Business Associate Size Matters for HIPAA HITECH

February 20, 2013

The article: Changes Affecting Who is a BusinessAssociate and New Business Associate Obligations at http://www.polsinelli.com/publications/healthcare/resources/upd0213-3hc.pdf#page=1 is a thorough examination of the new responsibilities of the business associate(BA) with the important note that the BA has flexibility in deciding how to comply. One size security program does not fit all. Policies and procedures (P&P) must be tailored to the size and complexity of the organization. Just buying a set of P&P and putting them on the shelf is in many ways worse than having no written P&P at all. The P&P must be the business rules by which you run your organization. Staff must be trained to use them and have access to them.

But just as having too little in place is a problem so is having too much. If a small organization tries to implement P&P designed for a large organization, they will fail. That is why we have developed different P&P for different organizations with different prices. For example an organization with 5 employees or fewer and a relatively simple business model may be able to use our CO-OP. This program is simpler, easier to implement, and lower cost yet meets the requirements. For only $125 they can get compliant, for $35 per month they can stay compliant, and with our Compliance Meter(tm) they can prove compliance to their covered entities.

Programs are always tailored to the organization under the guidance of a privacy and security expert. By delivering this through the SaaS model it is cost effective and efficient. For an on-line demonstration go to www.complianchelper.com and select the BA Demo. For a live demonstration send an email to jack@compliancehelper.com and we will schedule a GoToMeeting demonstration.


Back to News