+353-1-416-8900REST OF WORLD
+44-20-3973-8888REST OF WORLD
1-917-300-0470EAST COAST U.S
1-800-526-8630U.S. (TOLL FREE)

HIPAA, 42 CFR Part 2, and FERPA - Rules for Managing Student Health Information

  • Training

  • 90 Minutes
  • Compliance Online
  • ID: 4899964
This Healthcare webinar will explore the complications and requirements of each of the rules controlling student health information, HIPAA, FERPA, and 42 CFR Part 2, and provide insights into how to apply the rules in an education setting.

Why Should You Attend:

This session focuses on the issues of managing health information when it may be that of students and may involve substance use disorder treatment information. HIPAA and FERPA allow a number of disclosures without consent that SAMHSA prohibits without consent. First we will explain how HIPAA relates to information management and release and explain the processes required for various releases of information under the HIPAA and FERPA rules, including release according to individual access requests, and under consents and HIPAA authorizations.

While FERPA overrides HIPAA, both HIPAA and FERPA take a back seat to the rules under 42 CFR Part 2. When substance use disorder treatment information is involved, first you need to understand how to identify it. We will discuss how to make it distinguishable from “regular” health information, so that the appropriate extra protections can be provided. You may be able to use functions in your EHR to flag the information, or you may create a manual process for tracking the information, if it is rarely handled in your organization. And the substance abuse treatment information you collect may or may not be under SAMHSA depending on whether or not you have a department or even a response team that specializes in SAMHSA-related situations. You need to understand your status under the rules before you release information inappropriately. We will discuss what qualifies treatment that falls under SAMHSA.

If your organization provides services that create information that is under the SAMHSA regulations, you will need to establish the consent and release of information processes that are required to be followed for information releases under 42 CFR Part 2. This involves getting the proper consents upon establishment of the relationship, as well as managing consents for releases that may be necessary after the initial establishment of the relationship. The session will include an explanation of the consent and release requirements that must be followed.

When you release information under HIPAA, there are no special notices required to be placed on the records. But when you release information under SAMHSA, each document must have a notice that explains that re-disclosure is not permitted without a new consent. Complicating matters are updated rules going into effect that will allow a consent that permits a re-release to a defined team of providers caring for the individual, but then require meticulous documentation of to whom the information has been released under such a consent. The session will go over the rules on consents and re-release of information.

Areas Covered in the Webinar:

  • What FERPA controls and how to determine where it applies.
  • How FERPA and HIPAA interact.
  • What HIPAA allows, what SAMHSA requires, and the differences will be explained.
  • We will examine how to determine if the services you provide place you under FERPA or 42 CFR Part 2.
  • We will explore the means for making sure substance abuse treatment information receives the appropriate protections.
  • The consent and release requirements under HIPAA, FERPA, and 42 CFR Part 2 will be explained.
  • Re-release of information released under 42 CFR Part 2 will be discussed.
  • Sharing of information with family and friends in an overdose incident will be explored.
  • The latest guidance from the US Department of Health and Human Services on HIPAA and FERPA, as well as harmonization of SAMHSA and HIPAA will be explained.

Who Will Benefit:

This webinar will provide valuable assistance to all personnel in:
  • Medical offices, practice groups, hospitals, academic medical centers, insurers, business associates (shredding, data storage, systems vendors, billing services, etc). The titles are
  • Compliance director
  • CEO
  • CFO
  • Privacy Officer
  • Security Officer
  • Information Systems Manager
  • HIPAA Officer
  • Chief Information Officer
  • Health Information Manager
  • Healthcare Counsel/lawyer
  • Office Manager
  • Contracts Manager

Speaker

Jim Sheldon-Dean

Course Provider

  • Jim Sheldon-Dean
  • Jim Sheldon-Dean,