Business Associate Agreements (BAAs) are a particular type of contract, dictated by HIPAA, which outlines the responsibilities of another party you’re doing business with when it comes to Protected Health Information (PHI). While it may seem straightforward—this...
Before you outsource any of your organization’s functions to a third party, you need to do your research. Will the vendor handle PHI on behalf of your organization? If so, they’re a business associate (BA). Then conduct due diligence to be sure you can trust the...
In the last blog, you used a Business Associate Decision Tree to find if your vendors are business associates (BAs) under HIPAA. But good vendor management begins before you enter a contract with a third party. Before hiring a vendor, you must exercise due diligence....
It’s virtually impossible to do everything in house, which is why most healthcare organizations—and most organizations in general—outsource critical functions. After all, there are many benefits to hiring external companies to provide expert services. But if...
In the last post, we saw how the HIPAA Security Rule’s administrative, physical, and technical safeguards help defend your organization against the hydra of security threats. Now, we’ll turn our attention to privacy safeguards. You know the HIPAA Privacy Rule requires...