HIPAA: Protecting Your Practice from Reputational Harm!
Register for one of our complimentary educational webinars to learn more.
— Roger Shindell MS, CHPS, CISA, CIPM
Register for one of our complimentary educational webinars to learn more.
Do you have confidence that you have achieved compliance – and have the tools to maintain it – with tailored HIPAA solutions designed to meet your unique challenges and needs.
HIPAA shouldn’t be difficult or overwhelming. So, we make sure our networking events, trainings, and prep courses have you covered – so you can be fully confident in your program.
The most efficient way to achieve HIPAA compliance. “Give me 2 days, and I will give you a complete HIPAA compliant program, one that will protect you from fines and penalties. Guaranteed!” Roger Shindell MS, CHPS, CISA, CIPM
Because we know you want to get back to doing what you do best, we focus on demystifying the process of becoming HIPAA compliant for you and your staff. We help you implement and manage the privacy and security program that will both minimize your risk of having a breach and help you pass regulatory scrutiny.
If an incident occurs, Carosh is there to help guide you through the process – from investigating the incident, determining if it is a breach through mitigation and, if necessary, reporting the breach to the appropriate parties.
Carosh clients share three characteristics:
Many of our clients have become Accidental Compliance Officers and have been tasked to keep their patients’ information private, in the same way they expect their own personal information to be protected. But they don’t know where to start. They recognize that in the complex world of HIPAA, they need a trusted advisor to help them through the nuances of the regulation requirements.
Our clients rely on us as their trusted advisor for ensuring their practice is HIPAA compliant. You want to get back to doing what you do best, so we focus on demystifying HIPAA for you and your staff. We offer a variety of solutions that can be tailored to your specific needs and provide you with peace of mind by implementing Privacy and Security programs that minimize your risk of having a breach, include proper training of staff, and ensure that your organization continues to pass regulatory scrutiny.
“After briefing you on our present practices and our strong desire to be 100% HIPAA compliant, you were able to assess our current policies and procedures, recommend actions to lower our risk of data breaches and, most importantly, do it in a way that was easy for someone who does not have advanced training in HIPAA compliance to both understand and implement.” READ MORE
“You have aided in moving Two Point further toward a culture of compliance by: reducing training from an overwhelming and over inclusive annual training schedule to a quarterly training regime – increasing retention and department relevance; conducting more specific, new trainee orientation; shifting 90 day training to network administration specific to telecommuting; and generally improving employee knowledge of HIPAA and HITECH.” READ MORE
“The presentation is eye-opening! I appreciate Roger’s expertise and articulate, concise style.”
“Appreciate your insight into HIPAA. It’s helped make it much more clear to understand.”
“Roger was very insightful and presented well. I look forward to more from Carosh. Thank you.”
“I’m delighted that we and our customers can feel confident that the ePHI is managed in accordance with HIPAA/HITECH rules.” (Formerly ADAR IT) READ MORE
“(HIPAA Collaborative) just breaks it down individually. Who is responsible for what and where it all ties in.”
“As our business was faced with understanding compliance issues as they relate to HIPAA, we began a search for a qualified partner to assist us in developing the required processes.
You demonstrated to us your knowledge, not only of HIPAA, but how it directly impacts our business in a straight forward and easy to understand program.
We look forward to a continued relationship with you as we develop these programs.” VIEW DAVID’S LETTER
“I am very grateful to have found a HIPAA compliance company that I can count on. The attention to detail, knowledge and response times have far exceeded my expectations.” READ MORE
“I have been using EMR for several years but have not been able to attest affirmatively (100%) to all the requirements for meaningful use. Carosh has changed this and I will be able to truly attest for the government incentives with any doubt that I may lose in an audit.” READ MORE
“I found it informative, logical and fairly easy to follow. I was able to rapidly identify some action notes on the e-form that will help me keep track of ideas and tasks re policy development.”
“Your ability to synthesize the information and create a Remediation Plan that works for our unique circumstance is and will be invaluable to our system.” READ MORE
“It gives you real simple instructions on how if you take those steps. each and every step, that there’s no way you can’t be in compliance.”
“It has given me a calm about moving forward and being in compliance, with no fear about what the future is going to hold because I’m going to be in compliance. If I use the very steps that you all have provided today it’s going to happen, it’s not a problem, and it’s just one less thing.”
“Before we were thumbing through a notebook, making phone calls; kinda ‘fly by the seat of your pants’ and I think this will keep us organized.”
“Carosh has been easy to work with and the time our office staff has had to spend on the risk assessment and remediation plan has been limited, which is a great benefit. Roger Shindell and his staff are very professional and are a pleasure to work with.” READ MORE
“This is one area of my home health agency where it was vital to pick a consulting firm that would fully understand the whole HIPAA compliance and mitigation process and I felt that after using your services, you more than met our expectations.” READ MORE
“Your expertise and attention to detail has allowed the region to move quickly to align with the Federal and State regulations.” READ MORE
“Your team’s knowledge, response time, and attention to detail have been excellent. In addition, the assessment process has been smooth and well organized and will really assist us in meeting the new HIPAA omnibus regulations and requirements, and assuring our staff are well-trained.” READ MORE
“You demonstrated to us your knowledge, not only of HIPAA, but how it directly impacts our business in a straight forward and easy to understand program.” READ MORE
“Roger and his team have been very thorough in their assessment and the remediation plan, including on-site physical facility reviews. Roger is very knowledgeable in HIPAA Privacy and Security and is committed to helping our agency be secure in our operations.” READ MORE
“Henry County can now demonstrate our compliance with HIPAA/HITECH. Maintaining compliance is a priority and Henry County will continue to use CAROSH Compliance Solutions.” READ MORE
“Carosh Compliance Solutions is providing Des Moines County a manageable, compliant, and cost effective solution to the daunting task of negotiating Federal HIPAA regulations.” READ MORE
“Previous to my taking office the Privacy Officer had been passed between previous employees in other departments and the records were not up to date or complete as to what had been done to keep up with compliance. Figuring out where to begin was a daunting task. Roger Shindell has made the process of getting Louisa County, up to speed and in compliance with the HIPAA Laws a very smooth transition.” READ MORE
“Carosh is presently assisting with the efforts of Washington County to achieve HIPAA compliance and in that regard Carosh personnel are not only knowledgeable but also a pleasure to work with.” READ MORE
“Appanoose County hired Carosh Compliance Solutions to implement security measures to protect the County from malicious software and detect any suspected security issues.” READ MORE
“As far as the biggest surprise, just how involved it is. I think that risk of an incident with my small business is pretty small; however, it if does happen the fines are huge. So it is kind of like insurance – you hope you don’t need it, but if you do you want to make sure that it is comprehensive!”
“Please allow me to express our genuine satisfaction with our working relationship with Carosh Compliance Solutions. The professionals at your organization are knowledgeable, responsive, and respectful of our time and resources.” READ MORE
“We are thankful to have found a partner with Carosh to help us along our path toward HIPAA and HITECH compliance.” READ MORE
“Working with Carosh Compliance Solutions has given our department an efficient and personally tailored process for ensuring HIPAA compliance.” READ MORE
“Their attention to detail, proactive organizational strategy and alignment are second to none!” READ MORE
“Though we are in the early phases of our project, working through our Risk Assessment and Repudiation Plan has been a relatively painless process, thus far. This is thanks to you, your team, and the systems that you have in place.” READ MORE
“Due to limited time and resources, figuring our where to even begin with HIPAA compliance assessment was overwhelming. You and your team made the risk assessment process effortless! The time we have spent with the Carosh team has been a pleasure, we look forward to a long term relationship with Carosh.” READ MORE
“After a breach incident occurred in fall 2018, I contracted Roger Shindell at Carosh Compliance Solutions for guidance and assistance. As a small business and young company, our small budget is always a concern when hiring any consulting agency. Roger worked with me to set up a payment plan so that we could begin the process of ensuring we were fully compliant with HIPAA policies as well as providing guidance on how to handle the breach itself. ” READ MORE
By Lorna L. Hecker, Ph.D, LMFT, CHPS
Many mental health providers believe that if they uphold their obligation to client confidentiality, they are HIPAA compliant. Others believe that because their electronic health record provider promises HIPAA compliance, they are HIPAA compliant. Both are common myths. The reality is HIPAA is much more complex, requiring ongoing efforts to protect patient information. HIPAA has very specific privacy requirements for managing patient information well beyond the familiar Notice of Privacy Practices, and HIPAA security regulations also compel providers to consider all electronic (and paper) aspects of their practice.
“Search no longer, HIPAA Demystified will be your ultimate guide to HIPAA compliance.”
Norman C. Dasenbrook, MS, LCPC
Dasenbrook Consulting
“This book is an extremely relevant and helpful resource for mental health professionals who strive to maintain the security of protected health information while navigating rapidly changing technologies.”
Mary K. Alvord, Ph.D.
Alvord, Baker & Associates, LLC
“HIPAA Demystified was insightful, informative, well written, and thought-provoking. A must read for any professional, from student to CEO”.
Daniel Lettenberger-Klein M.S., LMFT
Sunrise Detox