Preview

Leah Alexander

Good Essays
Open Document
Open Document
706 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
Leah Alexander
Administrative Ethics Paper
Sarah Falsey
HCS/335
October 8, 2012
Leah Alexander

Administrative Ethics Paper
The topic chosen was Massachusetts General Hospital. This paper will go over the issue and its impact. It will also include arguments or facts to support the proposed solution. We will also touch on the ethical and legal issues involved with the release of 196 patients’ medical information.
The issue is that 196 patients’ records at the hospital’s Infectious Disease Associates Practice were left by an employee on the subway. These records contained names, medical record numbers, dates of birth, health insurers and their policy numbers, diagnosis, and names of their providers for 66 patients. The Infectious Disease unit treats people with HIV/AIDS, as well as other infectious diseases. The records were never recovered and were lost on March 9, 2009.
The Department of Health and Human Services issued a 1 million dollar fine against the Massachusetts General Hospital because of that breach of patient privacy. The HIPAA privacy rule clearly states that health care providers are required to protect the privacy of patient information through administrative, physical and technical defenses.
Massachusetts General agreed to fix this and to take actions to prevent this from happening in the future. They agreed to implement a set of policies and procedures regarding what information is removed from the hospital, training all employees on this procedure, and labeling the hospital’s director of internal audit services to serve as an inside observer to evaluate the hospital’s HIPAA compliance and create semi-annual compliance reports to HHS for three years.
The facts were that an employee left patients’ records on a subway. Information on those records was way too personal to just be taking out of the hospital. This also ties into the ethical issues as well. The employee should not of been so careless but they should not of taken those records home



References: Cooney, E. (2009, May 20). HIV-positive patients sue hospital over records lost on train. Retrieved from http://www.boston.com/news/health/blog/2009/05/four_hivpositiv.html Goldberg, C. (2011, Febuary 25). MGH Settles For $1M Over Lost HIV/AIDS Records. Retrieved from http://www.wbur.org/2011/02/25/mgh-privacy Infosecurity. (2011, Febuary 25). Mass General takes $1 million hit for losing 193 patient records. Retrieved from http://www.infosecurity-magazine.com/view/16228/mass-general-takes-1-million-hit-for-losing-193-patient-records/

You May Also Find These Documents Helpful

  • Satisfactory Essays

    Hcs 483 Wk1Dq1 2

    • 457 Words
    • 2 Pages

    Prior to the enactment of the Health Insurance Portability and Accountability Act (HIPPA) health information was able to be shared without the knowledge or permission of the patient. This information was available to just about anyone including insurance agencies, places of employment and even loan lenders. People would potentially use individuals’ health information to deny them work or a loan for their home and even impacting higher insurance rates or denial of coverage. According to U.S. Department of Health and Human Services (n.d.), “The Privacy Rule establishes a Federal floor of safeguards to protect the confidentiality of medical information. State laws which provide stronger privacy protections will continue to apply over and above the new Federal privacy standards.” (para. 1). Also, as medical records continue to move entirely to the new standard of electronic records it is important to have one standard across the country to protect everyone’s information. Electronic health records (EHR) make it easier than ever to accidentally share medical information, to include having it stolen. Medical providers are just as likely to face consequence if their facility is broken in to and the hard drive with patients information is stolen as they would be if they gave the information away themselves. In general HIPPA protects patients’ information as well as their right to be treated equally.…

    • 457 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    The three broad objectives HIPAA privacy standards were designed to accomplish are; define and limit the circumstances in which individuals use and disclose patient health information, establish individual rights regarding patient health information, and require protected individuals to adopt administrative safeguards to protect the confidentiality and privacy of patient healthcare information (Cleverley, pg.95). The HIPAA Privacy Standards prohibit covered entities from using or disclosing individually identifiable health information that is or has been transmitted or maintained electronically. This requirement isn’t limited to the record in which the information appears but applies to the actual information itself. Any information that has been transmitted by email, fax, telephone, or any other…

    • 995 Words
    • 4 Pages
    Good Essays
  • Better Essays

    Security Breach Plan Paper

    • 1576 Words
    • 7 Pages

    Patient privacy and security is one of the most important aspects of the St. Johns Hospital code of conduct, they take pride in the sound policies and procedures set to maintain customer confidentiality. Each employee is held to a high standard of maintaining the highest level of privacy and confidentiality when it comes to patient health information (PHI). This paper will outline the plan that St. John’s hospital has created in case of a security breach or security threat in the facility. The primary cause of a security breach is usually related to the people or business side of and organization (Rhoades, MBA, RHIA, CHPS, CPHIMS, FHIMA, 2009).…

    • 1576 Words
    • 7 Pages
    Better Essays
  • Good Essays

    MIS565 You Decide abc

    • 648 Words
    • 2 Pages

    As the Chief Compliance Officer it is very important that business associates (covered entities) make a supreme effort to ensure the safe keeping of a patient’s health information. Considering three key areas that will affect the decision whether a hospital receives its accreditation consist of the release of information, protection of privacy/maintenance of confidentiality/protection of data security, and management of sensitive health information. The Joint Commission on Accreditation of Healthcare Organizations (JCAHO) requires this privacy and security rules including 18 types of identifiers for individuals must be secured at all times to include Electronic protected health information (ePHI).…

    • 648 Words
    • 2 Pages
    Good Essays
  • Good Essays

    Administrators at the University of Colorado found a way to comply HIPAA to protect the integrity of electronic patient records. In addition to meeting the Privacy requirement of HIPAA, they needed a system to deal with their staff of medical professionals who move from computer to computer throughout their shifts. To be better equipped to achieve compliance, the hospital chose to use technology via a…

    • 783 Words
    • 4 Pages
    Good Essays
  • Better Essays

    HIPAA confidentiality is important for very patient but for some reasons when they hear someone has HIV or AIDS it gives them the right to talk about it with others which have no reason to know. I will show why it is so important to be sensitive to this type of health conditions. Will examine the social, legal, and ethical ramifications of improper information disclosure.…

    • 1589 Words
    • 7 Pages
    Better Essays
  • Satisfactory Essays

    Hsm310 Hipaa Assignment

    • 893 Words
    • 4 Pages

    | HIPAA Rules(1)Privacy Rules: According to the U.S Department of Health and Human Services (HHS), the HIPAA Privacy Rule establishes national standards to protect individuals’ medical records and other personal health information and applies to health plans, health care clearinghouses, and those health care providers that conduct certain health care transactions electronically. It’s important because the Rule requires appropriate safeguards to protect the privacy of personal health information, and sets limits and conditions on the uses and disclosures that may be made of such information without patient authorization. This rule impacts the staff by: Not sharing the information with others who have no need to know, including co-workers, family members or friends, minimizing opportunities for patient information to be overheard by others, never sharing passwords, disposing of information containing PHI properly such as shredding paper files(2)Security Rules: The HIPAA Security Rule establishes national standards to protect individuals’ electronic personal health information that is created, received, used, or maintained by a covered entity. The Security Rule is important because it requires appropriate administrative, physical and technical safeguards to ensure the confidentiality, integrity, and security of electronic protected health information. It impacts the organization by forcing the healthcare industry to adopt uniform electronic transaction standards for…

    • 893 Words
    • 4 Pages
    Satisfactory Essays
  • Satisfactory Essays

    Human Resources Presentation Leslie Gabor, Aisha Little, Anne Parker, and Cindy Wright HCS/430 Legal Issues in Health Care: Regulation and Compliance September 15th, 2014 William Bross Introduction • State and Federal Statutory and Regulatory Enactments. • Current Principles of Patient Consent. • Current State and Future Trends of Physicians’ Rights and Responsibilities. • Current Components and Implications of HIPAA. • Current and Future Trends for Statutory, Regulatory, and Common Law Requirements of Confidentiality.…

    • 416 Words
    • 6 Pages
    Satisfactory Essays
  • Good Essays

    As of today there are issues with the information technology systems, clinical data management systems and the increasing automation of the electronic medical records. All of these present a significant amount of patient privacy and confidentiality issues. When we say confidential, meaning in healthcare we are talking about the protection of a patient’s medical information and keeping their medical information private and safe from any third parties. Administrators are expected to follow the HIPAA Privacy Rule. The HIPAA protects the privacy of patient’s medical information. Patient’s medical records are sensitive personal information that is covered with privacy. There are several ethical…

    • 585 Words
    • 3 Pages
    Good Essays
  • Good Essays

    When patient records were recorded only on paper it was much easier to identify and protect records. However, with records now stored and accessed electronically health care protection of records have to change.…

    • 999 Words
    • 4 Pages
    Good Essays
  • Satisfactory Essays

    Hipaa

    • 384 Words
    • 2 Pages

    | Department HIPAA Inventory (1) Health Information Management Services: a. Critical Issue b. Information use (2) Clinical Nursing Services: c. Critical Issue d. Information use (3) Credit Department: e. Critical Issue f. Information use…

    • 384 Words
    • 2 Pages
    Satisfactory Essays
  • Powerful Essays

    Medical records consist of private health information that should remain private unless direct written consent is given by the patient. Information technological advances are coming at a rapid pace and the laws designated to protecting the patient 's right to privacy are being surpassed. It is then the responsibility of the healthcare provider to ensure that he or she is doing whatever necessary to protect the patient. It is the responsibility of the healthcare manager to ensure that all staff members are properly trained to handle the PHI that they have access to. All healthcare organizations should take steps to ensure that their organization is doing all that they can to be compliant with guidelines that are stated within federal and state laws, including using safeguards and implementing a formal information management plan. After all, the patient should be comfortable and able to trust those providing healthcare services to him or her enough to provide all pertinent information to be properly diagnosed and treated.…

    • 1410 Words
    • 6 Pages
    Powerful Essays
  • Powerful Essays

    Hipaa Privacy Rule

    • 2356 Words
    • 10 Pages

    As part of the requirements under HIPAA 1996, regulated by the Office for Civil Rights under the Department of Health and Human Services [HHS], federal guidelines must set a standard for the protection of individually identifiable health information (2003). These regulations and requirements are outlined under the Privacy Rule. Specifically, it addresses the use and disclosure of records and data by organizations subject to the privacy rule (aka covered entities), as well as outline the rights to knowledge and control over individuals’ medical information (HHS, 2003). The following is a discussion of particular aspects of the Privacy Rule as it relates to specified circumstances addressed.…

    • 2356 Words
    • 10 Pages
    Powerful Essays
  • Good Essays

    In this paper, I will discuss the principles that permit disclosure of protected health information with or without the patient’s consent for each of the four categories, government agencies, legal agencies or representatives and research groups. I will also state whether I feel privacy safeguards are adequate to support those principles.…

    • 687 Words
    • 3 Pages
    Good Essays
  • Satisfactory Essays

    The two major issues identified in this situation is the violation against HIPPA regulations which is a US law designed to provide privacy standards to protect patients ' medical records and other health information provided to health plans, doctors, hospitals and other health care providers. This was an act developed by the Department of Health and Human Services, in which new standards provide patients with access to their medical records and more control over how their personal health information is used and disclosed. The HIPAA Privacy Rule provides federal protections for personal health information held by covered entities and gives patients an array of rights with respect to that information. At the same time, the Privacy Rule is balanced so that it permits the disclosure of personal health information needed for patient care and other important purposes (HHS.gov 2011).…

    • 586 Words
    • 2 Pages
    Satisfactory Essays