Final Security Rule Published in Federal Register

MedAbiliti

February 20, 2003

The final HIPAA [ http://www.cms.hhs.gov/hipaa/ ] Security Rule, "Health Insurance Reform: Security Standards," was published by the Department of Health and Human Services on February 13, 2003, adopting final standards for the security of electronic protected health information by health plans, health care clearinghouses, and certain health care providers.

The final Security Rule was published in the Federal Register on February 20, 2003. A PDF of the rule can be obtained here [ http://a257.g.akamaitech.net/7/257/2422/14mar20010800/edocket.access.gpo.gov/2003/pdf/03-3877.pdf ].

Security rules are to be implemented by April 21, 2005 (or April 21, 2006, for small health plans).

How MedAbiliti Can Help: An audit of existing organization policies must be taken to see where security issues may be lax. Then an organization must be educated on its regulations and policies, such policies must be implemented, and then a final audit of the organization must be done to ensure proper compliance has taken place. HIPAA is not just a goal to be reached, but a way to operate your business over time. MedAbiliti can provide the software, the system audit, and the training needed to ensure your organization is meeting the HIPAA requirements. Please contact us at hipaa@medabiliti.com for more information.

About MedAbiliti

Medabiliti designs, develops, and deploys information solutions for the health care industry. MedAbiliti's approach to development is one that applies international quality assurance methods to application access, data analysis, and process efficiency. MedAbiliti's commitment to structured software methodology, software engineering practices, quality standards for data deployment/access, confidentiality and security of sensitive data, and commitment to customer-client management, position it as an emerging industry leader in medical software design and implementation.


Transactions and Code Set Standards Finalized

MedAbiliti

February 20, 2003

The Final Rule adopting changes to the HIPAA [ http://www.cms.hhs.gov/hipaa/ ] Electronic Transactions and Code Set Standards was published in the Federal Register on February 20, 2003. This final rule modifies a number of the electronic transactions and code sets adopted as national standards under HIPAA, and eliminates the NDC code set as the standard for all providers except retail pharmacies. It does not adopt a standard reporting drugs and biologics on non-retail pharmacy transactions. The modifications are published as Addenda to the ASC X12N Implementation Guides and are available through the Washington Publishing [ www.wpc-edi.com ] Company.

View the Final Rule [ http://a257.g.akamaitech.net/7/257/2422/14mar20010800/edocket.access.gpo.gov/2003/03-3876.htm ] as published in the Federal Register.

Transactions were to be compliant by October 2002 (or October 2003 for small health plans), unless a one-year extension was requested from the DHHS.

How MedAbiliti Can Help: To become compliant with HIPAA, any transactions being sent electronically must be made compliant with the EDI standards. In addition, an audit of existing organization policies must be taken to see where security issues may be lax. Then an organization must be educated on its regulations and policies, such policies must be implemented, and then a final audit of the organization must be done to ensure proper compliance has taken place. HIPAA is not just a goal to be reached, but a way to operate your business over time. MedAbiliti can provide the software, the system audit, and the training needed to ensure your organization is meeting the HIPAA requirements. Please contact us at hipaa@medabiliti.com for more information.

About MedAbiliti

Medabiliti designs, develops, and deploys information solutions for the health care industry. MedAbiliti's approach to development is one that applies international quality assurance methods to application access, data analysis, and process efficiency. MedAbiliti's commitment to structured software methodology, software engineering practices, quality standards for data deployment/access, confidentiality and security of sensitive data, and commitment to customer-client management, position it as an emerging industry leader in medical software design and implementation.