Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
23
24
25
26
27
28
1
2
4
5
6
7
8
9
11
12
13
14
15
16
17
18
19
20
21
23
26
27
28
29
30
31
1
2
3
4
5
Health IT Summit in San Francisco
2015-03-03 - 2015-03-04    
All Day
iHT2 [eye-h-tee-squared]: 1. an awe-inspiring summit featuring some of the world.s best and brightest. 2. great food for thought that will leave you begging for more. 3. [...]
How to Get Paid for the New Chronic Care Management Code
2015-03-10    
1:00 am - 10:00 am
Under a new chronic care management program authorized by CMS and taking effect in 2015, you can bill for care that you are probably already [...]
The 12th Annual World Health Care  Congress & Exhibition
2015-03-22 - 2015-03-25    
All Day
The 12th Annual World Health Care Congress convenes decision makers from all sectors of health care to catalyze change. In 2015, faculty focus on critical challenges and [...]
ICD-10 Success: How to Get There From Here
2015-03-24    
1:00 pm
Tuesday, March 24, 2015 1:00 PM Eastern / 10:00 AM Pacific Make sure your practice is ready for ICD-10 coding with this complimentary overview of [...]
Customer Analytics & Engagement in Health Insurance
2015-03-25 - 2015-03-26    
All Day
Takeaway business ROI: Drive business value with customer analytics: learn what every business person needs to know about analytics to improve your customer base Debate key customer [...]
How to survive a HIPPA Audit
2015-03-25    
2:00 pm - 3:30 pm
Wednesday, March 25th from 2:00 – 3:30 EST If you were audited for HIPAA compliance tomorrow, would you be prepared? The question is not so hypothetical, [...]
Events on 2015-03-03
Health IT Summit in San Francisco
3 Mar 15
San Francisco
Events on 2015-03-10
Events on 2015-03-22
Events on 2015-03-24
Events on 2015-03-25
Articles

Apr 25: EHR Incentive Audits-Common Questions on Timelines and Risk Profile

ehr incentive audits

By Jim Tate, EMR Advocate and Meaningful Use Audit Expert
Twitter: @JimTate
eMail: audits@emradvocate.com
Website: www.meaningfuluseaudits.com

In recent conversations with Eligible Hospitals (EHs) two questions seem to be coming up more and more concerning CMS EHR incentive audits. Let’s take them on one at a time.

How long can my CMS EHR incentive attestation be subject to an audit?

CMS is pretty clear that documentation used in support of an attestation should be saved for 6 years. “Documentation to support attestation data for Stage 2 meaningful use objectives and clinical quality measures should be retained for six years post‐attestation. Documentation to support payment calculations (such as cost report data) should continue to follow the current documentation retention processes.” Sounds to me that you could possibly be audited for up to 6 years after an individual attestation. Case closed.

If an audit is failed, does that make me more likely to be audited again in future years?

Ah, this is a good one and gets into the shady area of “risk profile”. CMS, for obvious reasons, is keeping their cards close to their chest on what makes up the “risk profile”.  There is another angle to this that touches not on risk of audits for future attestations but also on past attestations. Case in point, I was contacted last week about such a “look back” audit situation. The initial audit was performed on a 2012 attestation and notification was received of a Negative Determination in August 2013 based on one measure. They were then the subject of an audit based on an earlier (2011) attestation and were notified of failure in March 2014 on the exact same measure. It only makes sense that during an audit if it becomes obvious that there is evidence of a “problematic” attestation the same issue might exist in earlier attestations. Now I have no insider info on what makes up the “risk profile” but I can usually do a little reading between the lines. If you went through an 2014 meaningful use audit, and didn’t have a Security Risk Assessment, I would think there would be a chance you couldn’t provide it for prior attestations either. I’m expecting we will see more and more of these “look back” audits based on what is revealed during an initial audit. Just make sense to me.

Side note: At HIMSS in February I spoke with Elizabeth Holland (director CMS’ Health IT Initiatives Group) and Robert Anthony (deputy director of CMS’ Health IT Initiatives Group) at HIMSS this year and here’s what they told me: The majority of failed audits occur either for lack of having documentation of the MU measures or the Security Risk Analysis.   To address this critical documentation issue, we’ve now added a review of the Security Risk Assessment to our Mock Audit Services.  If you are interested in learning more about conducting a mock audit for your organization, please contact me at audits@emradvocate.com.

Source