HIPAA: 3. HITECH - Understanding Business Associates
7 min! Run Time
Employees
only
Provided
What you'll learn
Skills covered in this course
Description
HITECH, part of 2009 legislation, was designed to encourage electronic health records nationwide — and it further refined HIPAA by clarifying the roles of the business associates of covered entities.
What this course covers:
- What a business associate is under HIPAA
- How HITECH expanded their responsibilities
- Why business associates must be HIPAA compliant
- How covered entities and associates share PHI duties
Built for vendors, contractors, and partners who handle PHI on behalf of covered entities.
System Requirements
See System Requirements in the Coggno Knowledge Base
Author
Frequently Asked Questions
An organisation that handles protected health information on behalf of a covered entity — billing services, IT providers, cloud hosts, consultants and similar vendors.
It clarified and expanded their responsibilities, moving them from parties bound mainly by contract to parties directly accountable under the regulation itself.
Because it determines who carries liability when PHI is mishandled. A covered entity cannot contract its obligations away, and a vendor cannot assume they sit outside the rules.
When their work involves creating, receiving, maintaining or transmitting PHI. Part three works through the relationships that meet that test and the ones that do not.
The 2009 legislation encouraging nationwide electronic health records made vendor involvement far more common, which exposed how loosely the original rules defined these relationships.