In a letter this week, HITRUST asked the Senate HELP Chairman Lamar Alexander to consider an exemption to the Stark Law for the donation or subsidization of security software.
HITRUST asserted that healthcare entities, particularly doctors’ offices, are often poorly prepared to defend themselves from hackers. But if they could receive help from larger hospital systems, that could change.
“Small, ill-equipped practices are vulnerable to security breaches, which can ultimately infiltrate the larger healthcare environment through the exchange of patient data,” wrote Dan Nutkis, chief executive of HITRUST. “Again, we need to empower physician practices to actively manage their security posture, not hinder them.”
It should be noted, however, that such help, in the form of software or other technology and management help, could be misinterpreted as a kickback under the Stark Law, which aims to prevent referrals between doctors who have a business relationship.
The Stark Law governs physician self-referral for Medicare and Medicaid patients and serves as a stringent barrier against fraud and abuse amongst healthcare providers.
You may be interested
Improving the Throughput and Transparency of the HITRUST Assurance Program: July 2020 UpdateLacy Deatrich - Jul 27, 2020
By Bimal Sheth, Vice President of Assurance Services Welcome back for the July update in our series on Improving the…
HITRUST Answers the Call for Adapting Security and Compliance Assessments During PandemicLacy Deatrich - Jul 22, 2020
By Michael Parisi, Vice President of Assurance Strategy and Community Development As the COVID-19 pandemic hit, businesses found themselves in…