Health Information Management

Ignore HIPAA and pay the price

HIM Connection, April 27, 2004

Want to receive articles like this one in your inbox? Subscribe to HIM Connection!

Breaking the Health Insurance Portability and Accountability Act of 1996's (HIPAA) privacy or security rules can bring civil or criminal penalties.

Civil penalties include not only large fines, but also jail time. The penalties increase with the seriousness of the offense. Selling patient information for personal gain is more serious than an accidental release, so it brings stiffer penalties. These penalties can be as high as a $250,000 fine or a prison sentence of up to 10 years. The following are examples of violations and possible penalties:

  • Knowingly releasing patient information in violation of HIPAA can result in a one-year jail sentence and $50,000 fine
  • Gaining access to health information under false pretenses can result in a five-year jail sentence and a $100,000 fine
  • Releasing patient information with harmful intent or selling the information can lead to a 10-year jail sentence and a $250,000 fine

What if I see someone breaking the rules?

Part of your job is to help maintain privacy for patients as they receive care, and to stick to the rules laid out by HIPAA. Your organization's administration expects all employees to adhere to privacy and confidentiality policies, but knows there may be times when some employees do not follow them.

Employees are encouraged to report violations or suspected abuses to the organization's privacy official. You may report them anonymously by following the procedures given to you by your organization.

Don't fear retaliation if you report a privacy violation. The organization does not punish employees for reporting violations. In fact, it is part of your job to report instances in which you suspect the privacy or confidentiality policies are being broken.

This week's excerpt is from the book, "HIPAA Training Handbook for HIM Staff: Privacy, security, and patient's rights under HIPAA," by Margret Amatayakul, MBA, RHIA, FHIMSS. Click here to order or learn more.



Want to receive articles like this one in your inbox? Subscribe to HIM Connection!

  • Briefings on APCs

    Worried about the complexities of the new rules under OPPS and APCs? Briefings on APCs helps you understand the new rules...

  • Medical Records Briefing

    Guiding Health Information Management professionals through the continuously changing field of medical records and toward a...

  • Briefings on Coding Compliance Strategies

    Submitting improper Medicare documentaion can lead to denial of fees, payback, fines, and increased diligence from payers...

  • Briefings on HIPAA

    How can you minimize the impact of HIPAA? Subscribe to Briefings on HIPAA, your health information management resource for...

  • APCs Weekly Monitor

    This HTML-based e-mail newsletter provides weekly tips and advice on the new ambulatory payment classifications regulations...

Most Popular

Related Articles