Category: HIPAA Security
Responsible Office: UBIT HIPAA Compliance
Responsible Executive: Vice President and Chief Information Officer (VPCIO)
Approved By (Name/Title): J. Brice Bible, VPCIO
CATEGORY: Organizational Requirements
TYPE: Required Implementation Specification for Business Associate Contracts and Other Arrangements
CITATION: 45 CFR 164.314(a)(2)(ii)
The University at Buffalo Information Technology (UBIT) operates as a covered entity as defined by the U.S. Department of Health and Human Services Office of Civil Rights. HIPAA Regulation Text 45 CFR 164.314(a)(1) requires a covered entity to ensure that a contract or other arrangement required by §164.308(b)(3) Business Associate Contracts and Other Arrangements must meet the requirements of paragraph §164.314(a)(2)(i) Business Associate Contracts and §164.314(a)(2)(ii) Other Arrangements of this section, as applicable.
UBIT maintains compliance with HIPAA Security Policies and with paragraph 164.314 (a)(1) Business Associate Contracts or Other Arrangements if it has another arrangement in place that meets the requirements of §164.504(e)(3) Other Arrangements.
This policy applies to all UBIT workforce members.
Workforce members: Adhere to all policies and procedures as written.
HIPAA Security and Privacy Officer: In conjunction with the Compliance Officer, the HIPAA Security and Privacy Officer ensures that UBIT maintains compliance with HIPAA Security Policies if it has another arrangement in place that meets the requirements of §164.504(e)(3) Other Arrangements.
Compliance Officer: Ensures that UBIT maintains compliance with HIPAA Security Policies if it has another arrangement in place that meets the requirements of §164.504(e)(3) Other Arrangements.
HIPAA Security and Privacy Officer
Website: http://www.buffalo.edu/ubit.html
Vice President and Chief Information Officer
J. Brice Bible
517 Capen Hall
Buffalo, NY 14260
Phone: 716-645-7979
Email: vpcio@buffalo.edu
Website: http://www.buffalo.edu/ubit.html
Date Approved: 12/6/2017