All providers are required by HIPAA to protect Patient Health Information. For users for FastEMC this means the following things should be the responsibility of the Provider.
1. Make sure any computers with FastEMC are login and password protected. This controls access to the data.
2. Make sure the computers are secured from theft. Make sure the computers log off users after a time or that computers are returned to LOGIN when not in use.
3. Make backups of your data regularly. Keep backups of data secured from theft. If the backup is on a media such as a thumb drive, lock it in a safe or some other such place to keep it from being stolen.
4. Reasonable care must be taken with any reports or paper copies that contain PHI also. Be sure to shred reports instead of just tossing in the trash.
5. Get Business Associates agreements with any party not a direct employee of your practice that would be given access to your PHI besides the PAYER or Clearinghouse. You can find samples of these kinds of agreements from the AMA or other medical associations.