Patient Privacy Investigations and Levels of Violation: Difference between revisions

No edit summary
 
Line 102: Line 102:
Factors that may be considered in determining appropriate corrective action include, but are not limited to:
Factors that may be considered in determining appropriate corrective action include, but are not limited to:


#Whether the Workforce member’s conduct appears to be intentional or unintentional or inadvertant;
#Whether the Workforce member’s conduct appears to be intentional or unintentional or inadvertent;
#The magnitude of the violation, including the number of patients and the volume of PHI accessed or disclosed, keeping in mind that intentional unauthorized access, use or disclosure of even one patient’s PHI is an unacceptable breach to the affected patient;
#The magnitude of the violation, including the number of patients and the volume of PHI accessed or disclosed, keeping in mind that intentional unauthorized access, use or disclosure of even one patient’s PHI is an unacceptable breach to the affected patient;
#Whether the conduct included an element of malice, or desire for personal or financial gain;
#Whether the conduct included an element of malice, or desire for personal or financial gain;
Line 147: Line 147:
*Contact [https://support.security.unmc.edu Office of Information Security] or 402-559-2545.
*Contact [https://support.security.unmc.edu Office of Information Security] or 402-559-2545.
*Contact [https://www.unmc.edu/human-resources/about/contact-hr.html Human Resources, Employee Relations], 402-559-7394, 402-559-8534 or 402-559-4371
*Contact [https://www.unmc.edu/human-resources/about/contact-hr.html Human Resources, Employee Relations], 402-559-7394, 402-559-8534 or 402-559-4371
*Contact Legal Services at _______________________  phone # and email(s)  (should this be UNMC or Nebraska medicine contacts? or both?)
*Contact Legal Services at [mailto:Contracts@nebraskamed.com contracts@nebraskamed.com]
*UNMC Policy No. 1098, [https://wiki.unmc.edu/index.php/Corrective/Disciplinary_Action Corrective and Disciplinary Action]
*UNMC Policy No. 1098, [https://wiki.unmc.edu/index.php/Corrective/Disciplinary_Action Corrective and Disciplinary Action]
*UNMC Policy No. 6045, [https://wiki.unmc.edu/index.php/Privacy/Confidentiality Privacy, Confidentiality and Security of Patient and Proprietary Information]
*UNMC Policy No. 6045, [https://wiki.unmc.edu/index.php/Privacy/Confidentiality Privacy, Confidentiality and Security of Patient and Proprietary Information]
Line 157: Line 157:
*[https://www.cdc.gov/phlp/publications/topic/hipaa.html#security-rule HIPAA Security Rule]
*[https://www.cdc.gov/phlp/publications/topic/hipaa.html#security-rule HIPAA Security Rule]


This page maintained by [mailto:dpanowic@unmc.edu dkp].
This page maintained by [mailto:mhurlocker@unmc.edu mh].