HIPAA Compliance at ProQ RCM
At ProQ RCM, we prioritize the security and privacy of patient health information (PHI) in
compliance with the Health Insurance Portability and Accountability Act (HIPAA) of 1996. Here’s
what this means and how we maintain strict adherence to HIPAA standards:
What is HIPAA?
HIPAA, or the Health Insurance Portability and Accountability Act of 1996, is a federal
law designed to
establish national standards for protecting sensitive patient health information (PHI)
from being
disclosed without patient consent or acknowledgment. The U.S. Department of Health &
Human
Services (HHS) developed the HIPAA Privacy Rules to enforce these protections.
Who Must Comply with HIPAA?
HIPAA compliance is required for all entities involved in healthcare operations,
including:
- Patients, Providers, Payers, and Clearinghouses (such as TriZetto, Office Ally,
etc.)
- Billing companies and any associated businesses handling PHI
What is Considered Protected Health Information (PHI)?
Under HIPAA, PHI includes sensitive patient data, such as:
- Personal demographics: Name, Date of Birth, Social Security Number, Address, and
Phone Number
- Medical information: Medical history, diagnosis, and treatment details
- This information cannot be disclosed without the patient’s explicit consent.
Our Commitment to HIPAA Compliance
- Employee and front office staff Training: Every employee and trainee
undergoes
comprehensive training on HIPAA policies and procedures before accessing any patient
information. We strictly enforce policies that prevent unauthorized access, with
potential
penalties for violations, including legal action in severe cases.
- Secure Communication: We use HIPAA-compliant communication channels
and email services,
such as MD Office mail, for all patient-related interactions. Approved communication
tools like
Microsoft Teams, Wasp, and Google Chat ensure safe and compliant information
sharing.
- Data Handling Policies:
- Digital-Only Information Management: We avoid hard copies and physical
paperwork in our office space to minimize risks associated with misplaced or
improperly discarded documents.
- Restricted Data Transfer: Mobile phones, memory cards, and any other
portable data transfer systems are monitored to prevent unauthorized access
or transfer of PHI.
Our commitment to HIPAA compliance is unwavering. Trust ProQ RCM to safeguard patient health
information with the highest standards of security and privacy.