13.07.2015 Views

Part 4 - Iowa Medicaid Enterprise

Part 4 - Iowa Medicaid Enterprise

Part 4 - Iowa Medicaid Enterprise

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

RFP MED-12-001 | Technical Proposal<strong>Iowa</strong> <strong>Medicaid</strong> <strong>Enterprise</strong> System Service Procurement | MMIS and Core MMIS OperationsTraining participants complete an evaluation form after each training course and share their feedback,which is reviewed by the unit trainer, training coordinator, and supervisor. Comments and suggestions areapplied and applicable updates are made to the course content, training materials and delivery to improvethe training course.7.8 Security and ConfidentialityRFP Section 5.8Team Noridian's security and confidentiality solution consists of multiple components that implementand reinforce security and confidentiality policies, procedures, and guidelines. Our securityarchitecture encompasses physical, system, and administrative (non-system/procedural) components, toensure appropriate security and confidentiality as they apply to HIPAA and other industry regulations.Administrative security and confidentiality policies and procedures are leveraged from our existingTeam Noridian-audited Centers for Medicare & <strong>Medicaid</strong> Services (CMS) systems.Team Noridian understands that security and confidentiality are critical to the Department given that thesolution deals with PHI, and has proven expertise to implement and operate <strong>Medicaid</strong> systems andbusiness operations borne from our extensive experiences in both Medicare and <strong>Medicaid</strong>.Team Noridian’s commitment to maintaining the security and confidentiality of data is demonstratedthrough our strong ethical and values-oriented corporate culture, which forms the foundation for oursystem of internal controls. We have established personnel policies, a code of conduct, and corporatevalues that clearly communicate a commitment to these principles:• Our Customers. We are committed to understand our customer's needs and we proactively deliverproducts and services to meet those needs.• A Dynamic Workplace. Working together, we encourage an environment where every employee canpursue and be recognized for outstanding individual and team performance with diverse opportunitiesfor personal growth.• Excellence. Excellence is an expectation. We continually improve and seek to be the best.• Integrity. We are trustworthy, ethical, honest, and accountable for our actions.Team Noridian expects that security and confidentiality compliance is the duty of all staff, not just a givenfunctional department. Security and confidentiality have many facets, and Team Noridian hasimplemented a management structure and has defined specific expectations related to internal controls toensure data privacy is always considered and practiced. We have an existing entity-wide security andconfidentiality program that meets all the Department's requirements.Team Noridian believes it is an employee’s responsibility to promote and ensure the integrity ofconfidentiality requirements. To provide Team Noridian employees a forum for voicing concerns, wehave established incident reporting policies and procedures. The procedures identify the types of securityand confidentiality incidents that must be reported and the individual to whom reports should be made.The procedures allow for multiple methods of reporting incidents, including by telephone, in writing,electronically, in-person, or anonymously. Team Noridian's security and confidentiality architecturesolution consists of multiple components that implement and reinforce confidentiality and securitypolicies, procedures, and guidelines. Our security architecture encompasses physical, system, andadministrative (non-system/procedural) components, to ensure appropriate confidentiality and security forour proposed solution. Administrative security and confidentiality policies and procedures are leveragedfrom our existing Team Noridian-audited CMS systems.7 | 41

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!