We use cookies, including third-party cookies from Google to serve personalized ads through AdSense, to operate this site and understand how it is used. By continuing to browse, you accept this use. See our Privacy Policy and Terms of Use for details, including how to opt out of personalized advertising.
Accept
Health Works CollectiveHealth Works CollectiveHealth Works Collective
  • Health
    • Mental Health
  • Policy and Law
    • Global Healthcare
    • Medical Ethics
  • Medical Innovations
  • News
  • Wellness
  • Tech
Search
© 2023 HealthWorks Collective. All Rights Reserved.
Reading: HIPAA Basics For Licensed Health Care Professionals: Privacy, Security, and Breach Notification Rules
Share
Notification Show More
Font ResizerAa
Health Works CollectiveHealth Works Collective
Font ResizerAa
Search
Follow US
  • About
  • Contact
  • Privacy
© 2023 HealthWorks Collective. All Rights Reserved.
Health Works Collective > Policy & Law > Global Healthcare > HIPAA Basics For Licensed Health Care Professionals: Privacy, Security, and Breach Notification Rules
Global HealthcareHealth ReformHome HealthMedical EducationMedical EthicsMedical RecordsNewsPolicy & LawPublic Health

HIPAA Basics For Licensed Health Care Professionals: Privacy, Security, and Breach Notification Rules

Jennifer Warren
Jennifer Warren
Share
5 Min Read
SHARE

The Department of Health and Human Services (HHS) recently issued a Health Insurance Portability and Accountability Act (HIPAA) fact sheet for health care professionals and organizations.

The Department of Health and Human Services (HHS) recently issued a Health Insurance Portability and Accountability Act (HIPAA) fact sheet for health care professionals and organizations.

The overview is titled “HIPAA Basics for Providers: Privacy, Security and Breach Notification Rules” and is intended to provide HIPAA covered entities such as physicians, health care facilities and other licenced health care professionals with a basic overview of HIPAA’s rules and responsibilities. Click here to view the HIPAA fact sheet.

 

More Read

report workplace accidents
Reporting Workplace Accidents to Keep Employees Healthy & Safe
New Ways to Track the Flu
Economies of Scale Enable Mumbai-Based Laboratory to Be Market Leader
6 Vegan Soft Drinks to Try This Veganuary
Hospital Marketing and Ebola: Communication and Education Needed

HIPAA Privacy Rule.

The privacy rule is established as a standard for the protection of protected health information (PHI) by covered entities. It gives patients vital rights with respect to their health information. The following is protected information under this rule:

1. The individual’s past, present or future physical or mental health or condition;

2. The provision of health care to the individual; or

3. The past, present or future payment for the provision of health care to the individual.

PHI also includes common identifiers, such as name, address, birth date and Social Security Number.

 

HIPAA Security Rule.

This rule specifies safeguards that covered entities are required to implement to protect the confidentiality, integrity and availability of health information. To properly enforce this rule, covered entities must develop policies and procedures to protect the security of electronic protected health information (ePHI). This includes analyzing risks and creating solutions that are appropriate for the situation. For more information from HHS on the implementation of the security standards, click here.

 

HIPAA Breach Notification Rule.

Affected individuals, HHS and in certain cases, the media are required to be notified of a breach of PHI. The rule includes the following guidelines:

1. Most notifications must be provided without unreasonable delay and no later than 60 days following the discovery of the breach.

2. Smaller breaches affecting fewer than 500 individuals may be submitted to HHS in a log or other documentation annually.

3. Business associates of covered entities are also required to notify the covered entity of breaches.

To view the breach notification timelines included in the HIPAA fact sheet, click here.

 

Who is Required to Comply With HIPAA Rules?

The following covered entities must follow HIPAA standards and requirements:

1. Covered Health Care Providers: Any provider of medical or other health care services or supplies who transmits any health information in electronic form in connection with a transaction for which HHS has adopted a standard. This includes doctors, chiropractors, dentists, pharmacies, psychologists, clinics and nursing homes.

2. Health Plans: Any individual or group plan that provides or pays the cost of health care. This includes company health plans, government programs for health care such as Medicaid and Medicare, along with the military and health insurance companies.

3. Health Care Clearinghouses: A public or private entity that processes another entity’s health care transactions from a standard format to a non-standard format or vice versa. This includes billing services, community health management information systems, repricing companies and value-added networks.

4. Business Associates: Provide services to covered entities and are extensions of the previous entities listed, including legal services, billing, financial services and accreditation.

 

Enforcement and Repercussions.

The HHS Office for Civil Rights enforces the HIPAA Privacy, Security and Breach Notification Rules. Violation of these rules may result in civil and in some cases criminal penalties. HIPAA violations can also lead to Medicare exclusion which is often a death sentence for a health care provider. To read a previous blog I wrote on the penalties of HIPAA violations, including a chart outlining the penalty structure, click here.

 

 

Sources:

Hamlet, Julie. “HHS ISSUES HIPAA “BASICS” FACT SHEET”. Foster Swift. (September 2, 2015). Web

Department of Health and Human Services. “HIPAA Basics for Providers: Privacy, Security and Breach Notification Rules”. (May, 2015). Web

TAGGED:healthcare lawHIPAAPhysician
Share This Article
Facebook Copy Link Print
Share
By Jennifer Warren
This is Jennifer Warren, staff writer at GoodFirms – a review and research platform for top ecommerce development companies, blockchain development companies among many others. A bookworm at heart, I have successfully guest blogged for top sites such as Crazyegg, Semrush, Searchenginepeople, Sitepronews, Volusion.com, Socialnomics, jeffbullas, mediapost among others.

Stay Connected

1.5KFollowersLike
4.5KFollowersFollow
2.8KFollowersPin
136KSubscribersSubscribe

Latest News

Biofeedback Technology in Addiction Treatment: What the Evidence Shows So Far -- AI-generated illustration
Biofeedback Technology in Addiction Treatment: What the Evidence Shows So Far
Addiction Addiction Recovery
September 28, 2026
Charity Care Is Written Into Hospital Policy. It Rarely Makes It Onto the Bill. -- AI-generated illustration
Charity Care Is Written Into Hospital Policy. It Rarely Makes It Onto the Bill.
Business Hospital Administration
September 25, 2026
A Global Perspective on Medicine: Lessons Learned Across Borders -- AI-generated illustration
A Global Perspective on Medicine: Lessons Learned Across Borders
Medicines
September 23, 2026
KMG Psychiatry Discusses the Role of Self-Awareness in Mental Health  -- AI-generated illustration
KMG Psychiatry Discusses the Role of Self-Awareness in Mental Health 
Mental Health
September 23, 2026

You Might also Like

Cartoon Version of Obamacare is Pretty Useful [video]

July 22, 2013
healthcare trends HIMSS 2013
News

HIMSS 2013: Healthcare Trends from This Year’s Conference

March 12, 2013

Costs of Care Essay Contest 2012: Stories from Patients and their Caregivers Uncover Opportunities to Improve Healthcare Value

October 11, 2012

Doctors and Their Patients: Commitments to Caring

January 12, 2015
Subscribe
Subscribe to our newsletter to get our newest articles instantly!
Follow US
© 2008-2026 HealthWorks Collective. All Rights Reserved.
  • About
  • Contact
  • Privacy
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?