HIPAA Compliance Rule Standards
HIPAA compliance can be summarized by the three major rules or standards:
HIPAA Privacy Rule
The HIPPA Privacy Rule mandates the protection and privacy of all health information. This rule specifically defines the authorized uses and disclosures of "individually-identifiable" health information.
HIPAA Transactions and Code Set Rule
The HIPPA Transaction and Code Set Standard addresses the use of predefined transaction standards and code sets for communications and transactions in the health-care industry.
HIPAA Security Rule
The HIPAA Security Rule mandates the security of electronic medical records (EMR). Unlike the Privacy Rule, which provides broader protection for all formats that health information make take, such as print or electronic information, the Security Rule addresses the technical aspects of protecting electronic health information. More specifically, the HIPPA Security standards adresses these aspects of security:
» Administrative security - assignment of security responsibility to an individual.
» Physical security - required to protect electronic systems, equipment and data.
» Technical security - authentication & encryption used to control access to data.
|