CMS, OESS post new information and checklist for sercurity investigations and compliance review
Contemporary Long-Term Care Weekly, March 7, 2008
On February 20, the Office of E-Health Standards and Services (OESS) posted new information on the CMS Web site regarding upcoming security investigations and compliance reviews.
"Onsite investigations may be triggered by complaints alleging non-compliance, while onsite compliance reviews will typically arise from non-complaint related sources of information such as media reports or self-reported incidents," according to the Web site.
In addition, OESS posted a document entitled "Information Request for Onsite Compliance Reviews" on the Web site. This document serves as a checklist and indicates information that may be requested during an investigation or review. However, the list is not comprehensive, nor is it limiting. "The individual circumstances of each applicable case will dictate the type of information that will be requested during an investigation or review," according to the Web site.
OESS also notes that covered entities review the areas of vulnerability associated with the security of electronic protected health information, as highlighted by the checklist, to evaluate the entity's current level of compliance.
Comments
0 comments on “CMS, OESS post new information and checklist for sercurity investigations and compliance review ”
Related Products
Most Popular
- Articles
-
- Q/A: Volume requirement for reporting hydration services
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Catch up on what's new with injections and infusions
- Topic: CMS, OESS post new security compliance review information, checklist
- What does case-mix index mean to you?
- QA:Coding multiple initial infusions
- Capturing all necessary codes for IUD insertion and removal can be challenging
- News and briefs: Oklahoma Osteopathic Association against residency bill change
- OB services: Coding inside and outside of the package
- HIPAA Q&A: Level of encryption needed for email
- E-mailed
-
- Q/A: Volume requirement for reporting hydration services
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Catch up on what's new with injections and infusions
- New conflicts of interest create new challenges
- Joint Commission Center announces handoff communication solutions
- Inside best practice: Reduce patient falls with a stoplight
- Identify modifiable risk factors to prevent patient falls
- Hospitalist-surgeon comanagement has no effect on outcomes
- HIPAA Q&A: Level of encryption needed for email
- Case Management Monthly, June 2012
- Searched
