13 Sep Business Associate Agreement Healthcare
`[A] natural or legal person, with the exception of a member of the staff of a registered undertaking, performing functions or activities on behalf of an undertaking concerned or providing certain services for which the counterparty has access to protected health information. A [BA] is also a subcontractor who creates, receives, maintains or transmits protected health information on behalf of another [BA]`. There are many HIPAA counterparty agreement models, but one must be careful before they are used. Before using such a template, it is important to check for whom this template was designed to make sure it is relevant. It should also be customized to include all requirements defined by the covered entity. Encrypting all ePHI stored or transferred by a trading partner is an important protection, but encryption alone is not enough to ensure HIPAA compliance. . . .