
Our clients are confident in knowing that their
protected health information (PHI) is secure with Principal
Healthcare, Inc. Our Compliance Plan meets and exceeds the
expectations and standards set forth by The Office of Inspector
General of the Department of Health and Human Services and The
Health Insurance Portability and Accountability Act of 1996 (HIPAA).
Principal Healthcare, Inc. has established a compliance plan to
ensure that quality patient care, privacy standards, and HIPAA
compliance occurs within our institution in a manner that fully
complies with all applicable state and federal laws and regulations.
This plan is intended to provide a framework for individual or
departmental compliance efforts and to apply generally to all
Principal Healthcare personnel and functions. Detailed plans, codes
of conduct, or manuals covering compliance must be submitted to and
approved by the Compliance Officer.
Based on the definition put forth by the Office of Civil Rights
(OCR) “Summary of the HIPAA Privacy Rule” (http://www.hhs.gov/ocr/privacysummary.rtf),
Principal Healthcare meets the criteria of a Business Associate. As
required by the OCR, Principal Healthcare enters into any and all
business agreements with a provider (covered entity) only after both
parties having signed a Business Associate Contract in which “a
covered entity must impose specified written safeguards on the
individually identifiable health information used or disclosed by
its business associates.”
Principal Healthcare has taken all the necessary steps to insure the
protection of personal health information (PHI). All records –
paper and digital – are properly secured with no PHI accessible to
non-employees of the company. Records – paper and digital – not
retained are properly disposed of via data shredding. Network data
cannot be accessed without proper login and password. Server
activity is logged and monitored. PHI is not divulged by employees
of the company for any reason other than the filing of paper or
electronic claims. Any digital information transmitted via the
Internet is done so utilizing secure encryption technology.
Principal Healthcare has developed a strict Compliance Plan with
regards to HIPAA regulations.

|
 |
|
|