HIPAA COMPLIANCE—Privacy Final Rule

Through our business contracts, RxEDO is dedicated to and assures compliance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA). The following principles control our actions as a business associate on behalf of our clients:

We adhere to standardized electronic transactions to simplify communications between providers, payers, clearinghouses and their business associates; we accept and transmit applicable HIPAA-mandated transactions.

We support HIPAA’s privacy ruling that all entities within the health care industry take the necessary steps to protect patients’ private health information. We handle confidential health information with the utmost care to prevent unintended or inappropriate use or disclosure.

We will comply with all legal requirements; as additional HIPAA final rulings become available from the Department of Health and Human Services (HHS), we will update this document with information about the procedures and practices we follow in implementing those rulings.

We are prepared to execute the HIPAA-mandated business associate agreements for our existing and future business partners.

Electronic Transactions and Code Sets

RxEDO, either independently or through its relationship(s) with contracted claims processing vendor(s), is fully capable of accepting and processing all relevant HIPAA-mandated transactions.

 
Privacy and Confidentiality

RxEDO takes very seriously the trust our clients place in us to meet or exceed all federal and state regulations with regard to transmitting, using, and storing personal health information.  Our systems and operations are in compliance with HIPAA’s requirements and adhere to all applicable sections of the law.

 
Security

In accordance with the HIPAA Security Final Rule, RxEDO maintains protected health information in a secure environment.

 

The RxEDO System

The Privacy and Security rules from HHS require covered entities and their business associates to institute certain procedures and implement technologies to prevent inappropriate use or disclosure of Protected Health Information (PHI). These include:

Limiting the use of PHI

Giving consumers control over their PHI

Using or disclosing only the minimum necessary amount of PHI for the intended purpose

Implementing administrative, physical and technical safeguards for protecting the security of electronic PHI

 

RxEDO understands the necessity to standardize transactions, protect patient confidentiality and ensure data security. For all aspects of the currently published final rulings, RxEDO’s business practices and technical capabilities facilitate HIPAA compliance.

 

For more information about HIPAA compliance at RxEDO, please contact us at 1-888-TRY-REDO and ask for our Privacy Administrator.