HIPAA compliance policy

The Facility has established a compliance policy to ensure compliance with the Standards for Privacy of Individually Identifiable Health Information (the “Privacy Regulations”) promulgated under the Health Insurance Portability and Accounting Act of 1996 (“HIPAA”).

This compliance policy is not intended to be a comprehensive explanation of the Privacy Regulations, nor will it provide answers to every possible issue that may arise under the Privacy Regulations. Rather, it is intended to provide guidelines with respect to the steps that the Facility must take in order to achieve compliance with the Privacy Regulations and to sensitize the Facility to potential problems that may arise under the Privacy Regulations. The Facility expects full compliance with the guidelines set forth in this policy statement, and encourages the Facility to seek any further necessary information or clarification prior to engaging in any potentially sensitive actions or activities. See HIPAA Notebook for complete HIPAA policies and forms.

This compliance policy is divided into two main sections: (1) an overview of the Privacy Regulations; and (2) specific compliance guidelines. This policy requires the Facility to:

  • Appoint a Privacy/Security Official;
  • Inform Patients of the Facility’s Privacy Polices and Procedures by disseminating handouts and posting a disclosure notice;
  • Use a Business Associates agreement;
  • Clarify discipline for employees and vendors who violate the Privacy Rules and Privacy Policies and Procedures;
  • Update the Privacy Policies and Procedures as needed;
  • Hold all-employee educational meetings;
  • Discuss adoption of the Privacy Policies and Procedures at a Board Meeting; and
  • Develop safeguards to protect and de-identify Protected Health Information (as defined in the regulations).
Compliance HelpLine
QR Code for Ethics Point Site

We encourage employees, medical staff, vendors, patients, and business partners to report to Janice Stewart,
Compliance Officer at 516.266.5014 or the Compliance HelpLine any actual or suspected violations of the Center’s
policies and procedures and/or federal or state law. Calls received by the Compliance HelpLine are most often
inquiries but can sometimes be reports of potential misconduct. Our investigatory process includes many methods to
determine whether any misconduct occurred. Compliance takes all calls seriously. Inquiries are reviewed by the
Compliance Officer and may also be reviewed by other applicable departments.
The Center’s Compliance HelpLine is available 24 hours a day, even days a week. Compliance HelpLine callers may
remain anonymous and those who choose to give their name will have their identities protected to the extent allowed
by law. The Compliance HelpLine has multi-lingual operators who can take reports from individuals whose first
language is not English. The Compliance HelpLine can be reached by calling (800) 894-3226 or by visiting www.Northwell.ethicspoint.com online or by
scanning the QR code.