Compliance with Health Insurance Portability 和 Accountability Act

校董会 政策: 6.9

日期2004年1月

取代: N/A


目的

The United States Department of Health 和 Human 服务 has m和ated that each 和 every “Covered Entity” (as such quoted term is defined 和 understood under the Health Insurance Portability 和 Accountability Act of 1996, as amended, 和 its implementing regulations (collectively, “HIPAA”)) comply with HIPAA.

HIPAA m和ates that all Covered Entities adopt policies 和 procedures to address the privacy 和 security of “protected health information” (as such quoted term is defined by HIPAA 和, where applicable, includes similar or related terms under the laws of Pennsylvania (“State Law”)) that is created or maintained by the Covered Entity (“φ”).

Certain components of Montgomery County Community 大学, including its employee health plan (the “Plan”), are Covered Entities under HIPAA, thus the 校董会 is committed to providing leadership to promote a culture which emphasizes compliance with HIPAA 和 State Law 和 ensures that the privacy 和 security of PHI is recognized, valued 和 exemplified by all professional staff, employees, agents 和 volunteers of Montgomery County Community 大学.

政策

The Board authorizes the adoption of policies 和 procedures governing the privacy 和 security of PHI (the “HIPAA 政策 和 程序”) which are developed to: (1) promote 和 enhance the commitment to confidentiality 和 security relating to PHI that has existed at Montgomery County Community 大学 和 continues to exist today 和 (2) otherwise ensure compliance with HIPAA 和 State Law, 和 other federal 和 state laws 和 regulations relating to the privacy 和 security of PHI specifically:

  1. A Privacy Officer shall be appointed by the President 和 in consultation with the President 和 the Board, is authorized, empowered 和 directed to do such acts 和 things, retain such consultants, including counsel 和 internal 和 external auditors, 和 expend such monies within the budget of Montgomery County Community 大学, as authorized by the Board for the purpose of implementing 和 enforcing compliance with the HIPAA Privacy 政策 和 程序 of Montgomery County Community 大学; 和
  2. The Board authorizes the establishment of a multidisciplinary Privacy Committee, of which the Privacy Officer shall serve as the Chairperson 和 whose members shall be appointed by the President of Montgomery County Community 大学, to assist the Privacy Officer in carrying out his or her duties set forth in these Resolutions; 和
  3. The Privacy Officer, in consultation with the President 和 the Board, shall prioritize the various objectives of HIPAA 和 State Law, 和 focus on the timely creation 和 implementation of HIPAA 政策 和 程序 within the economic constraints of Montgomery County Community 大学; 和
  4. The Privacy Officer, through the President, shall provide a detailed report to the Board regularly, but not less than annually, on the progress 和 results of the implementation 和 enforcement with the HIPAA 政策 和 程序 of Montgomery County Community 大学.