HIPAA Compliance: An Examination of Institutional and Market Forces
نویسندگان
چکیده
One would think that the enactment of the HIPAA, with its mandates on data security and privacy, would have brought a major shift in the security management practices within the US healthcare. Unfortunately, recent industry reports indicate low levels of regulatory compliance, thus raising security concerns for the US health IT infrastructure. This research develops a regulatory compliance model by drawing insights from the institutional theory literature to identify the key drivers influencing HIPAA compliance, both institutional and market forces (e.g., variability in state-level privacy laws comprehensiveness, interdependency between privacy and security rules, pressure from compliance leaders in the region, compliance officer‟s functional background, and the consumer concern for privacy). We validate the model using a national sample of acute-care hospitals and find partial support. The primary contribution of this research lies in the novel application of institutional theory to explain the variability in regulatory compliance prevalent in the US healthcare sector.
منابع مشابه
HIPAA Compliance: An Examination of Institutional and Market Forces1,2
One would think that the enactment of the HIPAA, with its mandates on data security and privacy, would have brought a major shift in the security management practices within the US healthcare. Unfortunately, recent industry reports indicate low levels of regulatory compliance, thus raising security concerns for the US health IT infrastructure. This research develops a regulatory compliance mode...
متن کاملHIPAA Compliance: An Institutional Theory Perspective
One would think that the enactment of the HIPAA and associated mandates on data security and privacy has brought a major shift in the information security management practices across the US healthcare sector. Unfortunately, recent industry reports indicate substantially low level of regulatory compliance, thus raising security concerns to US health IT infrastructure. This research develops a re...
متن کاملGlobal Cement Industry: Competitive and Institutional Dimensions
The cement industry is a capital intensive, energy consuming, and vital industry for sustaining infrastructure of nations. The international cement market –while constituting a small share of world industry output—has been growing at an increasing rate relative to local production in recent years. Attempts to protect the environment in developed countries –especially Europe—have caused cement p...
متن کاملThe Neo-Institutional View of HIPAA Compliance in Home Health Care
Despite many years since the enactment of the Health Insurance Portability and Accountability Act (HIPAA), healthcare providers have been slow to fully comply with the regulatory requirements, especially the privacy and security rules concerning protection of electronic personal health information. Neo-institutional theory, a dominant analytical perspective of organizational behavior, suggests ...
متن کاملFive steps to protect your organization from HIPAA audits.
An audit begins with a notification letter requesting evidence of a covered entity’s HIPAA privacy and security compliance efforts. Thirty to 90 days following receipt of the requested information, KPMG will conduct an on-site visit. The on-site visit will include interviews with the entity’s leadership, examination of the physical space and operations, review of consistency of the entity’s pra...
متن کامل