By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Health Works CollectiveHealth Works CollectiveHealth Works Collective
  • Health
    • Mental Health
  • Policy and Law
    • Global Healthcare
    • Medical Ethics
  • Medical Innovations
  • News
  • Wellness
  • Tech
Search
© 2023 HealthWorks Collective. All Rights Reserved.
Reading: Stage 2 Implications on HIPAA Hosting
Share
Notification Show More
Font ResizerAa
Health Works CollectiveHealth Works Collective
Font ResizerAa
Search
Follow US
  • About
  • Contact
  • Privacy
© 2023 HealthWorks Collective. All Rights Reserved.
Health Works Collective > Uncategorized > Stage 2 Implications on HIPAA Hosting
Uncategorized

Stage 2 Implications on HIPAA Hosting

onlinetech
onlinetech
Share
5 Min Read
SHARE

Initially I had some difficulty pinning down the exact objectives and implications Stage 2 would have on health IT for healthcare organizations that deal with electronic protected health information (ePHI). I combed through the entire document for any implications the proposed revisions might have on the HIPAA hosting aspect of health IT, as that can affect the decisions our clients make and our ability to fulfill those needs to help meet compliance and meaningful use.

Initially I had some difficulty pinning down the exact objectives and implications Stage 2 would have on health IT for healthcare organizations that deal with electronic protected health information (ePHI). I combed through the entire document for any implications the proposed revisions might have on the HIPAA hosting aspect of health IT, as that can affect the decisions our clients make and our ability to fulfill those needs to help meet compliance and meaningful use.

Here’s a rundown of what I could pinpoint through a review of the official federal register document, 42 CFR Parts 412, 413 and 495, Medicare and Medicaid Programs; Electronic Health Record Incentive Program – Stage 2.

Encryption

More Read

NIST Recommendations for Security in the Outsourced Cloud
Shahid Shah Speaking at NIH Clinical Center on Why Meaningful Use (MU) and EHRs are Insufficient for Evidence Based Medicine (EBM) and Comparative Effectiveness Research (CER)
Unplanned Pregnancy: Counseling Patients and Finding Help
Smart Connections: Engaging Patients and Driving Growth to Your Bottom Line
2012 Health IT Cloud Computing: Private Clouds Dominate

In Stage 2, the proposed rule is to highlight the importance of encryption while conducting a security risk analysis. While the proposal does not seek to make encryption a requirement under the HIPAA Security Rule, awareness of encryption and the security of data at rest will be emphasized as a key measure in the review of a security risk analysis/assessment.

The federal register acknowledges that a recent HHS analysis of reported shows nearly 40 percent of large breaches were due to lost or stolen devices – encryption could secure data on any device and prevent data leaks.

Data Accessibility by Patients

In Stage 1, a core objective requires eligible hospitals to provide patients with an electronic copy of their health information upon request. Stage 2 ups the ante by requiring hospitals to provide patients with timely electronic access to their health information within 4 business days of information being made available to the hospital.

Stage 2 proposes an online patient portal or personal health record (PHR) be available to allow patient access to lab results, problem list, medication lists and allergies. This provision would call for the integration of a patient portal system into the IT infrastructure of any eligible hospital, increasing the need to streamline and support an always-available system.

But what if there was hardware failure, or a natural disaster that affected your data and application availability? In the event of a disaster, a formal disaster recovery plan can ensure your data will be readily available to meet future meaningful use requirements. Cloud-based disaster recovery can provide recovery time objectives of four hours, meaning patient data can be recovered and available on a timely basis.

Medical Imaging Accessibility

A new core objective for Stage 2 proposes that imaging results and information are accessible through Certified EHR Technology. By making medical imaging results (CAT Scans, CT Scans, X-Rays, etc.) available through an EHR system, the provision intends to reduce unnecessary costs and radiation exposure from tests repeated only because a prior test is not available to the provider.

Making medical images accessible through these systems means the need the invest in high-capacity data storage. A high-capacity HIPAA cloud hosting solution can provide massive storage or synchronization with scalability to grow as your storage needs require.

The Stage 2 meaningful use proposed changes may affect the certification process for EHR systems. As Kyle Murphy writes in What Does ONC Mean by a Certified EHR? – to demonstrate meaningful use, you need a certified EHR system; to create a certifiable EHR system, you need to know how to meet the different stages of meaningful use.

References:
Medicare and Medicaid Programs; Electronic Health Record Incentive Program – Stage 2 (PDF)

TAGGED:HIPAA hostingstage 2
Share This Article
Facebook Copy Link Print
Share

Stay Connected

1.5kFollowersLike
4.5kFollowersFollow
2.8kFollowersPin
136kSubscribersSubscribe

Latest News

Slips and falls can happen in the blink of an eye, often in spaces we believe to be safe. A brief moment of misstep
When a Simple Fall Becomes a Serious Health Concern
Health
November 1, 2025
How Setting Boundaries Helps Trauma Survivors Heal
Health
October 30, 2025
how to improve REM sleep
Unlock Better Sleep: How to Improve REM Sleep Naturally
Wellness
October 30, 2025
uv protection in winter
Winter Sun Safety: Why UV Protection Matters Year-Round
Health
October 29, 2025

You Might also Like

Prevent Increasing Costs of a Data Breach: Invest in HIPAA Hosting

September 13, 2011
HIMSS Analytics: Due Diligence with Business Associates
Uncategorized

Due Diligence with Business Associates

April 19, 2012

Provider Identities and Information Sources : Using IT to Facilitate Information Therapy

September 23, 2011

Health IT Confusion and Clarification

September 16, 2011
Subscribe
Subscribe to our newsletter to get our newest articles instantly!
Follow US
© 2008-2025 HealthWorks Collective. All Rights Reserved.
  • About
  • Contact
  • Privacy
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?