Compliancy Group News

RabbitSign Achieves HIPAA Compliance for its Free e-Signing Solution

RabbitSign, a Palo Alto, CA-based provider of a free-to-use, unlimited e-signing solution, has been assessed by Compliancy Group’s HIPAA compliance experts who determined the solution is compliant with the HIPAA Rules.

RabbitSign was devised and developed during the COVID-19 pandemic as a zero-cost e-signing solution for businesses, non-profits, and government entities, with the company providing the solution for the greater good rather than to maximize profits.

All software solutions used by HIPAA-covered entities which come into contact with the protected health information of individuals must support HIPAA compliance. Since the e-signing solution could be used in connection with electronic PHI, RabbitSign would be classed as a business associate under HIPAA if the solution was provided to HIPAA-covered entities.

To broaden its userbase and allow HIPAA-covered entities to use the solution, RabbitSign partnered with Compliancy Group and used the company’s HIPAA compliance methodology to take all the necessary steps to ensure compliance with the HIPAA Privacy, Security, Breach Notification, Omnibus Rules, and the HITECH Act. The company’s progress toward HIPAA compliance was tracked using Compliancy Group’s HIPAA compliance tracking software solution – The Guard.

Through that process, which involved a 6-stage risk analysis and remediation program, RabbitSign demonstrated its good faith effort toward HIPAA compliance, and the company was awarded the HIPAA Seal of Compliance, which demonstrates to current and future users of the solution that the company is committed to ensuring the security of ePHI and has an effective HIPAA compliance program in place.

“Free HIPAA-compliant e-signing is something our users have been asking for,” said Stanley Zhong, Founder & CEO of RabbitSign, “I founded RabbitSign in response to COVID in order to lower the cost of e-signing to zero for as many businesses, nonprofits, and government entities as possible. Providing HIPAA-compliant e-signing for free is RabbitSign’s way to help lower healthcare costs in the US. Compliancy Group has been a crucial partner in making that happen.”

“Compliancy Group congratulates RabbitSign on the successful completion of Compliancy Group’s Implementation Program, showing their good faith effort to achieve HIPAA Compliance and differentiating them in the e-signing industry,” said Charlotte Barenz, VP Implementation, Compliancy Group.

The post RabbitSign Achieves HIPAA Compliance for its Free e-Signing Solution appeared first on HIPAA Journal.

My Office Apps Confirmed as HIPAA Compliant

Compliancy Group has confirmed that My Office Apps Inc. has demonstrated its good faith effort toward HIPAA compliance and was found to have taken all the necessary steps to comply with all appropriate provisions of the Health Insurance Portability and Accountability Act (HIPAA).

My Office Apps is a developer of business improvement software and automation solutions, including the Kechie™ Enterprise Resource Planning (ERP) Software as a Service (SaaS) platform. The platform enables healthcare and medical service organizations to improve overall visibility, minimize human errors, and remain agile in a rapidly changing industry.

Since there is potential for the platform to ‘touch’ protected health information, privacy and security controls are essential. To ensure its platform was fully compliant, My Office Apps partnered with Compliancy Group and used the company’s proprietary HIPAA compliance methodology to ensure all appropriate policies and procedures, and technical, physical, and administrative safeguards had been implemented to ensure compliance with federal regulatory standards governing the security, privacy, and integrity of sensitive healthcare data. Progress on that journey was tracked using Compliancy Group’s proprietary HIPAA compliance software solution, The Guard.

After completing the 6-stage HIPAA risk analysis and remediation process, My Office Apps was assessed by Compliancy Group’s HIPAA subject matter experts and was determined to have implemented an effective HIPAA compliance program and was fully compliant with the necessary regulatory standards outlined in the HIPAA Privacy Rule, Security Rule, Breach Notification Rule, Omnibus Rule, and the HITECH Act. My Office Apps was then awarded the HIPAA Seal of Compliance, which demonstrates to current and future healthcare clients that the company is fully committed to ensuring the privacy and security of healthcare data.

“Our client’s data security and privacy are the top priority at My Office Apps,” said Mehrdad Komeili, MOA CTO & Co-Founder. “We are always looking for ways of improving our customer experience and adding HIPAA Compliance will differentiate us, and give our customers a more secure solution.”

The post My Office Apps Confirmed as HIPAA Compliant appeared first on HIPAA Journal.

Webinar Today: 12/6/2022: How to Complete Your 2022 Risk Assessment

The Health Insurance Portability and Accountability Act (HIPAA) requires HIPAA-covered entities and their business associates to complete a risk assessment. The purpose of the risk assessment is to identify and evaluate all risks and vulnerabilities to the confidentiality, integrity, and availability of electronic protected health information (ePHI). An annual risk assessment is also required by MACRA/MIPS.

Only by conducting a risk assessment is it possible to identify all risks to ePHI, evaluate them, prioritize them, and then subject them to the risk management process. Despite the importance of this element of HIPAA compliance, it is one of the most commonly cited HIPAA violations by the HHS’ Office for Civil Rights in its enforcement activities and HIPAA audits.

The risk assessment should not be viewed as a HIPAA compliance checkbox item to avoid financial penalties. Conducting a comprehensive HIPAA risk assessment will identify vulnerabilities before they are found and exploited by threat actors. Completing an annual HIPAA risk assessment will help HIPAA-regulated entities prevent costly data breaches as well as avoid regulatory fines.

To help you complete your 2022 HIPAA risk assessment and ensure you are fully compliant, Compliancy Group is hosting a webinar that provides an overview of everything you need to know about completing your 2022 risk assessment. Previous webinars have already helped many HIPAA-regulated entities ensure compliance with this important HIPAA requirement.

The 2022 deadline is approaching so covered entities must conduct their HIPAA risk assessment by the end of the year. Due to popular demand and the importance of the subject matter, this webinar is now being run again in December.

Mark the date in your calendar and register for the webinar using the form below.

2022 Deadline Approaching Fast

How to Complete your 2022 HIPAA Risk Assessment

December 7th @ 2:00 pm ET ¦ 1:00 pm CT ¦ 12:00 pm MT ¦ 11:00 am PT

 

The post Webinar Today: 12/6/2022: How to Complete Your 2022 Risk Assessment appeared first on HIPAA Journal.

Webinar Today: Aug 17, 2022: Do I Need to be HIPAA Compliant?

The Health Insurance Portability and Accountability Act (HIPAA) sets national standards to protect sensitive patient health information and to prevent that information from being disclosed without an individual’s knowledge or consent. HIPAA applies to healthcare providers, health plans, and healthcare clearinghouses, which are classed as HIPAA-covered entities.

There is a misconception that only HIPAA-covered entities need to ensure they are compliant with the HIPAA Privacy, Security, Breach Notification, and Omnibus Rules; however, HIPAA also applies to business associates of HIPAA-covered entities. A business associate is any third party that provides products or services to HIPAA-covered entities that involves contact with protected health information (PHI) in any form.

Achieving and maintaining HIPAA compliance is vital for all HIPAA-covered entities and business associates. The HHS’ Office for Civil Rights and state Attorneys General have the authority to impose financial penalties and other sanctions if non-compliance with the HIPAA Rules is discovered, and many organizations have discovered to their cost that compliance with the HIPAA Rules is not optional.

If you work in healthcare in any capacity, it is almost certain that you need to be HIPAA compliant. If you are in any doubt, Compliancy Group is hosting a webinar on August 17, 2022, to answer the question, do I need to be HIPAA compliant?

Do I Need to be HIPAA Compliant?

August 17th @ 2:00 pm ET ¦ 11:00 am PT

Host: Compliancy Group

[contact-form-7]

The post Webinar Today: Aug 17, 2022: Do I Need to be HIPAA Compliant? appeared first on HIPAA Journal.

Koshland Pharm: Custom Compounding Pharmacy Confirmed as HIPAA Compliant

Koshland Pharm: Custom Compounding Pharmacy has been confirmed as being fully compliant with the federally mandated standards of the Health Insurance Portability and Accountability Act (HIPAA).

Koshland Pharm is a San Francisco, California-based PCAB-accredited compounding pharmacy that makes customized prescription medications. The company delivers exceptional quality products with a personalized experience for patients. Koshland Pharm transmits protected health information electronically, and is therefore classed as a covered entity under HIPAA and is required to comply with the HIPAA Rules.

HIPAA is made up of a set of regulatory standards governing the security, privacy, and integrity of sensitive health care data called protected health information (PHI), which is any demographic healthcare-related information that can be used to identify a patient. Koshland Pharm chose Compliancy Group as its HIPAA compliance partner and used the company’s proprietary HIPAA methodology involving The Guard compliance tracking software.

“Because of our commitment to patient health, we chose to invest in the Guard’s HIPAA training system to make sure we are up-to-date with the absolute best practices in guaranteeing the privacy of our patients’ health information,” explained Peter Koshland, CEO, and Founder of Koshland Pharm.

After completing Compliancy Group’s Six Stage HIPAA Implementation Program, Koshland Pharm was assessed by Compliancy Group’s HIPAA subject matter experts and was confirmed as having achieved compliance with the regulatory standards of the HIPAA Privacy Rule, HIPAA Security Rule, HIPAA Breach Notification Rule, HIPAA Omnibus Rule, and the HITECH Act, and was awarded the HIPAA Seal of Compliance.

The HIPAA Seal of Compliance is issued to organizations that have implemented an effective HIPAA compliance program through the use of The Guard, and it demonstrates to current and future patients that an organization is fully compliant with the HIPAA Rules and is committed to ensuring the privacy and security of all PHI.

The post Koshland Pharm: Custom Compounding Pharmacy Confirmed as HIPAA Compliant appeared first on HIPAA Journal.

Eric G Piasick D.M.D Confirmed as HIPAA Compliant

Eric G Piasick D.M.D. has used Compliancy Group’s proprietary HIPAA methodology and has been confirmed as compliant with the HIPAA Rules and the HITECH Act.

Dental practices are covered entities under the Health Insurance Portability and Accountability Act and are required to achieve compliance with the regulatory standards of the HIPAA Privacy, Security, Omnibus, and Breach Notification Rules and the HITECH Act. Achieving and maintaining compliance can be a challenge, which is why many practices seek assistance from third-party compliance specialists.

Compliance Group is one such vendor that offers an easy-to-follow HIPAA compliance methodology and clients track progress on their compliance journeys using the company’s proprietary software solution – the Guard. “We, as a private practice, chose Compliancy Group and The Guard to take us through HIPAA compliance,” said Piasick. “It has benefited our office by keeping all of our staff aware of how secure things need to be. Being HIPAA compliant is a priority of ours because it is a priority for our patients and we as an office strive to keep our patients and their health history safe and secure.”

Compliancy Group’s HIPAA compliance program includes a 6-Stage HIPAA risk analysis and remediation process. After the successful completion of that process, Eric G Piasick D.M.D. underwent a HIPAA compliance assessment and was confirmed as having met the regulatory standards of the HIPAA Rules and HITECH and the practice was awarded the HIPAA Seal of Compliance. The HIPAA Seal of Compliance demonstrates to current and future patients that the practice is committed to ensuring the privacy and security of protected health information and has implemented an effective HIPAA compliance program to ensure continued compliance.

“Our office is proud to have completed advanced HIPAA training to help further protect our patients and learn about the importance of patient privacy to help achieve high-quality care. As our family practice continues to grow, we want to ensure the practice and patients have the best experience by having technology but also protecting patients’ health information to a high degree. We look forward to serving our patients and community with the highest oral health care possible,” said Piasick.

The post Eric G Piasick D.M.D Confirmed as HIPAA Compliant appeared first on HIPAA Journal.

All Trans Software Confirmed as HIPAA Compliant

All Trans Software Inc, a Ramsey, MN-based provider of Non-Emergency Medical Transportation (NEMT) software solutions to transportation vendors, has been confirmed as having implemented an effective HIPAA compliance program by Compliancy Group.

Vendors of software solutions that collect, process, store, or transmit protected health information (PHI) are classed as business associates under the Health Insurance Portability and Accountability Act and are required to comply with certain provisions of the HIPAA Rules, including implementing safeguards to ensure the confidentiality, integrity, and availability of PHI and controls to prevent unauthorized access to PHI.

As a provider of NEMT software solutions, All Trans Software solutions come into contact with PHI and the company is therefore required to comply with the HIPAA Rules. To ensure the company and its software solutions met and exceeded the regulatory standards of the HIPAA Rules, All Trans Software partnered with Compliancy Group.

Compliancy Group has developed an easy-to-follow HIPAA compliance methodology that HIPAA-covered entities and business associates can use to ensure they are fully compliant with all appropriate provisions of the HIPAA Rules. Progress along the compliance journey can be tracked using Compliancy Group’s proprietary software solution – The Guard.

All Trans Software used The Guard and completed Compliancy Group’s HIPAA compliance process, which includes a 6-stage risk analysis and remediation program. After successfully completing that process, Compliancy Group confirmed All Trans Software’s good faith effort toward HIPAA compliance and awarded the company the HIPAA Seal of Compliance.

The HIPAA Seal of Compliance demonstrates that All Trans Software has achieved compliance with the HIPAA Rules and has an effective HIPAA compliance program to ensure continued compliance.

The post All Trans Software Confirmed as HIPAA Compliant appeared first on HIPAA Journal.

CalystaPro EMR Verified as HIPAA Compliant

Compliancy Group has confirmed that CalystaPro EMR is compliant with the HIPAA Rules and the HITECH Act.

CalystaPro EMR is an all-in-one aesthetic-focused EMR system developed by medical aesthetic professionals. The solution includes practice schedules, zoom teleconference, premade aesthetic note templates, digital consents, online invoicing, two-way SMS, e-prescription, and many other features.

Naturally, all EMR system vendors are classed as business associates under HIPAA as their solutions are used to store electronic protected health information (ePHI). It is therefore vital for safeguards to be implemented to ensure the confidentiality, integrity, and availability of ePHI, and for all processes and practices to be fully compliant with the HIPAA Rules.

To ensure HIPAA compliance, CalystaPro EMR partnered with Compliancy Group and used its proven HIPAA methodology to meet all standards governing the security, privacy, and integrity of sensitive healthcare data. CalystaPro EMR tracked progress on the journey to compliance using Compliancy Group’s proprietary software solution, The Guard, and after completing a 6-stage risk analysis and remediation program, CalystaPro EMR was assessed by Compliancy Group’s HIPAA Subject matter experts.

CalystaPro EMR successfully demonstrated it had implemented an effective HIPAA compliance program and was fully compliant with all appropriate provisions of the HIPAA Privacy Rule, Security Rule, Breach Notification Rule, Omnibus Rule, and the HITECH Act, and was awarded the HIPAA Seal of Compliance.

The HIPAA Seal of Compliance demonstrates to current and future clients that a company has implemented an effective compliance program and is committed to ensuring the privacy and security of all healthcare data. “Clients can feel safe knowing that their information is properly protected as we strive to provide the most-well rounded Aesthetic-focused EMR,” said a spokesperson for CalystaPro EMR.

The post CalystaPro EMR Verified as HIPAA Compliant appeared first on HIPAA Journal.

Podium Confirmed as HIPAA Compliant

Podium, a Lehi, UT-based Software-as-a-Service company that provides business text messaging solutions for local businesses, has achieved HIPAA compliance with Compliancy Group.

Podium is redefining the way patients interact with their local healthcare businesses. Through Podium’s robust business text messaging platform, healthcare organizations can text patient leads and current patients, leverage bulk texting for providing important updates, collect google reviews, collect NPS feedback, and even collect payment. The platform is currently used by more than 100,000 businesses.

When vendors provide products or services to healthcare organizations that require contact with protected health information (PHI), vendors are classed as business associates under the Health Insurance Portability and Accountability Act and are required to comply with certain provisions of the HIPAA Rules. Due to the nature of the information collected and transmitted through the Podium text messaging platform, HIPAA compliance is essential. To ensure the company and platform were fully compliant with the HIPAA Rules, Podium partnered with Compliancy Group.

Podium used Compliancy Group’s HIPAA compliance methodology and tracked progress on their compliance journey through Compliancy Group’s proprietary HIPAA software solution, The Guard. After completing that process, which includes a 6-stage risk analysis and remediation process, Podium’s good faith effort toward HIPAA compliance was assessed by Compliancy Group’s HIPAA subject matter experts, and the company was awarded the HIPAA Seal of Compliance.

The HIPAA Seal of Compliance demonstrates to current and future healthcare clients that Podium has completed Compliancy Group’s implementation program and has met all of the regulatory standards of the HIPAA Privacy Rule, Security Rule, Breach Notification Rule, Omnibus Rule, and the HITECH Act that apply to HIPAA business associates, and demonstrated the company had implemented an effective ongoing program to ensure continued compliance with the HIPAA Rules.

The post Podium Confirmed as HIPAA Compliant appeared first on HIPAA Journal.