Protect PHI when staff members leave
HIM Connection, June 15, 2010
Want to receive articles like this one in your inbox? Subscribe to HIM Connection!
Establish a procedure to protect PHI when clinical staff members leave your organization. This is basic security, but not addressing this potential risk can create a major problem. “It is imperative for hospitals to establish ownership of data when a clinical staff member who has access to PHI is no longer affiliated with the organization,” says Jaspinder Grewal, management consultant for healthcare IT and project lead for application services at a Chicago-area hospital.
Healthcare organizations should consider forming “no use of information and data agreements” with staff members. Such an agreement would prevent staff members from using any data acquired because of their role in the organization after they leave it, says Grewal.
Facilities that don’t already do this should establish a process. Whether someone resigns, gives notice, or is terminated, be sure to notify your information services department beforehand. This enables IT staff to proactively prohibit access to PHI as soon as these staff members are no longer with the organization, says Grewal.
Editor’s note: This tip was excerpted from the June issue of Briefings on HIPAA.
Want to receive articles like this one in your inbox? Subscribe to HIM Connection!
Related Products
Most Popular
- Articles
-
- Q/A: Volume requirement for reporting hydration services
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Catch up on what's new with injections and infusions
- Identify potential Medicaid RAC target areas
- Topic: CMS, OESS post new security compliance review information, checklist
- HIPAA Q&A: Level of encryption needed for email
- Capturing all necessary codes for IUD insertion and removal can be challenging
- What does case-mix index mean to you?
- OB services: Coding inside and outside of the package
- QA:Coding multiple initial infusions
- E-mailed
-
- Q/A: Volume requirement for reporting hydration services
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- HIPAA Q&A: Level of encryption needed for email
- Q&A: Follow CMS' coding guidelines when using modifier -25
- Catch up on what's new with injections and infusions
- CMS has reformulated payments for some bilateral procedures
- New conflicts of interest create new challenges
- Q/A. One injection code or two?
- What does case-mix index mean to you?
- ED-to-inpatient transfers are flawed with safety gaps
- Searched
