Compliance

Our clients are confident in knowing that their protected health information (PHI) is secure with Principal Healthcare, Inc. Our Compliance Plan meets and exceeds the expectations and standards set forth by The Office of Inspector General of the Department of Health and Human Services and The Health Insurance Portability and Accountability Act of 1996 (HIPAA).

Principal Healthcare, Inc. has established a compliance plan to ensure that quality patient care, privacy standards, and HIPAA compliance occurs within our institution in a manner that fully complies with all applicable state and federal laws and regulations.

This plan is intended to provide a framework for individual or departmental compliance efforts and to apply generally to all Principal Healthcare personnel and functions. Detailed plans, codes of conduct, or manuals covering compliance must be submitted to and approved by the Compliance Officer.

Based on the definition put forth by the Office of Civil Rights (OCR) “Summary of the HIPAA Privacy Rule” (http://www.hhs.gov/ocr/privacysummary.rtf), Principal Healthcare meets the criteria of a Business Associate. As required by the OCR, Principal Healthcare enters into any and all business agreements with a provider (covered entity) only after both parties having signed a Business Associate Contract in which “a covered entity must impose specified written safeguards on the individually identifiable health information used or disclosed by its business associates.”

Principal Healthcare has taken all the necessary steps to insure the protection of personal health information (PHI). All records – paper and digital – are properly secured with no PHI accessible to non-employees of the company. Records – paper and digital – not retained are properly disposed of via data shredding. Network data cannot be accessed without proper login and password. Server activity is logged and monitored. PHI is not divulged by employees of the company for any reason other than the filing of paper or electronic claims. Any digital information transmitted via the Internet is done so utilizing secure encryption technology. Principal Healthcare has developed a strict Compliance Plan with regards to HIPAA regulations.