
Let’s phase it, the audits are not going away and we better be prepared for them. Based on that fact alone it should be no surprise to anyone that the Office for Civil Rights (OCR) is now launching its second phase of HIPAA audits. While the compliance requirements have not necessarily changed there are some changes in this phase that merit mentioning. I have looked at the guidance, the current regulations and the presentations from the OCR representatives and have come with at least three things to keep in mind:
- Response time is now ten days versus a month in previous cases;
- Business Associates will be audited;
- The protocol for the audit has more than 180 questions.
- Complete a Risk Analysis
- Complete a Risk Management Plan
- Update you Notice of Privacy Practices
- Update your list of Business Associates
- Review your policies and procedures
About Dr. Jose Delgado
Dr. Jose I. Delgado is the founder and CEO of Taino Consultants, a veteran-owned, 8(a) graduate healthcare IT consulting firm based in St. Augustine, Florida. With over 30 years of experience in healthcare compliance and government contracting, Dr. Delgado has helped organizations navigate HIPAA, MACRA/MIPS, and federal IT security requirements.
Need help with healthcare compliance?
Taino Consultants provides HIPAA compliance consulting, MACRA/MIPS compliance support, and healthcare IT modernization services for government and private healthcare organizations.
Schedule a consultation
