- Implemented reasonable safeguards to protect health care data.
- Created a set of HIPAA security policies and procedures.
- Provide evidence they have trained their workforce members on those policies and procedures.
- Completed the Security Risk Assessment required by HIPAA.
- Appointed a security officer.
- Implemented current business associate agreements with all of their covered entity or business associate customers.
For reprint and licensing requests for this article, click here.
More From Employee Benefit News
Benefits Think Let’s build behavioral health on usage, not headcount
Brokers can incentivize vendor performance by tying portions of their fees to measurable standards such as response times and match-acceptance rates.
Benefits Think Why workforce sentiment is a critical fiduciary data point
Treating sentiment as a scored, auditable data point will turn subjective impressions into the kind of objective evidence an executive committee can act on.
Benefits Think Your AI strategy is missing the most important variable: Your people
For AI incorporation to be successful, employee training, confidence and value need to be part of the plan.
Rising healthcare costs may force small businesses to cut coverage
Reducing healthcare benefits can provide immediate savings, but it could also stunt retention and recruiting efforts.
Employers need to rethink access to mental health and recovery care
Organizations are seeing more demand for mental health and substance use services. New approaches aim to make care easier to access before employees reach a crisis.