Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
1
2
5
6
8
11
12
13
14
15
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
1
2
3
4
Forbes Healthcare Summit
2014-12-03    
All Day
Forbes Healthcare Summit: Smart Data Transforming Lives How big will the data get? This year we may collect more data about the human body than [...]
Customer Analytics & Engagement in Health Insurance
2014-12-04 - 2014-12-05    
All Day
Using Data Analytics, Product Experience & Innovation to Build a Profitable Customer-Centric Strategy Takeaway business ROI: Drive business value with customer analytics: learn what every business [...]
mHealth Summit
DECEMBER 7-11, 2014 The mHealth Summit, the largest event of its kind, convenes a diverse international delegation to explore the limits of mobile and connected [...]
The 26th Annual IHI National Forum
Overview ​2014 marks the 26th anniversary of an event that has shaped the course of health care quality in profound, enduring ways — the Annual [...]
Why A Risk Assessment is NOT Enough
2014-12-09    
2:00 pm - 3:30 pm
A common misconception is that  “A risk assessment makes me HIPAA compliant” Sadly this thought can cost your practice more than taking no action at [...]
iHT2 Health IT Summit
2014-12-10 - 2014-12-11    
All Day
Each year, the Institute hosts a series of events & programs which promote improvements in the quality, safety, and efficiency of health care through information technology [...]
Design a premium health insurance plan that engages customers, retains subscribers and understands behaviors
2014-12-16    
11:30 am - 12:30 pm
Wed, Dec 17, 2014 1:00 AM - 2:00 AM IST Join our webinar with John Mills - UPMC, Tim Gilchrist - Columbia University HITLAP, and [...]
Events on 2014-12-03
Forbes Healthcare Summit
3 Dec 14
New York City
Events on 2014-12-04
Events on 2014-12-07
mHealth Summit
7 Dec 14
Washington
Events on 2014-12-09
Events on 2014-12-10
iHT2 Health IT Summit
10 Dec 14
Houston
Articles

Dec 11: Limit EHR copy-paste to reduce fraud risk

regenstrief institute and indiana university

Hospitals are employing safeguards to prevent electronic health record fraud and abuse to varying degrees, but must do more, according to a new report from the U.S. Department of Health & Human Services Office of Inspector General.

HHS contracted with RTI International (RTI) to develop recommendations to enhance data protection. The report looks at the extent to which hospitals are following those recommendations.

It found that efforts to protect data were aimed more at ensuring privacy rather than detecting fraud and abuse. The authors were especially concerned that too little is done to limit the use of EHRs’ copy-paste functions.

“Although the copy-paste feature in EHRs can enhance efficiency of data entry, it may also facilitate attempts to inflate, duplicate, or create fraudulent health care claims,” the report’s authors say.

EHR vendors reported that the copy-paste function in their technology cannot be customized or disabled. Hospitals complained that this limits their ability to restrict it to authorized users.

The report found:

  • Only 24 percent of hospitals had policies in place regarding use of copy-paste
  • 44 percent of hospital audit logs reported the method (copy-paste, direct text entry, speech recognition) of data entered into the EHR, as recommended
  • 61 percent shifted responsibility to the user to confirm that copy-pasted data was accurate
  • 22 percent advised EHR users to avoid “indiscriminately copy-pasting”
  • 21 percent of policies required EHR users to cite the original source of the copy-pasted data

In addition, the report found that:

  • Although nearly all hospitals with EHR technology had recommended audit functions in place, they may not be using them to their full extent
  • All hospitals employed a variety of RTI-recommended user authorization and access controls
  • Nearly all hospitals were using RTI-recommended data transfer safeguards
  • Almost half of hospitals had begun implementing RTI-recommended tools to include patient involvement in anti-fraud efforts

It recommended that the Office of the National Coordinator for Health IT and the Centers for Medicare & Medicaid Services strengthen their collaborative efforts to develop a comprehensive plan to address fraud vulnerabilities in EHRs and that CMS develop guidance on the use of the copy-paste feature in EHR technology.

A California radiologist was fined more than $7 million for fraudulent radiology reports in which untrained staff cut and pasted the signatures of board-certified radiologists without their knowledge or permission, then submitted the reports for billing.