Tip: Steps for Red Flags Rule compliance
Patient Access Weekly Advisor, July 29, 2009
Want to receive articles like this one in your inbox? Subscribe to Patient Access Weekly Advisor!
Don’t forget – Red Flags Rule enforcement by the FTC begins Saturday, August 1.
John C. Parmigiani, HIPAA security and privacy consultant and president of John C. Parmigiani & Associates, LLC, in Ellicott City, MD, suggests several steps to help providers become compliant by August 1.
First, conduct an organizational audit. Identify potential problems associated with your unique organization. Be sure to allow sufficient time to conduct a thorough investigation. Then develop a theft prevention program; this is an FTC requirement and necessary to track every account on your books. The amount someone pays is irrelevant—even if it’s only a dollar per week, says Parmigiani.
The written program must:
- Identify potential red flags that exist within your institution
- Help detect red flags when they occur in real time
- Detail how you will respond to incidents of attempted identify theft (i.e., how you can either prevent the incident or how you will mitigate damages if you are unable to do so)
These steps are also important to maintain good business standards, says Parmigiani.
Editor’s note: This tip was adapted from the article “Compliance update: FTC moves Red Flags Rule compliance deadline to August 1,” which appears in the April 2009 issue of HCPro’s monthly newsletter Health Information Compliance Insider.
Want to receive articles like this one in your inbox? Subscribe to Patient Access Weekly Advisor!
Related Products
Most Popular
- Articles
-
- HIPAA Q&A: Answering service messages
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Q&A: Coding for dry skin due to cold weather
- Q/A: Volume requirement for reporting hydration services
- Are your workforce members texting PHI?
- Topic: CMS, OESS post new security compliance review information, checklist
- What does case-mix index mean to you?
- OB services: Coding inside and outside of the package
- Catch up on what's new with injections and infusions
- Privacy, security concerns high in HIEs
- E-mailed
-
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Q/A: Volume requirement for reporting hydration services
- HIPAA Q&A: Level of encryption needed for email
- HIPAA Q&A: Answering service messages
- Q&A: Coding for sepsis when other conditions are present
- HIPAA Q&A: TPO disclosures to a business associate
- Are your workforce members texting PHI?
- Q&A: Coding for dry skin due to cold weather
- What does case-mix index mean to you?
- Don't let these sentinel events trigger falsely
- Searched
