Templates
Healthcare
HIPAA Compliance Checklist for Business Associates
🔒

HIPAA Compliance Checklist for Business Associates

1
Identify all Business Associates handling PHI
2
Conduct initial due diligence on each Business Associate
3
Develop a Business Associate Agreement (BAA)
4
Approval: BAA by legal team
5
Sign and execute BAA with each Business Associate
6
Catalog each BAA and renewal dates
7
Train staff on handling of PHI and HIPAA compliance
8
Monitor and audit Business Associate's compliance with BAA
9
Develop breach response plan and implement necessary security measures
10
Approval: Breach response plan by leadership team
11
Periodically review and update BAA as necessary
12
Ensure regular audits of Business Associate's facilities or processes
13
Secure all electronic communication and data exchanges
14
Document violations of BAA or HIPAA regulations
15
Action needed on violations and appropriate follow-up
16
Approval: Corrective action plan for violations
17
Ensure de-identified PHI is inaccessible to unauthorized users
18
Regularly update and improve risk management strategies
19
Approval: Risk Management Strategy Updates
20
Terminate BAA if Business Associate does not comply with terms