Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
30
31
1
12:00 AM - TEDMED 2017
2
3
5
6
7
8
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
30
1
2
3
TEDMED 2017
2017-11-01 - 2017-11-03    
All Day
A healthy society is everyone’s business. That’s why TEDMED speakers are thought leaders and accomplished individuals from every sector of society, both inside and outside [...]
AMIA 2017 Annual Symposium
2017-11-04 - 2017-11-08    
All Day
Call for Participation We invite you to contribute your best work for presentation at the AMIA Annual Symposium – the foremost symposium for the science [...]
Beverly Hills Health IT Summit
2017-11-09 - 2017-11-10    
All Day
About Health IT Summits U.S. healthcare is at an inflection point right now, as policy mandates and internal healthcare system reform begin to take hold, [...]
Forbes Healthcare Summit
2017-11-29 - 2017-11-30    
All Day
ForbesLive leverages unique access to the world’s most influential leaders, policy-makers, entrepreneurs, and artists—uniting these global forces to harness their collective knowledge, address today’s critical [...]
Events on 2017-11-01
TEDMED 2017
1 Nov 17
La Quinta
Events on 2017-11-04
AMIA 2017 Annual Symposium
4 Nov 17
WASHINGTON
Events on 2017-11-09
Beverly Hills Health IT Summit
9 Nov 17
Los Angeles
Events on 2017-11-29
Forbes Healthcare Summit
29 Nov 17
New York
Articles

Nov 01: EMR, who’s protecting your information.

hl7 infobutton

“I think it’s more secure, in general” says  Dr. James Storey. He works at Upstate Neurology where he and the rest of his bustling medical practice have made the switch to electronic medical records. But embracing these records is a work in progress. Since you can’t lock them away as you would with paper files the practice compliance officer is always tweaking and tightening protection protocols.

Making the switch to electronic medical records – EMR-S is mandated under HIPAA.  The health insurance portability and accountability act.

And HIPAA mandates certain protections: a strong ‘system’ password, monitors that automatically time out so information doesn’t linger on computer screens and careful training for staff.

And it addresses the vulnerability of information on mobile devices.

William Henderson, the compliance officer for Upstate Neurology says of that information “It’s only stored on our servers. So what happens is, when I call up a patient on a device I see that. The moment I’m done with it, that is gone. It is not there. You can take that device, you can do anything you want with it. You will find not a trace of anything about you.”

That’s what they do at Upstate Neurology. Henderson says, ask what your doctor does.

A secure system limits access to records to only those who need to see them to do their job.t Upstate Neurology, Henderson explains, system users leave an electronic footprint left every time records are accessed and he regularly reviews them, looking for potential problems.

He adds, there are also limits on what doctors should share with other doctors – Minimum necessary is what that’s called.

” The days of just simply saying send me everything in the patient’s medical record, those are long gone.” says Henderson.

Each of your doctors who use EMR-s should ask for your consent to share information. And you have the right to say no.

HIXNY, the health information exchange of New York, links medical offices and hospitals in our 17 county area from Columbia and Green counties to the Canadian border.

HIXNY finds most patients grant that approval. Currently, more than 50 % of medical offices are connected to HIXNY which also, monitors usage.

Mark McKinney is the CEO of HIXNY. He says ” We know who accesses what records, how long they access it for, what they view it for. We can audit that and we can track all of that. Equally important is that we also have the ability to backup and safeguard the records from being lost or destroyed.”

Even so, McKinney says, patients need to be proactive.

Read the materials you’re given about HIPAA, know what you’re signing and look around the office. That’s something Albany Med’s compliance officer, Noel Hogan always does.

” Have they turned the monitor around. You can’t protect it forever but if they have a monitor and the world can see it, that doesn’t tell me they’re too aware of HIPAA and responsive to protect your records. I look for those kind of things.”

In an emergency – if you’re unconscious or otherwise unable to speak – a hospital can, what’s called, break the glass and access your medical records without your consent, to better treat you.

“As soon as that occurs our systems record that activity and that event and then we audit 100% of all those activities” says McKinney, “to insure that a physician does break the glass in an appropriate manner.”

If you think a medical office is playing fast and loose with security you can file a complaint with Health and Human Services, explains Tyler Wrightson of Grey Castle Security.

“And then they’ll go in and investigate these organizations and see if they’re doing things in a secure way. And if they’re not, they’ll fine those organizations and come up with what’s called a corrective action.”

There can even be criminal penalties under HIPAA.

“So in some cases” says McKinney “Yes they can go to jail or be fined very substantial amounts of money.”

Despite all this, the experts say, there is no 100% guarantee your records won’t be compromised, so be alert.

source