Skip to main content

The State HIE Privacy and Security Program Information Notice

On March 22, ONC issued important privacy and security guidance to State Designated Entities.  It addresses concerns from State leaders and other stakeholders that health information exchange efforts have been hampered and slowed by the lack of consistent approaches to core privacy and security issues.  The Program Information Notice (PIN) provides clear national guidance.

It covers eight Core Domains
1. Individual access
2. Correction
3. Openness and transparency
4. Individual choice
5. Collection, use and disclosure limitation
6. Data quality and integrity
7. Safeguards
8. Accountability

Here's a summary of the highlights:

Access and Correction
Where HIE entities store, assemble or aggregate individually identifiable health information (IIHI), such as longitudinal patient records with data from multiple providers, HIE entities should make concrete plans to give patients electronic access to their compiled IIHI and develop clearly defined processes (1) for individuals to request corrections to their IIHI and (2) to resolve disputes about information accuracy and document when requests are denied.

Openness and transparency
Where HIE entities store, assemble or aggregate IIHI, individuals should have the ability to request and review documentation to determine who has accessed their information or to whom it has been disclosed.

Individual Choice
Push Model
Where HIE entities serve solely as information conduits for directed exchange of IIHI and do not access IIHI or use IIHI beyond what is required to encrypt and route it, patient choice is not required beyond existing law. Such sharing of IIHI from one health care provider directly to another is currently within patient expectations.

Pull Model
Where HIE entities store, assemble or aggregate IIHI beyond what is required for an initial directed transaction, HIE entities should ensure individuals have meaningful choice regarding whether their IIHI may be exchanged through the HIE entity.   Both opt-in and opt-out models can be acceptable means of obtaining patient choice provided that choice is meaningful

Use and Disclosure Limitation
In principle, a health care provider should only access the minimum amount of information needed for treatment of the patient.

Data quality and integrity
Where HIE entities store, assemble or aggregate IIHI, they should implement strategies and approaches to ensure the data exchanged are complete and accurate and that patients are correctly matched with their data.

Safeguards
HIE entities should conduct a thorough assessment of risks and vulnerabilities.

Accountability
HIE entities should ensure appropriate monitoring mechanisms are in place to report and mitigate non-adherence to policies and breaches.

In my view, these are very reasonable principles.   The use of "shall" and "should" in these guidelines is important to note.   Shall means your must and should means it's a good idea to try.   Should is used for more aspirational goals that need additional technology, standards, and policies.

Massachusetts goes live with its statewide HIE this Fall, so it was very helpful that no new regulations are required by the PIN for Push transport models.    The new guidance is completely aligned with the Strategic and Operating Plan we already have in process to replace existing paper-based workflows with electronic workflows leveraging current consent models.

Comments

Popular posts from this blog

clip on magnetic sunglasses visit here

Save with prescription glasses and sunglasses. Prescription eyeglasses with magnetic clip on sunglasses. A wide selection of colors and styles for every budget! -GlassesPoint. Prescription eyeglasses with magnetic clip on sunglasses. A wide selection of colors and styles for every budget! Free magnetic clip on with every pair of glasses.  The operator should contact lens Plano glasses a few days of Sun and Rx on the other person. Many people choose single vision lenses, designed for a specific use, such as prescription sunglasses. Clip-ons magnetic magnetic clip ons often come with their prescription glasses frames. Prescription glasses Goggles4u dollars from 29.99 with free shipping. Takumi neodium magnet glass features recipes that are light, strong and in. The combination of some normal prescription glasses and a pair of polarized glasses that glare-resistant to outdoor activities. clip on magnetic sunglasses visit here

t shirt maker visit here

Who doesn't love the Tunnock tea cake? Crea mola foam? Pride of Scotland only bread ... with square sausage sandwiched in the segment of Sunday morning? I would love to meet your custom tshirt supplier and I just discovered jumping stable in Glasgow's Central St. Gillian Kyle is a young artist in Glasgow who develop custom t-shirts and other products that are worth a look. t shirt maker visit here

t shirt maker cheap online visit here

Design your own t-shirts online and custom shirt maker online Exclusive collection for women's clothing in the West at http://t-shirt-Maker.Page.TL/, photo t-shirts in India, send a photo t-shirt to write India slogan t-shirts, custom t-shirts online, order photo t-shirts, printed t-shirts online.    t shirt maker cheap online visit here