You must VTrust your Business Associates. A Covered Entity must trust but verify their Business Associates with a Satisfactory Assurance Review
Ensure Your Bussiness Associate is Worthy of Your Business with VTrust by Compliance by HITECH
The HIPAA Security Rule requires that you perform a Satisfactory Assurance Review on your Business Associates. OCR recently stated a signed Business Associate Agreement is not enough, 3rd party verification is a requirement under the NPRM.
Business Associates that show 3rd Party Verification earn better business.
Covered Entites are requesting Satisfactory Assurance reviews, VTrust is your solution.
The VTrust Framework
Using established frameworks and OCR guidance, we review, analyze and verify your Business Associates and give you a compliance score. This provides an objective method of evaluating your risk.
HIPAA Homework
HIPAA is not a once a year duty. Being proactive is a major component to being compliant. This is what we mean by “HIPAA Homework.” Some examples would be:
Business Associate Management
As a part of Compliance As A Service, we take on the task of Business Associate management.
We recently had a client report that their collection company experienced a breach that exposed 1900+ patient records. “We regret to inform you that you have a major breach to report to the OCR and that we will not be able to help you in this matter as we have filed for bankruptsy.” You are on your own with breach notification letters alone going to cost $27,000 or more.