HIPAA Risk Management Implementation Policy Template
HIPAA Risk Management Implementation Policy Template
This HIPAA Risk Management Implementation Policy Template serves as a solid foundation for businesses seeking to protect confidential healthcare information and maintain compliance with Sec. 164.306(a). The template ensures the business is using security measures sufficient to reduce risks and vulnerabilities to an appropriate level.
The template includes a comprehensive set of best-practice policy standards for HIPAA compliance, based on industry standards. It covers ePHI management activities such as risk assessment methodology, incident response procedures, data encryption requirements and contingency planning instructions. The checklist also assists with assessing whether internal departments are following regulatory guidelines related to safeguarding health information in electronic form.
SAMPLE TEXT: ENTITY NAME has adopted this Risk Management Policy in order to recognize the requirement to comply with the Health Insurance Portability and Accountability Act (“HIPAA”), as amended by the Health Information Technology for Economic and Clinical Health (“HITECH”) Act of 2009 (Title XIII of division A and Title IV of division B of the American Recovery and Reinvestment Act “ARRA”) and the HIPAA Omnibus Final Rule (Effective Date: March 26, 2013). We acknowledge that full compliance with the HIPAA Final Rule is required by or before September 23, 2013.
ENTITY NAME hereby acknowledges our duty and responsibility to protect the privacy and security of Individually Identifiable Health Information (“IIHI”) generally, and Protected Health Information (“PHI”) as defined in the HIPAA Regulations, under the regulations implementing HIPAA, other federal and state laws protecting the confidentiality of personal information, and under principles of general and professional ethics. We also acknowledge our duty and responsibility to support and facilitate the timely and unimpeded flow of health information for lawful and appropriate purposes.
Each of our HIPAA templates are in Microsoft Word (.docx) format for easy editing. Each template is guaranteed to be fully HIPAA & HITECH compliant when properly implemented.