Preview

Security and Privacy

Better Essays
Open Document
Open Document
1863 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
Security and Privacy
Security and Privacy

HCS/533
February 10, 2014
Aimee Kirkendol

Security and Privacy
Introduction
Protecting patient’s privacy is of the most important when it comes to the health care field. There are many individuals who want to steal information which is not theirs, but allows them to this information to get what they want and this is, called identity theft. This paper will take a look at the incident at St. John’s Hospital and what should be done with patient information and what not to do with unwanted files. This paper will also take a look at the management plan and code of conduct.
Security Breach
It has been brought to the attention of the administrative office that there has been a security breach of policies and procedures concerning the protection of confidential client information. On numerous occasions, personnel who are working late have observed the cleaning staff reading discarded printouts. This is a violation of the HIPAA Laws, which are put in place to protect patients. This has taken place in a restricted-access IS department, and a problem like this should never have happened. All patient information printouts that are to be discarded should be shredded before being disposed of. When a document is thrown into the trash like these printouts were then they are open to the public and therefore a breach of information. This is the same as discussing patient information in waiting areas, hallways, or elevators. There are other people around who can listen to the conversation and therefore the patient’s information has been breached (Hicks, Joy, 2014).
What action should be taken toward cleaning personnel?
The cleaning staff was scene reading documents that were thrown in the trash while performing their cleaning duties. Technically the cleaning staff was not violating any laws because the printouts were tossed into the trash which makes them public information. With that being said the cleaning staff should be



References: Code of Ethical Conduct (2011) Mount Sinai Hospital, Joseph and Wolf Lebovic Health Complex, Retrieved on 1/8/14 from www.mountsinai.on.ca/for-physicians/code-of-conduct2011.pdf Community Tool Box (2013) Developing a Management Plan, Retrieved on 1/8/14 from ctb.ku.edu/en/table-of-content/leadership/effective-manager/management-plan/main Hicks, Joy (2014) About.com Medical Office, Avoid Violation of HIPAA Laws, Retrieved on 1/9/14 from medicaloffice.about.com/od/compliance/a/5-Ways-To-Break-Hipaa-Compliance.htm U. S. Department of Health and Human Services (2014) Health Information Privacy, Retrieved on 1/8/14 from www.hhs.gov/ocr/privacy/hipaa/understanding/training/index.html

You May Also Find These Documents Helpful

  • Satisfactory Essays

    The actions that should be taken should be to suspend the two individuals, their actions were a direct violation of the code of ethics. They need to know and understand that they have placed the agency in a serious predicament as well as lost the trust of one and possibly more patients and their families. As far as Jim goes he should’ve known better seeing that he’s been with the company much longer then Betty, it was is his responsibility to inform her that there are certain conversation that are to be left inside the office and that this one was not one to have in public. Furthermore because Jim is a “seasoned vet” in social work after 20 years he should know the…

    • 365 Words
    • 1 Page
    Satisfactory Essays
  • Satisfactory Essays

    In this week’s assignment, you are asked to research HIPAA and how it has provided…

    • 351 Words
    • 2 Pages
    Satisfactory Essays
  • Satisfactory Essays

    Hipaa Case Study

    • 387 Words
    • 2 Pages

    What actions should the ICMHA director take about the alleged HIPAA violation in the case? This would definitely be an issue of considering these employees work history to see if this has happened before. Even though the work load is heavy due to losing an employee, I would have to look into suspending these workers and do a check into their work history. There would be talks with this family and grandmother who overheard them. It would possibly come down to sending them to another place for help and paying for them to get that help. There would also be an audit should be done on the department to see if this is happening…

    • 387 Words
    • 2 Pages
    Satisfactory Essays
  • Better Essays

    Security Breach Plan Paper

    • 1576 Words
    • 7 Pages

    Patient privacy and security is one of the most important aspects of the St. Johns Hospital code of conduct, they take pride in the sound policies and procedures set to maintain customer confidentiality. Each employee is held to a high standard of maintaining the highest level of privacy and confidentiality when it comes to patient health information (PHI). This paper will outline the plan that St. John’s hospital has created in case of a security breach or security threat in the facility. The primary cause of a security breach is usually related to the people or business side of and organization (Rhoades, MBA, RHIA, CHPS, CPHIMS, FHIMA, 2009).…

    • 1576 Words
    • 7 Pages
    Better Essays
  • Good Essays

    MIS565 You Decide abc

    • 648 Words
    • 2 Pages

    References: US Department of Health and Human Services (2007). Security standards: Organizational policies and procedures and documentation requirements. Retrieved from: http://www.hhs.gov/ocr/privacy/hipaa/administrative/securityrule/pprequirements.pdf…

    • 648 Words
    • 2 Pages
    Good Essays
  • Good Essays

    The Health Insurance Portability and Accountability Act (HIPAA), became law in 1996. It requires health care providers, insurance companies and others involved in health care transactions to provide security on any system containing personal health information, store and transmit that information according to standardized rules, and place an automatic audit on files to help keep track of who should have access to them and whether those access rules have been violated. HIPAA complaints and violations that aren't fixed quickly are subject to a fine of between $100 per incident or a maximum of $25,000 per year for violation of a specific rule.…

    • 783 Words
    • 4 Pages
    Good Essays
  • Satisfactory Essays

    How do HIPAA Privacy and Security Rules apply to Health IT and EHRs? ... December 12, 2011, 10:24 am / Leon Rodriguez / Former Director, HHS, Health IT Buzz > Privacy and Security of EHRs > Privacy, Security, and Electronic Health…

    • 391 Words
    • 3 Pages
    Satisfactory Essays
  • Powerful Essays

    Hrm/531 Week 1

    • 2047 Words
    • 9 Pages

    As a health care organization, it is important that the Saint John’s Hospital takes the security and privacy of its patients’ information very seriously. Patient information in the Saint John’s Hospital is electronic and managed by the information systems department. In the organization, the security and privacy of all information is the responsibility of the Information Systems (IS) Manager. As the IS Manager, based on the following information on security and privacy, a Management Plan has been developed to be used as the process for the maintenance of patient information privacy and security.…

    • 2047 Words
    • 9 Pages
    Powerful Essays
  • Good Essays

    As of today there are issues with the information technology systems, clinical data management systems and the increasing automation of the electronic medical records. All of these present a significant amount of patient privacy and confidentiality issues. When we say confidential, meaning in healthcare we are talking about the protection of a patient’s medical information and keeping their medical information private and safe from any third parties. Administrators are expected to follow the HIPAA Privacy Rule. The HIPAA protects the privacy of patient’s medical information. Patient’s medical records are sensitive personal information that is covered with privacy. There are several ethical…

    • 585 Words
    • 3 Pages
    Good Essays
  • Good Essays

    Hippa Regulations

    • 339 Words
    • 2 Pages

    2. Discuss the role of HIPAA regulations in data and network security, patient consent and authorization.…

    • 339 Words
    • 2 Pages
    Good Essays
  • Powerful Essays

    Confidentiality and privacy are words used interchangeably in the medical world when they have very different meanings. Confidentiality is in line with protection of patient information from unauthorized users and privacy is in line with protection of the patient’s physical body from unauthorized users. In the emergency department (ED) this is a lofty and constant task that requires vigilance from staff, in all departments, involved with the patient. This student will report on the issues with confidentiality in the ED.…

    • 1298 Words
    • 6 Pages
    Powerful Essays
  • Satisfactory Essays

    Healthcare professionals that perform unauthorized access to patient’s records are guilty of breach of patient’s confidentiality. Technology is not 100% tamperproof which leave room for breach of patient confidentiality. If there is unauthorized access of the patient record, the perpetrators shall be detected and punished. The article discussed that reports of unintentional breaches such as an employee faxing a patient chart to the wrong Dr. Jones or facility employees snooping in a patients record (Journal of AHIMA, 2009/07).…

    • 440 Words
    • 2 Pages
    Satisfactory Essays
  • Powerful Essays

    HIPAA is divided into five titles or categories covering different aspects of healthcare. The highlights of these five titles are (i) continuous health care insurance coverage for most people, (ii) preventing health care fraud and abuse and protecting patient’s personal information, (iii) tax-related health provisions governing medical savings accounts, (iv) application and enforcement of group health insurance requirements, (v) revenue offset governing tax deductions for employers. Title II of HIPAA deals with Fraud/Abuse in healthcare, Administrative Simplification via standardization of electronic exchange and privacy and security of protected health information (PHI). PHI is individually identifiable information of patient’s health record that covered entities and their business associates maintain or share. As defined by HIPAA a covered entity is a health plan, a healthcare clearinghouse, or a healthcare provider. Business associates are individuals or organizations that perform work on the behalf of the covered entities. The title II provision of ‘Administrative Simplification’ include rules for protecting privacy and security of PHI. The US Department of Health and Human Services Office for…

    • 1261 Words
    • 6 Pages
    Powerful Essays
  • Good Essays

    Hipaa and Medical Records

    • 366 Words
    • 2 Pages

    The Health Insurance Portability and Accountability Act of 2003 changed the way that patients, practitioners and insurance companies viewed medical records. No longer would physician be able to choose the level of privacy they maintained for clients’ records. Patients became more aware of their rights and responsibilities toward their health records. This paper provides a brief synopsis of how HIPAA has affected access to medical records and its affect on medical offices and their employees.…

    • 366 Words
    • 2 Pages
    Good Essays
  • Powerful Essays

    |Accountability Act (HIPAA) |limitations to prevent personal and health |assist on the safe guarding of patient |…

    • 1126 Words
    • 5 Pages
    Powerful Essays