Addressing HIPAA and HITECH regulations and compliance rules requires Healthcare organizations like yours to add technology to your IT infrastructure that is unique to your industry. At Mimecast we understand this uniqueness and have developed a set of unified information management tools that will help you address your HIPAA and HITECH obligations.
The three core parts of the HIPAA privacy regulations, and how Mimecast helps you address them are.
EDI (Electronic Data Interchange) Rule, S162.1000
Which introduces a set of standardized electronic code sets and terminology for healthcare IT, so as to avoid confusion and problems with data interchange between organizations.
Mimecast UEM for Healthcare supports your existing healthcare code sets and can migrate control policies from incumbent providers, or add HHS 4010/5010 codes to new installations, for example ICD9, ICD10 libraries.
Security Rule. S164.306
Applying protections to the Confidentiality, Integrity & Availability (CIA) of health information that is housed or transmitted electronically and pertains to a person.
Mimecast UEM for Healthcare provides elegant and granular policy and content control, with integrated encryption of data in use, rest and transit.
Privacy Rule. S164.502
Requires your organization to protect PHI (Protected Health Information), but also allows its “de-identified” disclosure.
Mimecast UEM for Healthcare combines the rich content control and encryption tools with a powerful DLP engine that detects and reacts to PHI breaches in email and documents.
Since 2009 HITECH has brought changes and improvements to HIPAA which have redefined key areas such as the reach of the regulations, to include “covered entities”, the process you must go through for breach notification and lastly increasing the economics of enforcement.