Loading...

HIPAA Compliance

HIPAA Compliance at ProQ RCM

At ProQ RCM, we prioritize the security and privacy of patient health information (PHI) in compliance with the Health Insurance Portability and Accountability Act (HIPAA) of 1996. Here’s what this means and how we maintain strict adherence to HIPAA standards:

What is HIPAA?

HIPAA, or the Health Insurance Portability and Accountability Act of 1996, is a federal law designed to establish national standards for protecting sensitive patient health information (PHI) from being disclosed without patient consent or acknowledgment. The U.S. Department of Health & Human Services (HHS) developed the HIPAA Privacy Rules to enforce these protections.

Who Must Comply with HIPAA?

HIPAA compliance is required for all entities involved in healthcare operations, including:

  • Patients, Providers, Payers, and Clearinghouses (such as TriZetto, Office Ally, etc.)
  • Billing companies and any associated businesses handling PHI
What is Considered Protected Health Information (PHI)?

Under HIPAA, PHI includes sensitive patient data, such as:

  • Personal demographics: Name, Date of Birth, Social Security Number, Address, and Phone Number
  • Medical information: Medical history, diagnosis, and treatment details
  • This information cannot be disclosed without the patient’s explicit consent.
Our Commitment to HIPAA Compliance
  1. Employee and front office staff Training: Every employee and trainee undergoes comprehensive training on HIPAA policies and procedures before accessing any patient information. We strictly enforce policies that prevent unauthorized access, with potential penalties for violations, including legal action in severe cases.
  2. Secure Communication: We use HIPAA-compliant communication channels and email services, such as MD Office mail, for all patient-related interactions. Approved communication tools like Microsoft Teams, Wasp, and Google Chat ensure safe and compliant information sharing.
  3. Data Handling Policies:
    • Digital-Only Information Management: We avoid hard copies and physical paperwork in our office space to minimize risks associated with misplaced or improperly discarded documents.
    • Restricted Data Transfer: Mobile phones, memory cards, and any other portable data transfer systems are monitored to prevent unauthorized access or transfer of PHI.
Our commitment to HIPAA compliance is unwavering. Trust ProQ RCM to safeguard patient health information with the highest standards of security and privacy.