Department of Health and Human Services is responsible for enforcing and managing (HIPAA) Health Insurance Portability and Accountability Act. The department mandates certifications for various entities in the compliance of this law. There are no official companies which provide these certifications.
The covered entities, which include hospitals, health care providers, health insurance companies, doctors, etc., are required conduct evaluations which classify the extent to which covered entities comply with the requirements of HIPAA law. These evaluations can be done internally or externally by an organization which will provide a certification that the entity’s policies and procedures regarding security of data are in compliance with the law.
Here, it should be noted that an individual who has the access to confidential identifiable information of people, doesn’t require having HIPAA certification. Rather, he or she must undergo training to learn the right methods to handle the data.
Following entities require HIPAA certification:
Covered Entity – Every conduct entity is required comply with each and every rule listed in HIPAA. The HHS office of General (OIG) conduct regular audits and inspections to ensure that all the security and privacy rules are being followed. These inspections are done onsite and prior information is sent to the entity. OIG ...