What is HIPAA?
The Health Insurance Portability and Accountability Act (HIPAA) of 1996 addresses the privacy and security of patient data. The HIPAA Privacy Rule further regulates how covered entities such as healthcare providers, health plans and health insurers use and disclose Protected Health Information (PHI). PHI is any information concerning health status, health care or payment for health care that can be used to identify an individual. Also under HIPAA, the Security Rule acts in tandem with the Privacy Rule to specifically protect Electronic Protected Health Information (EPHI). This rule outlines the administrative, physical and technical standards required for security compliance.
Prior to 2009, the Privacy and Security Rules applied only to covered entities. However, the Health Information Technology for Economic and Clinical Health Act (HITECH Act) extends the responsibility of the Privacy and Security Rules to Business Associates (BAs) of covered entities. BAs access PHI only to help covered entities carry out health care functions.
TeleVox is HIPAA and HITECH Compliant
As a BA that helps thousands of healthcare providers and health plans communicate more effectively with their patients, TeleVox is focused on ensuring that our data controls are consistent with HIPAA privacy and security standards. We understand that our clients are concerned with delivering high quality care and therefore expect and rely on our diligence when it comes to safeguarding their patient information.
To ensure that our clients benefit from the utmost in secure data protocols, TeleVox conducts annual HIPAA audits which validate that the controls we have in place are consistent with our overall corporate standards as well as the Privacy and Security Rules in accordance with the HITECH Act.
What does TeleVox's HIPAA and HITECH compliance mean for our clients?
- Peace of mind that controls, procedures, and processes are in place as intended to protect and secure your data according to HIPAA requirements.
- Assurance that the Business Associate (BA) you are working with is as vigilant about the security of your patients' PHI as your organization is.
- Confidence that your organization has an experienced partner to help navigate the requirements surrounding HIPAA.
Questions to ask a potential vendor
- How are the requirements of HIPAA and HITECH integrated into the products provided?
- How often does the company audit against HIPAA guidelines? How is the audit conducted?
- How often are employees trained on HIPAA guidelines?