Northwind Pharmaceuticals

EHR Security and Privacy

EHR-Security-and-PrivacyWhen it comes to Electronic Health Records (EHRs), we hear a lot about the continuity and efficiency they bring to your clinic. But as helpful as they are, EHRs contain personal information about your patients and therefore are guided by certain privacy rules.

What does that mean for my clinic?

Every health care provider who transmits information electronically is subject to the privacy regulations, regardless of their size. And according to the Department of Human Health and Services, “health care provider” is a broad term encompassing everything from hospitals to billing companies.

The HIPAA Privacy Rule contains certain guidelines pertaining to individuals’ EHRs, particularly to any identifiable information. According to

“Individually identifiable health information” is information, including demographic data, that relates to:

the individual’s past, present or future physical or mental health or condition,
the provision of health care to the individual, or
the past, present, or future payment for the provision of health care to the individual and that identifies the individual or for which there is a reasonable basis to believe it can be used to identify the individual.13 Individually identifiable health information includes many common identifiers (e.g., name, address, birth date, Social Security Number).”
To read more about the Privacy Rule, click here.

So how can I keep my patient’s EHRs secure?

In addition to the HIPAA Privacy Rule, HHS enacted a HIPPA Security Rule to aid healthcare providers in maintaining their patients’ privacy. According to, “the Security Rule requires appropriate administrative, physical and technical safeguards to ensure the confidentiality, integrity, and security of [an EHR].

“These safeguards, when applied well, can help you avoid some of the common security gaps that lead to cyber attack or data loss.

The HIPAA Security Rule requires covered providers to implement security measures, which help protect patients’ privacy by creating the conditions for patient health information to be available but not be improperly used or disclosed.”

To read more about the Security Rule, click here.

EHRs are a valuable way to bring efficiency to your healthcare organization. To learn more ways you can enhance your clinic in 2015, contact Northwind Pharmaceuticals today.

Schedule a free claims analysis now.

Let’s Talk now


Betsy Bigler | Mar 7th, 2024
INDIANAPOLIS, March 7, 2024 – Northwind has announced the addition of Tony Purkey as Senior Vice President, Client Strategies. “Demand from our self-funded employer and union clients is driving rapid growth,” said Phillip Berry, CEO. “Tony Purkey joins Northwind at a time when we need high-integrity leaders with expert knowledge in employer-sponsored health and the … more »

continue reading

Voices Lost in the Noise

Phillip Berry | Jan 31st, 2024
In the health benefits world, the mad scramble toward January renewals/starts has subsided and attention has turned to the annual cycle of review necessary to gauge progress. How did we do? The plan review process generally centers on analytics to gauge progress or regress and to identify “areas of opportunity.” Good. The right data with … more »

continue reading