Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
1
2
6
7
9
10
11
12
13
14
18
19
20
21
23
27
28
30
12:00 AM - Hepatology 2021
31
1
2
3
4
Heart Care and Diseases 2021
2021-03-03    
All Day
Euro Heart Conference 2020 will join world-class professors, scientists, researchers, students, Perfusionists, cardiologists to discuss methodology for ailment remediation for heart diseases, Electrocardiography, Heart Failure, [...]
Gastroenterology and Digestive Disorders
2021-03-04 - 2021-03-05    
All Day
Gastroenterology Diseases is clearing a worldwide stage by drawing in 2500+ Gastroenterologists, Hepatologists, Surgeons going from Researchers, Academicians and Business experts, who are working in [...]
Environmental Toxicology and Ecological Risk Assessment
2021-03-04 - 2021-03-05    
All Day
Environmental Toxicology 2021 you can meet the world leading toxicologists, biochemists, pharmacologists, and also the industry giants who will provide you with the modern inventions [...]
Dermatology, Cosmetology and Plastic Surgery
2021-03-05 - 2021-03-06    
All Day
Market Analysis Speaking Opportunities Speaking Opportunities: We are constantly intrigued by hearing from professionals/practitioners who want to share their direct encounters and contextual investigations with [...]
World Dental Science and Oral Health Congress
2021-03-08 - 2021-03-09    
All Day
About The Webinar Conference Series LLC Ltd invites you to attend the 42nd World Dental Science and Oral Health Congress to be held in March 08-09, 2021 with the [...]
Euro Metabolomics & Systems Biology
2021-03-08 - 2021-03-09    
All Day
Euro Metabolomics 2021 will be a platform to investigate recent research and advancements that can be useful to the researchers. Metabolomics is a rapidly emerging [...]
International Summit on Industrial Engineering
2021-03-15 - 2021-03-16    
All Day
Industrial Engineering conference invites all the participants to attend International summit on Industrial Engineering during March15-16, 2021 Webinar. This has prompt keynotes, Oral talks, Poster [...]
Digital Health 2021
2021-03-15 - 2021-03-16    
All Day
The use of modern technologies and digital services is not only changing the way we communicate, they also offer us innovative ways for monitoring our [...]
Genetics and Molecular biology 2021
2021-03-15    
All Day
Human genetics is study of the inheritance of characteristics by children from parents. Inheritance in humans does not differ in any fundamental way from that [...]
Food Science and Food Safety
2021-03-16 - 2021-03-17    
All Day
Food Safety. It also provides the premier multidisciplinary forum for researchers, professors and educators to present and discuss the most recent innovations, trends, and concerns, [...]
Traditional and Alternative Medicine
2021-03-16 - 2021-03-17    
All Day
Traditional Medicine 2021 welcomes attendees, presenters, and exhibitors from all over the world. We are glad to invite you all to attend and register for [...]
Carbon and Advanced Energy Materials
2021-03-16 - 2021-03-17    
All Day
Materials Science 2021 was an enchanted achievement. We give incredible credits to the Organizing Committee and participants of Materials Science 2021 Conference. Numerous tributes from [...]
Advancements in Tuberculosis and Lung Diseases
2021-03-17 - 2021-03-18    
All Day
Tuberculosis is a communicable disease, caused by the infectious bacterium Mycobacterium tuberculosis. It affects the lungs and other parts of the body (brain, spine). People [...]
Herbal Medicine and Acupuncture 2021
2021-03-22 - 2021-03-23    
All Day
The event offers a best platform with its well organized scientific program to the audience which includes interactive panel discussions, keynote lectures, plenary talks and [...]
Hospital Management and Health Care
2021-03-22 - 2021-03-23    
All Day
Healthcare system refers to the totality of resource that a society distributes with in organization and health facilities delivery for the aim of upholding or [...]
Hematology and Infectious Diseases
2021-03-22 - 2021-03-23    
All Day
Hematology is the discipline concerned with the production, functions, bone marrow, and diseases which are related to blood, blood proteins. The main aim of this [...]
Aquaculture & Marine Biology
2021-03-24 - 2021-03-25    
All Day
The 15th International Conference on Aquaculture & Marine Biology is delighted to welcome the participants from everywhere the planet to attend the distinguished conference scheduled [...]
Artificial Intelligence & Robotics 2021
2021-03-24 - 2021-03-25    
All Day
The Conference Series LLC Ltd organizes conferences around the world on all computer science subjects including Robotics and its related fields. Here we are happy [...]
Tissue Engineering & Regenerative Medicine
2021-03-24 - 2021-03-25    
All Day
Tissue Engineering & Regenerative Medicine mainly focuses on Stem Cell Research and Tissue Engineering. Stem cell Research includes stem cell treatment for various disease and [...]
Nursing Research and Evidence Based Practice
2021-03-25 - 2021-03-26    
12:00 am
Global Nursing Practice 2021 has been circumspectly organized with various multi and interdisciplinary tracks to accomplish the middle objective of the gathering that is to [...]
Earth & Environmental Science 2021
2021-03-26 - 2021-03-27    
All Day
Earth Science 2021 is the integration of new technologies in the field of environmental science to help Environmental Professionals harness the full potential of their [...]
Earth & Environmental Science 2021
2021-03-26 - 2021-03-27    
All Day
Earth Science 2021 is the integration of new technologies in the field of environmental science to help Environmental Professionals harness the full potential of their [...]
Nanomaterials and Nanotechnology
2021-03-26 - 2021-03-27    
All Day
Nanomaterials are the elements which have at least one spatial measurement in the size range of 1 to 100 nanometre. Nanomaterials can be produced with [...]
Smart Materials and Nanotechnology
2021-03-29 - 2021-03-30    
All Day
Smart Material 2021 clears a stage to globalize the examination by introducing an exchange amongst ventures and scholarly associations and information exchange from research to [...]
World Nanotechnology Congress 2021
2021-03-29    
All Day
Nano Technology Congress 2021 provides you with a unique opportunity to meet up with peers from both academic circle and industries level belonging to Recent [...]
Nanomedicine and Nanomaterials 2021
2021-03-29    
All Day
NanoMed 2021 conference provides the best platform of networking and connectivity with scientist, YRF (Young Research Forum) & delegates who are active in the field [...]
Hepatology 2021
2021-03-30 - 2021-03-31    
All Day
Hepatology 2021 provides a great platform by gathering eminent professors, Researchers, Students and delegates to exchange new ideas. The conference will cover a wide range [...]
Events on 2021-03-03
Events on 2021-03-05
Events on 2021-03-17
Events on 2021-03-25
Events on 2021-03-30
Hepatology 2021
30 Mar 21
Latest News

Digital Health Care Alert: Is Your Health Care App Subject To HIPAA?

Digital Health Care Alert

The U.S. Department of Health & Human Services’ Office for Civil Rights (OCR) recently released two HIPAA compliance documents that provide useful guidance to health care app developers.

By: Stefano Quintini and Hilary A. Cox

April 5, 2016

    OCR’s Compliance Guidance for Health Care App Developers

    The U.S. Department of Health & Human Services’ Office for Civil Rights (OCR) recently provided guidance (in the form of six “real-life” scenarios) to help health care app developers (“Developers”) determine whether their consumer data collection activities make them subject to HIPAA. In general, those apps offered directly to consumers for them to use to track their fitness activities, blood pressure levels, glucose levels, etc. are not required to comply with HIPAA (however, other state data protection laws might apply to the collection and use of personal information). On the other hand, apps that are offered in conjunction with a covered health care provider or a health plan are more likely to be candidates for HIPAA compliance.

    The key question is whether the Developer is creating, receiving, maintaining and transmitting protected health information (PHI) on behalf of a Covered Entity. If the answer is yes, then the Developer would have to comply with HIPAA rules as a Business Associate of the Covered Entity.

    OCR’s guidance states that those apps that give consumers the ability to upload a copy of their medical records that they have previously downloaded from their provider’s Electronic Health Record (EHR) will not be subject to HIPAA unless the Developers are maintaining that health information on behalf of those providers or those providers’ vendors as Business Associates of the Covered Entity. Even if a doctor recommends a specific health care app to his or her patient and the patient downloads that app, enters his or her health information and shares that information with the doctor through the app, the Developer is still not required to comply with HIPAA as long as the Developer has not contracted with the doctor to provide the app’s services. The fact that the patient used the app to share his or her information with the doctor does not, in and of itself, make the Developer a Business Associate of the doctor.

    OCR specifically called out those apps that offer users the ability to connect to a health care provider’s or health plan’s EHR—where there’s an interoperability arrangement between those entities and the app developer and no other business relationship between the parties—as a scenario in which HIPAA compliance would likely not be required. However, if, for instance, at the direction of a provider, a patient downloads a health app to his or her smart phone, and  the provider has contracted with the Developer for patient management services (examples are: remote patient health counseling, monitoring of patients’ food and exercise, patient messaging, EHR integration and application interfaces), and the information provided by the patient is automatically incorporated into the provider’s EHR, then the Developer would be considered a Business Associate since the app is a means for providing those patient management services.

    In a more nuanced scenario, a Developer would have to comply with HIPAA rules if the app is offered by the consumer’s health plan (the example mentioned in the guidance relates to a mobile PHR that allows users to download and store health plan records and check the status of claims and coverage decisions, and also contains the plan’s wellness tools for members). However, if the Developer were to also offer a separate, direct-to-consumer version of the app, the Developer’s activities with respect to such version would not be subject to HIPAA rules (the implication being, however, that the health information collected from these two versions of the app would need to be separately stored).

    The guidance document also contains a list of “Key Questions” to help Developers determine if they will be considered a Business Associate under HIPAA. As with the scenarios above, these questions are organized around the issues of who the Developer’s customers are and how much control a consumer/user has over his or her data. If you are a Developer and your customers are Covered Entities under HIPAA (e.g., hospitals, doctors’ offices, clinics, pharmacies, or other health care providers that conduct electronic transactions, health plans, wellness programs offered as part of an employer’s self-funded health plan), or Business Associates to a Covered Entity, you will need to comply with HIPAA. If you are only offering your app directly to consumers, and your users independently select your app and control all decisions as to whether to send their data to a third party, you are probably not required to comply with HIPAA—although other data protection laws will apply.

    Click here to read OCR’s complete guidance.

    New Compliance Guidance for the HIPAA Security Rule

    OCR has also published a “Crosswalk” that maps the connections between the National Institute of Standards and Technology (NIST) Framework for Improving Critical Infrastructure Cybersecurity Framework (“NIST Framework”) and the HIPAA Security Rule’s standards. The NIST Framework is a voluntary, risk-based approach that helps organizations in any industry understand, communicate and manages cybersecurity risks. Since the Security Rule’s standards are scalable and technology-neutral, this Crosswalk provides more concrete/practical guidance for “how” Business Associates (and Covered Entities) can assess their current compliance status, from a technical standpoint, and identify any possible gaps. For instance, one of the “required” standards under the Security Rule is the performance of a Risk Assessment. Within that standard, the Crosswalk sets out five subcategories that are fairly granular (e.g., asset vulnerabilities are identified and documented; threat and vulnerability information is received from information sharing forums and sources; threats, both internal and external, are identified and documented, etc.) and provides more clarity on the components of a Risk Assessment. One caveat—OCR states that compliance with the Crosswalk is not a “guarantee” of HIPAA compliance. Nevertheless, the crosswalk should go some way to making the Security Rule standards less nebulous.

    Click here for a copy of the Crosswalk.​​

    Source