Advocacy Center   |   Collaborate   |   Data Portal   |   Print Page   |   Contact Us   |   Sign In   |   Join AAOE
PM101: HIPAA and Data Security


Speaker: Karen R. Clark, MBA, CPHIMS, FHIMSSChief Information Officer, OrthoTennessee

Medical practice administrators have multiple responsibilities relating to HIPAA and data security.  Data breaches at healthcare organizations are in the news almost daily, many practices have received Meaningful Use audits concerning patient data, and there seems to be a new rule or regulation coming from CMS every week. This session is for the non-technical administrator, will cover three areas in plain-English language and will provide attendees with a solid understanding of both what they need to do, how they need to document, and the available tools--many free--that are available to ensure their practice is both compliant and meets the 2017 MACRA requirements for protecting patient data. Additionally, compliance--which usually focuses around policies and procedures--is not enough to keep your practice data safe. What steps should a an administrator take to ensure his or her practice is as safe as possible? And lastly, we will cover cyber liability insurance.  What does it cover?  How much should you have?


After this session, you will:

  • Know where to find the HIPAA Security requirements, how to set up your documentation for compliance, and available resources.  
  • Be able to document to satisfy a HIPAA audit and document to support a Meaningful Use or MACRA/MIPS audit.
  • Have a checklist of steps to keep your practice data secure.


About the Speaker

Karen R. Clark is Chief Information Officer for OrthoTennessee, where she has worked since 1998. In that role, she serves on national committees for the Healthcare Information Management Systems Society (HIMSS).  A HIMSS Fellow and Certified Professional in Healthcare Information and Management Systems, her current HIMSS committee is the HIT User Experience, which focuses on clinician experience with health information technology.

She has spoken at the AAOE, AAOS, and OrthoForum conferences on both information security and the 2015 MACRA legislation, specifically on the Merit-based Incentive Payment System (MIPS.).  She is a member of the College of Healthcare Information Management Executives (CHIME), as well as the CIO/CMIO Council with the American Medical Group Association.

Back to PM101 landing page.

Membership Management Software Powered by YourMembership  ::  Legal