<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>SiliconMesa Blog</title>
    <link>http://siliconmesa.com</link>
    <description>The latest updates from SiliconMesa.</description>
    <language>en-us</language>
    <item>
      <title>Your EHR should make your job easier</title>
      <description>&lt;p&gt;Imagine conducting a consultation with a patient, and instead of jotting down chart notes on a form attached to a clipboard, you instead jot down chart notes with a stylus pen on your tablet that is displaying an electronic version of your form.  Or, instead of waiting to find out from insurance companies whether a patient is or is not actually covered, your staff could verify the patient&amp;#8217;s current insurance eligibility &amp;amp; benefits with the touch of a button.  These are just a couple of simple features every healthcare provider should come to expect from their electronic health records &amp;amp; practice management system.&lt;/p&gt;
&lt;p&gt;However, many doctors hesitate making the switch from pen &amp;amp; paper to touch-screen tablet or laptop due to fear of abandoning their familiar routine for a new one.  Under federal law (&lt;span class="caps"&gt;HITECH&lt;/span&gt; Act of 2009), nearly all healthcare providers across the country &lt;U&gt;must&lt;/U&gt; convert to a certified electronic health records system by the end of 2014, literally forcing many medical practices to go paperless, whether they want to or not.  While making such a transition can be intimidating, healthcare providers should understand that &lt;span class="caps"&gt;EHR&lt;/span&gt; systems cannot be effective and one-size-fits-all at the same time.  Rather, healthcare providers should seek out an &lt;span class="caps"&gt;EHR&lt;/span&gt; system that is customized to fit the way their practice already operates &amp;#8211; patient intake, scheduling, clinician data, chart notes, ePrescriptions, coding, billing, accounting, and reporting.&lt;/p&gt;
&lt;p&gt;But even with an &lt;span class="caps"&gt;EHR&lt;/span&gt; system that is customized to fit the existing workflow of your practice, the transition can still be a significant change.  Medical practices should seek out &lt;span class="caps"&gt;EHR&lt;/span&gt; providers who offer hands-on training and transition support to ensure their entire staff is comfortable using the technology, ideally at no additional charge.  Further, medical practices will inevitably have questions along the way, or evolving changes to their workflow, etc.  They should seek out &lt;span class="caps"&gt;EHR&lt;/span&gt; providers who are responsive to their questions and requests for further optimization &amp;#8211; again, ideally at no additional charge.  Why?  The goal of the &lt;span class="caps"&gt;EHR&lt;/span&gt; provider should be the same as that of the medical practice &amp;#8211; to enable the medical practice to &lt;U&gt;successfully&lt;/U&gt; transition and continue to utilize the &lt;span class="caps"&gt;EHR&lt;/span&gt; system long-term.&lt;/p&gt;
&lt;p&gt;Another issue to consider with the transition to an &lt;span class="caps"&gt;EHR&lt;/span&gt; system is how to leverage your existing data from your current billing software or &lt;span class="caps"&gt;EHR&lt;/span&gt; software.  Medical practices should seek out &lt;span class="caps"&gt;EHR&lt;/span&gt; providers who have the skill to export your existing database of data, and import that database into their &lt;span class="caps"&gt;EHR&lt;/span&gt; system so you can hit the ground running with your entire database of patients in the new system.&lt;/p&gt;
&lt;p&gt;Finally, don&amp;#8217;t ignore data security as the costs of a medical record breach can be enormous.  Medical practices should ensure they ask prospective &lt;span class="caps"&gt;EHR&lt;/span&gt; providers about their data security methods, and if they have completed a credible 3rd party validation of their network &amp;amp; data security architecture.&lt;/p&gt;</description>
      <author>SiliconMesa</author>
      <pubDate>Wed, 06 Feb 2013 23:33:18 -0700</pubDate>
      <link>http://siliconmesa.com/blog/5-your-ehr-should-make-your-job-easier</link>
      <guid>http://siliconmesa.com/blog/5-your-ehr-should-make-your-job-easier</guid>
    </item>
    <item>
      <title>How to avoid a costly medical record security breach</title>
      <description>&lt;p&gt;We would like to educate healthcare professionals about the realities of medical record security breaches, and eliminate the &amp;#8220;it couldn&amp;#8217;t happen to me&amp;#8221; attitude.  The fact is &amp;#8211; it can, and it is, happening to medical practices just like yours, all across the United States, and with significant consequences!&lt;/p&gt;
&lt;p&gt;The &lt;span class="caps"&gt;HHS&lt;/span&gt; &amp;#8220;Wall of Shame&amp;#8221; (&lt;a href="http://www.hhs.gov/ocr/privacy/hipaa/administrative/breachnotificationrule/breachtool.html"&gt;http://www.hhs.gov/ocr/privacy/hipaa/administrative/breachnotificationrule/breachtool.html&lt;/a&gt;) lists 400 reported medical record security breaches from September 2009 to March 2012, each involving more than 500 patients.  The cumulative impact involves over 19 million patient records &amp;#8211; about 6% of the U.S. population in just 2.5 years, from hospitals and medical practices, both large and small, encompassing nearly every specialty of medicine.  The most common root causes of these actual medical record security breaches:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Thefts (54%) such as stolen laptops with &lt;span class="caps"&gt;PHI&lt;/span&gt; stored on the local hard drive&lt;/li&gt;
	&lt;li&gt;Unauthorized Access/Disclosure (22%) such as lost or stolen backup tapes, disks, etc.&lt;/li&gt;
	&lt;li&gt;Lost/Improper Disposal (17%) such as papers with &lt;span class="caps"&gt;PHI&lt;/span&gt; that are lost or not properly destroyed&lt;/li&gt;
	&lt;li&gt;Intentional Hacking (7%) including stolen passwords, exploiting inherent Windows&amp;#174; vulnerabilities, Trojan horses, exploiting defaults, Main in the Middle, wireless attacks, social engineering, etc.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;In 2009, the laws changed such that medical record security breaches are now treated with the same force &amp;amp; effect as breaches of financial records.  The &lt;span class="caps"&gt;HIPAA&lt;/span&gt; Breach Notification Rule defines a medical record breach as &amp;#8220;an impermissible use or disclosure under the Privacy Rule that compromises the security or privacy of the protected health information (&lt;span class="caps"&gt;PHI&lt;/span&gt;) such that the use or disclosure poses a significant risk of financial, reputational, or other harm to the affected individual.&amp;#8221; with exceptions related to inadvertent and unintentional disclosures where the information cannot be further used or disclosed.&lt;/p&gt;
&lt;p&gt;In the event your medical practice has a medical record security breach, you are required to do the following:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Notice to Individuals:  Provide written notice to all affected patients following the discovery of a breach of unsecured &lt;span class="caps"&gt;PHI&lt;/span&gt;.  This notification must include a description of the breach; the types of information that were involved; the steps affected individuals should take to protect themselves from potential harm; a brief description of what your medical practice is doing to investigate the breach, mitigate the harm, and prevent further breaches; as well as, contact information for the medical practice.&lt;/li&gt;
	&lt;li&gt;Notice to Media (&amp;gt; 500 patients affected):  Provide notice (e.g. press release) to prominent media outlets serving the affected region including television, newspapers, etc.  This notification must include the same details as the Notice to Individuals above.&lt;/li&gt;
	&lt;li&gt;Notice to Secretary of Health and Human Services (&amp;gt; 500 patients affected):  Provide notice to the Secretary of Health and Human Services by filling out and electronically submitting a breach report form on the &lt;span class="caps"&gt;HHS&lt;/span&gt;.gov website.  The details of the medical record security breach will be posted on the &lt;span class="caps"&gt;HHS&lt;/span&gt; &amp;#8220;Wall of Shame&amp;#8221;.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;From there, you should expect that your practice will be thoroughly investigated and scrutinized by federal investigators and auditors who will determine how rigorous your practice was in attempting to secure &lt;span class="caps"&gt;PHI&lt;/span&gt;, and how negligent you were in allowing unauthorized use or disclosure of &lt;span class="caps"&gt;PHI&lt;/span&gt;.  Based on these findings, civil and/or criminal penalties will be imposed.&lt;/p&gt;
&lt;p&gt;Civil penalties established in Section 13410(d) of the &lt;span class="caps"&gt;HITECH&lt;/span&gt; Act of 2009 are based on a tiered strategy that reflect increasing levels of culpability, and corresponding increasing penalty amounts:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Tier 1:  Violator had no knowledge of the violation, and by exercising reasonable diligence, would not have known of the violation.  &lt;span class="caps"&gt;FINES&lt;/span&gt;:  $100+ per identical violation (i.e. affected patients), not to exceed $25,000 in a calendar year, and no more than $50,000 per violation, not to exceed $1.5 million for all identical violations in a calendar year.&lt;/li&gt;
	&lt;li&gt;Tier 2:  Violations due to reasonable cause.  &lt;span class="caps"&gt;FINES&lt;/span&gt;:  $1,000+ per violation (i.e. affected patients), not to exceed $100,000 for all identical violations in a calendar year, and no more than $50,000 per violation, not to exceed $1.5 million for all identical violations in a calendar year.&lt;/li&gt;
	&lt;li&gt;Tier 3:  Violations caused by &amp;#8220;willful neglect&amp;#8221; that were corrected.  &lt;span class="caps"&gt;FINES&lt;/span&gt;:  $10,000+ per violation (i.e. affected patients), not to exceed $250,000 for all identical violations in a calendar year, and no more than $50,000 per violation, not to exceed $1.5 million for all identical violations in a calendar year.&lt;/li&gt;
	&lt;li&gt;Tier 4:  Violations caused by &amp;#8220;willful neglect&amp;#8221; that were not corrected.  &lt;span class="caps"&gt;FINES&lt;/span&gt;:  $50,000+ per violation (i.e. affected patients), not to exceed $1.5 million for all identical violations in a calendar year.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Additionally, criminal penalties established in Section 13410(d) of the &lt;span class="caps"&gt;HITECH&lt;/span&gt; Act of 2009 may be imposed if &lt;span class="caps"&gt;PHI&lt;/span&gt; was knowingly obtained in violation of the law.&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Up to $50,000 and 1 year in prison for knowingly obtaining or disclosing &lt;span class="caps"&gt;PHI&lt;/span&gt;&lt;/li&gt;
	&lt;li&gt;Up to $100,000 and 5 years in prison if the offenses are committed under false pretenses&lt;/li&gt;
	&lt;li&gt;Up to $250,000 and 10 years in prison if the offenses are committed with the intent to sell, transfer, or use &lt;span class="caps"&gt;PHI&lt;/span&gt; for commercial advantage, personal gain, or malicious harm.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;So what&amp;#8217;s a medical practice to do?  Protect yourself by using an &lt;span class="caps"&gt;EHR&lt;/span&gt; platform with industry-leading security, that addresses every mode of medical record security breach, so that you can confidently avoid civil (and criminal) penalties, the pain &amp;amp; distraction of a federal investigation, and the long-term impacts on the reputation of your medical practice.&lt;/p&gt;
&lt;p&gt;The &lt;strong&gt;SiliconMesa&amp;#174; &lt;span class="caps"&gt;EHR&lt;/span&gt;&lt;/strong&gt; platform virtually eliminates the top 4 root causes of actual medical record security breaches:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Thefts (54%):  With &lt;strong&gt;SiliconMesa&amp;#174; &lt;span class="caps"&gt;EHR&lt;/span&gt;&lt;/strong&gt;, there is no &lt;span class="caps"&gt;PHI&lt;/span&gt; stored locally on your PC, laptop, tablet, or smartphone.  All data is securely accessed &amp;#8220;over the cloud&amp;#8221; from the &lt;span class="caps"&gt;HIPAA&lt;/span&gt;-compliant SiliconMesa Data Center with 256-bit encryption of all data, both &amp;#8220;at rest&amp;#8221; and in-transit using our secure &lt;span class="caps"&gt;SSL&lt;/span&gt; tunnel.&lt;/li&gt;
	&lt;li&gt;Unauthorized Access/Disclosure (22%):  With &lt;strong&gt;SiliconMesa&amp;#174; &lt;span class="caps"&gt;EHR&lt;/span&gt;&lt;/strong&gt;&amp;#8217;s 2-factor authentication, every user is required to authenticate using their mobile phone (or land line) before ever entering a username and password.  Also, SiliconMesa will backup all of your data, so there is no need to deal with lost or stolen backups.&lt;/li&gt;
	&lt;li&gt;Lost/Improper Disposal (17%):  With &lt;strong&gt;SiliconMesa&amp;#174; &lt;span class="caps"&gt;EHR&lt;/span&gt;&lt;/strong&gt;, you can effectively eliminate the need for &lt;span class="caps"&gt;PHI&lt;/span&gt; records on paper &amp;#8211; go paperless!&lt;/li&gt;
	&lt;li&gt;Intentional Hacking (7%):  The &lt;strong&gt;SiliconMesa&amp;#174; &lt;span class="caps"&gt;EHR&lt;/span&gt;&lt;/strong&gt; platform is built upon Security Enhanced Linux (SELinux) &amp;#8211; not Windows&amp;#174;.  SELinux was co-developed by the U.S. National Security Agency to protect our country&amp;#8217;s most sensitive defense and intelligence data.  Also, the SiliconMesa Data Center keeps all firewalls, servers, and storage devices up-to-date with the latest security upgrades so you don&amp;#8217;t have to worry about it.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Contact SiliconMesa today, to setup your 30-day risk-free trial, and get the piece of mind you need to focus on doing what you do best &amp;#8211; caring for your patients!&lt;/p&gt;</description>
      <author>SiliconMesa</author>
      <pubDate>Mon, 02 Apr 2012 16:28:36 -0600</pubDate>
      <link>http://siliconmesa.com/blog/4-how-to-avoid-a-costly-medical-record-security-breach</link>
      <guid>http://siliconmesa.com/blog/4-how-to-avoid-a-costly-medical-record-security-breach</guid>
    </item>
    <item>
      <title>The competition vs. SiliconMesa&#174; EHR</title>
      <description>&lt;p&gt;With a federal mandate and all the stimulus money, why is &lt;span class="caps"&gt;EHR&lt;/span&gt; adoption so slow among medical practices?  Our market research shows most &lt;span class="caps"&gt;EHR&lt;/span&gt; vendors on the market have missed the concept of delivering real added value for small-medium sized practices.&lt;/p&gt;
&lt;p&gt;Some &lt;span class="caps"&gt;EHR&lt;/span&gt; vendors target the needs of large provider networks &amp;amp; institutions (and their incentive money) with expensive customer-hosted software licenses requiring locally purchased servers &amp;amp; storage networks, managed by in-house IT staff.&lt;/p&gt;
&lt;p&gt;Other &lt;span class="caps"&gt;EHR&lt;/span&gt; vendors target mass volume with &amp;#8220;bare bones&amp;#8221; &lt;span class="caps"&gt;EHR&lt;/span&gt; products that are often abandoned for a variety of reasons.  Many are difficult to use; require significant changes to existing workflows; provide poor customer service and technical support; have hidden hardware &amp;amp; software costs; and have unknown security risks.&lt;/p&gt;
&lt;p&gt;SiliconMesa offers a complete solution with no upfront cost, and no commitment. Our success = your success; our goal is for you to become proficient, tell your friends, and collect your referral bonus!  :-)&lt;/p&gt;</description>
      <author>SiliconMesa</author>
      <pubDate>Fri, 09 Mar 2012 17:39:24 -0600</pubDate>
      <link>http://siliconmesa.com/blog/3-the-competition-vs-siliconmesa-ehr</link>
      <guid>http://siliconmesa.com/blog/3-the-competition-vs-siliconmesa-ehr</guid>
    </item>
    <item>
      <title>Why choose SiliconMesa&#174; EHR?</title>
      <description>&lt;p&gt;SiliconMesa believes that the right &lt;span class="caps"&gt;EHR&lt;/span&gt; must deliver:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;An affordable path to &amp;#8220;Meaningful Use&amp;#8221;, and &lt;span class="caps"&gt;YOUR&lt;/span&gt; stimulus incentive money&lt;/li&gt;
	&lt;li&gt;Charting &lt;span class="caps"&gt;YOUR&lt;/span&gt; &lt;span class="caps"&gt;WAY&lt;/span&gt; with customized forms &amp;amp; templates to fit your existing workflows, and efficient data input technology to reduce data entry time&lt;/li&gt;
	&lt;li&gt;A user-friendly experience with an intuitive interface that bundles all &lt;span class="caps"&gt;EHR&lt;/span&gt; and Practice Management functions of the medical practice&lt;/li&gt;
	&lt;li&gt;A highly secure and robust architecture, accessible anywhere &amp;amp; anytime, to avoid security breaches and the resulting fines &amp;amp; penalties&lt;/li&gt;
	&lt;li&gt;Customer service excellence&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;SiliconMesa is committed to fulfilling these needs, with a complete &lt;span class="caps"&gt;EHR&lt;/span&gt; and Practice Management solution that fits &lt;span class="caps"&gt;YOU&lt;/span&gt; &amp;#8211; not the other way around!&lt;/p&gt;</description>
      <author>SiliconMesa</author>
      <pubDate>Fri, 17 Feb 2012 14:48:26 -0600</pubDate>
      <link>http://siliconmesa.com/blog/1-why-choose-siliconmesa-ehr</link>
      <guid>http://siliconmesa.com/blog/1-why-choose-siliconmesa-ehr</guid>
    </item>
    <item>
      <title>Why you need an EHR?</title>
      <description>&lt;p&gt;In 2009, President Obama signed into law the &lt;span class="caps"&gt;HITECH&lt;/span&gt; Act (Health Information Technology for Economic &amp;amp; Clinical Health) as part of the American Recovery &amp;amp; Reinvestment Act (&lt;span class="caps"&gt;ARRA&lt;/span&gt;) &amp;#8211; also known as the &amp;#8220;Stimulus Package&amp;#8221;.  The goal of this legislation was to reduce healthcare costs and improve patient care quality by driving all medical data in the form of Electronic Hedical Records (&lt;span class="caps"&gt;EHR&lt;/span&gt;) to become the national standard by the end of 2014.&lt;/p&gt;
&lt;p&gt;The &lt;span class="caps"&gt;HITECH&lt;/span&gt; Act significantly widens the scope of &lt;span class="caps"&gt;HIPAA&lt;/span&gt; privacy &amp;amp; security rules, increases potential legal liability &amp;amp; reduced Medicare reimbursement payments for non-compliance, and provides mechanisms for periodic government audits &amp;amp; enforcement.  However, the &lt;span class="caps"&gt;HITECH&lt;/span&gt; Act also provides significant financial incentives designed to accelerate adoption of &lt;span class="caps"&gt;EHR&lt;/span&gt; technology.&lt;/p&gt;
&lt;p&gt;Eligible healthcare providers who demonstrate &amp;#8220;Meaningful Use&amp;#8221; of an &lt;span class="caps"&gt;ONC&lt;/span&gt;-&lt;span class="caps"&gt;ATCB&lt;/span&gt; Certified &lt;span class="caps"&gt;EHR&lt;/span&gt; technology can qualify for federal stimulus money.&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Up to $44,000 over 5 years for Medicare eligible providers&lt;/li&gt;
	&lt;li&gt;Up to $63,750 over 6 years for Medicaid eligible providers&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;However, if you choose the right &lt;span class="caps"&gt;EHR&lt;/span&gt; product to fit your practice&amp;#8217;s actual workflow, then additional benefits include:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Efficiency and productivity improvements leading to lower operating costs, and increased patient volume (i.e. revenue)&lt;/li&gt;
	&lt;li&gt;Improved patient care quality, fewer mistakes, and possibly lower malpractice insurance premiums; and&lt;/li&gt;
	&lt;li&gt;Accurate charge capture and faster revenue cycle.&lt;/li&gt;
&lt;/ul&gt;</description>
      <author>SiliconMesa</author>
      <pubDate>Fri, 20 Jan 2012 17:31:01 -0600</pubDate>
      <link>http://siliconmesa.com/blog/2-why-you-need-an-ehr</link>
      <guid>http://siliconmesa.com/blog/2-why-you-need-an-ehr</guid>
    </item>
  </channel>
</rss>
