Labs Must Report Privacy Breaches of 500 or More to the Media
Call it HITECH collides with HIPAA! Most pathologists and lab executives know that passage of the HITECH Act was the part of 2009’s American Recovery and Reinvestment Act (also referred to as “ARRA” or the “stimulus bill”). HITECH provides incentives for the expanded use of electronic health records by physicians and other providers.
But what is lesser known is how the HITECH Act creates new legal obligations of covered entities and business associates under the Health Insurance Portability and Accountability Act of 1996 (HIPPA). These new legal mandates are designed to protect the privacy and security of the patient. They require clinical laboratories and all providers to take specific actions whenever patient privacy is breached.