HIPAA: 5. The Privacy Rule - Authorizations
7 min! Run Time
Employees
only
Provided
What you'll learn
Skills covered in this course
Description
HIPAA is built on two main components: the Privacy Rule and the Security Rule. This course zeroes in on the authorizations portion of the Privacy Rule, with a practical summary for the average employee.
What this course covers:
- What a HIPAA authorization is
- When patient authorization is required to use or disclose PHI
- What a valid authorization must include
- Everyday situations where authorizations apply
Note: this course summarizes the authorizations portion, not the entire Privacy Rule. Ideal for frontline staff.
System Requirements
See System Requirements in the Coggno Knowledge Base
Author
Frequently Asked Questions
A patient's documented permission to use or disclose their protected health information for a purpose the Privacy Rule does not otherwise allow.
Whenever the intended use falls outside the permitted categories. Part five sets out where the line sits and how to recognise a request that needs authorization first.
Specific elements must be present. An incomplete or vague authorization does not provide cover, which is a common and avoidable source of violations.
The average employee rather than the compliance officer. It gives a practical summary of the authorizations portion of the Privacy Rule for people applying it day to day.
Authorizations and disclosures are closely linked. Part five covers permission; part six covers what happens when information actually moves.