Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
28
29
30
1
2
3
4
5
6
7
9
11
12
14
15
16
17
18
19
21
22
23
24
25
26
28
29
30
31
This is it: The Last Chance for EHR Stimulus Funds! Webinar
2014-07-31    
10:00 am - 11:00 am
Contact: Robert Moberg ChiroTouch 9265 Sky Park Court Suite 200 San Diego, CA 92123 Phone: 619-528-0040 ChiroTouch to Host This is it: The Last Chance [...]
RCM Best Practices
2014-07-31    
2:00 pm - 3:00 pm
In today’s cost-conscious healthcare environment every dollar counts. Yet, inefficient billing processes are costing practices up to 15% of their revenue annually. The areas of [...]
Aprima 2014 User Conference and VAR Summit
2014-08-08    
12:00 am
Aprima 2014 User Conference and VAR Summit Vendor Registration Thank you for your interest in participating in the Aprima 2014 User Conference and VAR Summit. Please [...]
Innovations for Healthcare IT
2014-08-10    
All Day
At Innovations for Healthcare IT, you'll discover new techniques and methods to maximize the use of your Siemens systems and help you excel in today's [...]
Consumerization of Healthcare
2014-08-13    
1:00 pm - 1:30 pm
Join Our Complimentary Express Webinar for an overview of “The Consumerization of Healthcare” on Wednesday, August 13th at 1:00 pm ET. Consumerism in the healthcare [...]
How to use HIPAA tracking software to survive an audit
2014-08-20    
2:00 pm - 3:30 pm
Wednesday, August 20th from 2:00 – 3:30 EST You have done a great job with Meaningful Use but will you pass a HIPAA audit?  Bob Grant, HIPAA auditor and expert will show you how to achieve total compliance and [...]
How Healthy Is Your Practice?
2014-08-27    
2:00 pm - 3:00 pm
According to recent statistics from MGMA, the typical physician practice leaves up to 30% of their potential revenue on the table every year. This money [...]
Events on 2014-07-31
Events on 2014-08-08
Events on 2014-08-10
Events on 2014-08-13
Events on 2014-08-20
Events on 2014-08-27
Articles

Apr 25: EHR Incentive Audits-Common Questions on Timelines and Risk Profile

ehr incentive audits

By Jim Tate, EMR Advocate and Meaningful Use Audit Expert
Twitter: @JimTate
eMail: audits@emradvocate.com
Website: www.meaningfuluseaudits.com

In recent conversations with Eligible Hospitals (EHs) two questions seem to be coming up more and more concerning CMS EHR incentive audits. Let’s take them on one at a time.

How long can my CMS EHR incentive attestation be subject to an audit?

CMS is pretty clear that documentation used in support of an attestation should be saved for 6 years. “Documentation to support attestation data for Stage 2 meaningful use objectives and clinical quality measures should be retained for six years post‐attestation. Documentation to support payment calculations (such as cost report data) should continue to follow the current documentation retention processes.” Sounds to me that you could possibly be audited for up to 6 years after an individual attestation. Case closed.

If an audit is failed, does that make me more likely to be audited again in future years?

Ah, this is a good one and gets into the shady area of “risk profile”. CMS, for obvious reasons, is keeping their cards close to their chest on what makes up the “risk profile”.  There is another angle to this that touches not on risk of audits for future attestations but also on past attestations. Case in point, I was contacted last week about such a “look back” audit situation. The initial audit was performed on a 2012 attestation and notification was received of a Negative Determination in August 2013 based on one measure. They were then the subject of an audit based on an earlier (2011) attestation and were notified of failure in March 2014 on the exact same measure. It only makes sense that during an audit if it becomes obvious that there is evidence of a “problematic” attestation the same issue might exist in earlier attestations. Now I have no insider info on what makes up the “risk profile” but I can usually do a little reading between the lines. If you went through an 2014 meaningful use audit, and didn’t have a Security Risk Assessment, I would think there would be a chance you couldn’t provide it for prior attestations either. I’m expecting we will see more and more of these “look back” audits based on what is revealed during an initial audit. Just make sense to me.

Side note: At HIMSS in February I spoke with Elizabeth Holland (director CMS’ Health IT Initiatives Group) and Robert Anthony (deputy director of CMS’ Health IT Initiatives Group) at HIMSS this year and here’s what they told me: The majority of failed audits occur either for lack of having documentation of the MU measures or the Security Risk Analysis.   To address this critical documentation issue, we’ve now added a review of the Security Risk Assessment to our Mock Audit Services.  If you are interested in learning more about conducting a mock audit for your organization, please contact me at audits@emradvocate.com.

Source