Compliancy Group News

Comfort Zone Counseling Achieves HIPAA Compliance with Compliancy Group

Comfort Zone Counseling, a Jackson, MI-based mental health therapist office, has recently been confirmed as having achieved compliance with the regulatory standards of the Health Insurance Portability and Accountability Act (HIPAA) and has an effective HIPAA compliance program in place to ensure continued compliance.

Mental health therapy providers are required to comply with the standards and implementation specifications of the HIPAA Privacy Rule, Security Rule, Breach Notification Rule, Omnibus Rule, and the HITECH Act. To ensure no aspect of compliance was overlooked, Comfort Zone Counseling partnered with Compliancy Group and followed its proven HIPAA compliance methodology, tracking progress on its compliance journey using Compliancy Group’s proprietary HIPAA compliance tracking software solution, The Guard.

After completing a six-stage risk analysis and remediation process, Comfort Zone Counseling’s good faith effort to achieve compliance was assessed by Compliancy Group’s HIPAA compliance experts, who determined that Comfort Zone Counseling had achieved HIPAA compliance and awarded the company the HIPAA Seal of Compliance.

The HIPAA Seal of Compliance is issued to organizations that have implemented an effective HIPAA compliance program through the use of The Guard. The HIPAA Seal of Compliance demonstrates to current and future patients Comfort Zone Counseling is committed to ensuring the privacy and security of any protected health information that is collected, received, maintained, and transmitted. “At Comfort Zone Counseling we will do everything to make sure your PHI is well protected.”

The post Comfort Zone Counseling Achieves HIPAA Compliance with Compliancy Group appeared first on HIPAA Journal.

Estipona Group Awarded Compliancy Group’s Seal of HIPAA Compliance

The Nevada-based creative marketing agency, Estipona Group, has achieved compliance with the federally mandated standards of the Health Insurance Portability and Accountability Act (HIPAA) and has demonstrated its commitment to protecting the privacy and security of its clients’ patient health information.

Estipona Group works extensively in healthcare and the company’s marketing work often has a direct impact on people’s lives and health. The agency currently represents Immunize Nevada, a statewide agency working to protect individuals from diseases and illnesses prevented by vaccines, and Nevada Health Centers, a federally qualified health center that provides access to quality healthcare services throughout Nevada. As a HIPAA-compliant agency, Estipona Group works closely with public health partners to ensure all communications are sound, ethical, and lawful.

Estipona Group partnered with Compliancy Group to ensure the agency was fully compliant with all provisions and implementation specifications of HIPAA and the HITECH Act and used Compliancy Group’s proven HIPAA methodology, which includes a 6-stage risk analysis and remediation process. After completing that process and having the company’s compliance plan assessed, Compliancy Group awarded the HIPAA Seal of Compliance to the marketing agency.

“HIPAA is the highest standard of client data protection,” said Estipona Group president and CEO, Edward Estipona. “We understand the importance of protecting our clients’ sensitive information, and earning this seal ensures we have the systems and structures in place to ensure the safety of their patient data.”

The HIPAA Seal of Compliance confirms the agency has implemented comprehensive policies and procedures to ensure the confidentiality and integrity of client and patient data and is committed to ensuring its healthcare clients’ data are safe and secure. In completing this rigorous compliance process, Estipona Group can now provide enhanced services as knowledgeable HIPAA-compliant marketers.

The HIPAA Seal of Compliance demonstrates Estipona Group has implemented and is committed to maintaining:

  • Administrative, technical, and physical safeguards of the HIPAA Security Rule.
  • Remediation plans designed to properly adjust any gaps discovered in audits of the agency.
  • Inclusion of policies and procedures that will address HIPAA regulatory compliance.
  • A training program for all employees that demonstrates policy and procedural understanding and compliance.
  • An audit of the agency’s documentation.
  • The completion and management of a Business Associate Agreement.
  • A comprehensive procedure for incident management in the event of a data breach or potential violation of HIPAA compliance.

“Achieving HIPAA compliance was complicated but well worth the agency’s investment of time and infrastructure adjustments,” explains Estipona. “Protecting personal data is one of the great challenges of the digital age and we are pleased that now our clients will have the highest assurance that we will be good stewards of their patients’ sensitive health information in their marketing communications.”

The post Estipona Group Awarded Compliancy Group’s Seal of HIPAA Compliance appeared first on HIPAA Journal.

TLC Child & Family Services Confirmed as HIPAA Compliant

TLC Child & Family Services, a non-profit provider of quality foster care and adoption services, residential-based services, special education services, and transition-age youth housing and counseling in Northern California, recently partnered with Compliancy Group to ensure that the organization is fully compliant with the Rules of the Health Insurance Portability and Accountability Act (HIPAA).

Providers of healthcare services are required to be HIPAA compliant, and this is especially important for organizations that serve vulnerable populations. TLC Child & Family Services was already compliant with the HIPAA Rules but chose to go above and beyond the letter of the law and achieve HIPAA compliance certification by completing Compliancy Group’s rigorous 6-Stage HIPAA Risk Analysis and remediation process.

That process involves a rigorous evaluation of policies, procedures, and practices related to patient data privacy and security through a 6-stage implementation program, which includes a comprehensive, organization-wide risk analysis and remediation process and a review of all administrative, technical, and physical safeguards. Once that process is completed, Compliancy Group’s HIPAA subject matter experts fully assess compliance with the HIPAA Rules and the HITECH Act.

Compliancy Group has recently confirmed that TLC Child & Family Services is fully compliant with the HIPAA Privacy, Security, Breach Notification, and Omnibus Rules and the requirements of the HITECH Act and awarded TLC Child & Family Services the HIPAA Seal of Compliance. The HIPAA Seal of Compliance demonstrates to past, present, and future clients that the organization is fully compliant with the HIPAA Rules, has an effective HIPAA compliance program in place, and is fully committed to ensuring the privacy and security of client data.

“As an agency, we are committed to a standard of excellence. This certification ensures that all our staff, policies, and procedures are aligned with our commitment to providing the best possible services to our clients, and adherence to regulations” said Karen Bergman, TLC’s Chief Operations Officer.

The post TLC Child & Family Services Confirmed as HIPAA Compliant appeared first on HIPAA Journal.

Webinar Today 06/15: From Panicked to Prepared: How to Reply to a HIPAA Audit

The Department of Health and Human Services’ Office for Civil Rights (OCR) has conducted two rounds of HIPAA audits on covered entities and business associates to assess compliance with the HIPAA Rules. OCR investigates all breaches of 500 or more records to determine if they were caused by noncompliance, and may also initiate compliance reviews for smaller breaches and in response to complaints about potential HIPAA violations. If you are contacted by OCR and told you have been selected for an audit or compliance review, it is natural to be concerned but there is no need to panic if you are prepared.

On April 27, 2023, Compliancy Group is hosting a webinar where attendees will learn about the ins and outs of OCR audits and how you should respond if you are selected for an audit or compliance review. Compliancy Group will take you through the steps you need to take to ensure everything is aligned and fully documented, which will allow you to respond quickly and efficiently to any document requests and will ensure you are properly prepared for an on-site inspection. During the webinar, Compliancy Group will provide real-life examples of audits and, by the end of the webinar, you should have peace of mind that if you are ever audited for HIPAA compliance, you will be well prepared and your business will be protected.

The webinar will be hosted by Liam Degnan, Director of Strategic Initiatives, Compliancy Group. Liam Degnan has 8+ years of experience in risk management, SaaS sales, and regulatory compliance in the healthcare space. As Compliancy Group’s Director of Strategic Initiatives, he advises healthcare decision-makers, behavioral health providers, and HIPAA business associates and speaks on a variety of platforms and topics, with an emphasis on simplifying the complex HIPAA regulations.

Webinar: From Panicked to Prepared: How to Reply to a HIPAA Audit

Thursday, June 15, 2023

11:00 a.m. PT ¦ 12:00 p.m. MT ¦ 1:00 pm CT ¦ 2:00 pm ET

 

The post Webinar Today 06/15: From Panicked to Prepared: How to Reply to a HIPAA Audit appeared first on HIPAA Journal.

EDBS Dental Billing Solutions Verified as HIPAA Compliant

Compliancy Group has recently verified that EDBS Dental Billing Solutions is fully compliant with all appropriate provisions of the Health Insurance Portability and Accountability Act (HIPAA) Rules and the HITECH Act.

EDBS Dental Billing Solutions provides billing services to dental practices in Washington DC, Maryland, and Virginia, and across the United States. The company’s remote dental insurance and claims billing, dental patient billing, and dental insurance verifications solutions ease the burden on dental front office staff by helping them deal with the intricacies of insurance billing and the challenging task of collecting patient bills.

The services provided naturally require EDBS Dental Billing Solutions to come into contact with the protected health information of dental patients, which makes EDBS Dental Billing Solutions a business associate under HIPAA. Achieving and maintaining HIPAA compliance can be challenging for business associates, which is why many choose to work with a third-party compliance company. By partnering with compliance experts they can ensure that no requirements of HIPAA are overlooked.

EDBS Dental Billing Solutions partnered with Compliancy Group and used the company’s proprietary HIPAA methodology to ensure complete compliance, tracking progress on the compliance journey by using Compliancy Group’s compliance software – The Guard. Through the use of the software, EDBS Dental Billing Solutions was able to methodically ensure complete compliance with all appropriate provisions and implementation specifications of the HIPAA Privacy, Security, Breach Notification, and Omnibus Rules, and the HITECH Act.

After completing Compliancy Group’s Six Stage Implementation Program, the good faith effort of EDBS Dental Billing Solutions to achieve HIPAA compliance was assessed by Compliancy Group’s HIPAA compliance experts, who confirmed that EDBS Dental Billing Solutions was fully compliant with the HIPAA Rules and had implemented an effective HIPAA program to ensure future compliance. EDBS Dental Billing Solutions has now been awarded Compliancy Group’s HIPAA Seal of Compliance, which demonstrates to current and future clients that the company takes HIPAA compliance seriously and is committed to ensuring the privacy and security of the electronic protected health information of its clients.

“Since the nature of our business being exclusively remote, we take HIPAA compliance very seriously. With the help of Compliancy Group, we are able to take steps to fortify our systems to protect PHI information and familiarize each employee about HIPAA and how we can further safeguard PHI data,” said EDBS Dental Billing Solutions founder, Goldie De Leon.

The post EDBS Dental Billing Solutions Verified as HIPAA Compliant appeared first on HIPAA Journal.

Midwest IT Systems Confirmed as HIPAA Compliant

Midwest IT Systems, a Blue Earth, MN-based provider of managed IT services, data backup and recovery, VoIP and cybersecurity services to businesses in Southern Minnesota and Northern Iowa, has recently demonstrated compliance with the regulatory standards of the Health Insurance Portability and Accountability Act (HIPAA). Midwest IT Systems was formed in 2001 by former CIA Office of Security staff member, Allen Aukes, and helps small- to medium-sized businesses by managing their day-to-day IT requirements and securing their networks against the full range of cyber threats.

Companies that provide managed IT services to healthcare organizations are classed as business associates under HIPAA, as the provision of those services may involve contact with electronic protected health information (ePHI). As such, managed IT service providers must be HIPAA-compliant. To ensure full compliance with the regulatory standards of HIPAA and the HITECH Act, Midwest IT Systems partnered with Compliancy Group and used its proprietary HIPAA compliance process and tracked progress using Compliancy Group’s HIPAA compliance software solution – The Guard.

After following Compliancy Group’s methodology, which includes a 6-stage risk analysis and remediation process, Midwest IT Systems Inc’s good faith effort to achieve HIPAA compliance was assessed by Compliancy Group’s HIPAA Experts, and the company was confirmed to be compliant with the necessary regulatory standards outlined in the HIPAA Privacy Rule, Security Rule, Breach Notification Rule, Omnibus Rule, and the HITECH Act, which saw Midwest IT Systems awarded Compiancy Group’s HIPAA Seal of Compliance.

The HIPAA Seal of Compliance demonstrates to current and future healthcare clients that Midwest IT Systems has implemented an effective HIPAA compliance program and is committed to ensuring the privacy and security of ePHI. “Our clients can trust their IT partner not only understands HIPAA, but has verified and validated our own HIPAA Compliance through Compliancy Group. We are thankful for what Compliancy Group delivers,” said Aukes.

The post Midwest IT Systems Confirmed as HIPAA Compliant appeared first on HIPAA Journal.

SendQuick Confirmed as HIPAA Compliant

Compliancy Group has confirmed that the secure mobile messaging solution provider, SendQuick, has demonstrated compliance with the federally mandated standards of the Health Insurance Portability and Accountability Act (HIPAA), and has been awarded the HIPAA Seal of Compliance.

SendQuick’s mobile messaging solutions, which include IT alerts & notifications, secure remote access via multi-factor authentication, business process automation, enterprise messaging broadcast, and automated call tree systems, have been adopted by corporations in more than 40 countries, including many Fortune 500 firms in the banking, finance, insurance, manufacturing, retail, government, education, and healthcare sectors.

Providers of software and communications solutions that come into contact with protected health information are classed as business associates under HIPAA. As such, they must ensure that their products incorporate safeguards to ensure the confidentiality, integrity, and availability of PHI and that they are fully compliant with all appropriate standards and implementation specifications of the HIPAA Rules.

To ensure full compliance with HIPAA and HITECH Act standards and implementation specifications, Singapore-based SendQuick Pte Ltd partnered with Compliancy Group and used the company’s proven HIPAA compliance methodology, which includes a 6-stage HIPAA risk analysis and remediation process. SendQuick was able to track progress on its compliance journey using Compliancy Group’s proprietary software solution – The Guard.

“We take the protection of our patients’ health information very seriously,” said SendQuick CEO, Mr. JS Wong. “Achieving HIPAA compliance was a top priority for us as it shows our professionalism and integrity as a business, and we are thrilled to have partnered with Compliancy Group to make it happen.”

After following Compliancy Group’s methodology, Compliancy Group’s HIPAA compliance subject matter experts assessed SendQuick’s good faith effort to achieve HIPAA compliance and confirmed the company had satisfied its obligations under the HIPAA Privacy Rule, HIPAA Security Rule, HIPAA Breach Notification Rule, HIPAA Omnibus Rule, and HITECH Act, and awarded SendQuick the HIPAA Seal of Compliance.

The HIPAA Seal of Compliance demonstrates to current and future healthcare clients that SendQuick has achieved HIPAA compliance, has implemented an effective HIPAA compliance program to ensure continued compliance, and is committed to ensuring the privacy and security of PHI.

“The Guard was instrumental in guiding us through the compliance process, and we now have the peace of mind that comes with knowing we are doing everything we can to protect our clients and their patients’ information,” said Mr. Wong. “Our commitment to protecting patient health information and our willingness to invest in the necessary resources to achieve compliance is a testament to our dedication to our customers and their patients. Organizations and businesses take HIPAA compliance seriously and aim to work with a trusted partner like SendQuick who has achieved HIPAA compliance in order to maintain compliance with HIPAA regulations.”

The post SendQuick Confirmed as HIPAA Compliant appeared first on HIPAA Journal.

Rehmann Confirmed as HIPAA Compliant

The Troy, MI-based fully integrated professional advisory and asset management firm, Rehmann, has recently been confirmed as being in full compliance with the federally mandated standards of the Health Insurance Portability and Accountability Act (HIPAA) and the HITECH Act.

As a service provider to healthcare organizations, Rehmann is classed as a business associate and is therefore required to comply with the HIPAA Rules. The HIPAA standards govern the privacy, security, and integrity of sensitive healthcare data called Protected Health Information (PHI) and any individually identifiable healthcare-related information. Any entity within Rehmann that is covered under HIPAA makes the firm responsible for all data that contains PHI.

To ensure full compliance with the standards and implementation specifications of the HIPAA Privacy Rule, Security Rule, Breach Notification Rule, Omnibus Rule, and the HITECH Act, Rehmann partnered with Compliancy Group.

Rehmann used Compliancy Group’s proven compliance methodology, which includes a 6-stage risk analysis and remediation process and annual audits of policies and procedures, with progress tracked using Compliancy Group’s proprietary HIPAA compliance software – The Guard. After successfully completing that process and all required 2022 audits, Rehmann was awarded the HIPAA Seal of Compliance.

Clients and associates are becoming more aware of HIPAA compliance requirements and how the regulation protects their personal information. Forward-thinking providers like Rehmann choose the Seal of Compliance to differentiate their services and demonstrate full compliance with the HIPAA Rules to current and future clients.

“The HIPAA Seal of Compliance recognition shows our associates and clients that as a firm we understand the importance of safeguarding their information,” said Stacie Kwaiser, CEO of Rehmann. “Trust is an integral value at Rehmann, and a distinguished award such as this recognizes our commitment to protecting confidential information.”

The post Rehmann Confirmed as HIPAA Compliant appeared first on HIPAA Journal.

ADEC Innovations Healthcare, Inc. Confirmed as HIPAA Compliant

ADEC Innovations Healthcare has recently been confirmed as being in full compliance with all appropriate provisions of the HIPAA Privacy, Security, Breach Notification, and Omnibus Rules, and the HITECH Act.

ADEC Innovations Healthcare is a service provider to the healthcare industry, providing a range of services to reduce the administrative burden on healthcare organizations, including digital health management, revenue cycle management, clinical management, pharmacy benefits management, payer services, and back-office services. The company has extensive experience within the healthcare industry and leverages technology, data, expertise, and human ingenuity to deliver healthcare solutions that meet clients’ bespoke needs.

Providing these services often requires access to protected health information, which means ADEC Innovations Healthcare is classed as a business associate under HIPAA. ADEC Innovations Healthcare was launched in 2015 and has been HIPAA-compliant since that date; however, the company chose to partner with Compliancy Group to ensure that no aspect of the HIPAA Rules had been overlooked and used Compliancy Group’s HIPAA compliance methodology to attain the HIPAA Seal of Compliance.

Compliancy Group’s methodology has been heavily vetted against federal regulations, meets NIST requirements, and includes a 6-stage risk analysis and remediation process. Clients track their compliance journey using Compliancy Group’s proprietary software solution – The Guard – and after completion of that process, clients’ HIPAA compliance programs are assessed by Compliancy Group’s HIPAA subject matter experts and Compliance Coaches.  Clients that have successfully completed the process are awarded the HIPAA Seal of Compliance, with demonstrates they have implemented an effective HIPAA compliance program. The HIPAA Seal of Compliance also helps business associates differentiate their services and demonstrate their commitment to HIPAA compliance to current and future clients.

“ADEC Innovations Healthcare is committed to upholding the highest information security standards and attaining the HIPAA Seal of Compliance attests to this. Our healthcare clients trust us to process data safely, we take this seriously, and continuously enhance practices to meet and exceed clients’ needs and expectations,” said James Donovan, CEO, ADEC Innovations. “HIPAA compliance helped our organization to improve the management and protection of health information as regards people, processes, and technology. The Compliancy Group provided a straightforward approach to achieving the HIPAA Seal of Compliance through its GUARD system – a one-stop shop for document management, asset registration, incident management, training, audit checklist, and remediation process.”

In addition to receiving confirmation of HIPAA compliance, ADEC Innovations Healthcare also holds three ISO certifications: ISO 9001:2015: ISO and Quality Management; ISO 14001:2015: Environmental management systems; and ISO 27001:2013: Information Security Management, and is in the process of achieving HITRUST certification.

The post ADEC Innovations Healthcare, Inc. Confirmed as HIPAA Compliant appeared first on HIPAA Journal.