprise for the protection of PHI, as well as all forms of Joyner information.
The HIPPA Guidelines and Laws provides the foundation to help all business areas and their workforce members understand their obligations to protect PHI in any form, on any media, every day.
The HIPAA Guidelines and Laws should be followed in conjunction with other available resources (e.g. business area processes, procedures, policies, training, etc.) to direct employees and business areas on HIPAA related activities.
All associates who access, request, use, or disclose PHI are responsible for understanding the requirements of HIPAA applicable to their jobs and executing their jobs in accordance with these requirements.
All workforce members of Human Resources & Employee Care (HREC) are required to familiarize themselves and comply with the provisions of all applicable HIPPA Local, State and Federal HIPPA Laws.
The supervisor explains the importance of HIPAA to new and on-board employees.
The supervisor helps ensure that the Information Security Awareness & Privacy Training (ISAPT), which includes general HIPAA Training, is completed by new employees and annually for on-board employees.
The supervisor helps ensure that new and on-board employees complete the required supplemental HIPAA.