|
|
As might be understood, we do not wish to reveal any details regarding our comprehensive security measures here, but be assured that our security measures are constantly reviewed and updated to ensure that they not only meet but exceed HIPAA regulations relating to Electronic Transmission of Patient Information. (Do you own your own secure medical servers? What is the level of encryption…that's what 128-bit SSL Encryption refers to.)
In 1996 the United States Congress enacted the Health Insurance Portability and Accountability Act (HIPAA) on Aug. 21 as Public Law 104-191. HIPAA is the first national regulation on medical privacy and is the most far-reaching federal legislation affecting the use, release and transmission of medical data. Though the main purpose of this law was to allow for continuity of healthcare coverage, the law includes a section with requirements for the electronic transmission of health information. This section relates most directly to medical transcriptionists who and medical transcriptionist that receive, send, and/or store patient health information files. Some of the highlights are below:
|
Physical Security: Physical access to facilities secured with ID cards, biometrics, onsite security forces, security procedures, etc.
|
|
Information Security: Transmitted data secured with 128 bit encryption, PKI, SSL, etc.
|
|
Privacy: Allows for patients to control health records including access, disclosures, "minimum necessary" standard, consent and authorization, etc. Files or comments associated with files should not include individually identifiable information.
|
|
Desktop Access: Access to networks limited by auto-logoff, ID/password protection, password-protected screensavers, security-enabled operating system, etc.
|
|
Human Resources: Employee education programs to ensure the requisite HIPAA knowledge "level of awareness."
|
|
Business Associates & Partners: Contractual agreements with all business parties must be up to date and compliance must be audited.
|
|
Auditing: On-site and off-site capability to retrieve records - including patient medical records with the disclosure/access trail - within specified time-frames and maintain them for the required period.
|
|
Copyright © 2005-2006 Windrix Transcription, Inc. All rights reserved. | Privacy Statement
Design by Patrick Konoske
|