The Basics of Business Associate Agreements (BAAs) for Labs

When it comes to protected health information, it’s important that labs manage contracts with external sources to ensure HIPAA compliance.

Laboratorians involved in management activities have likely established agreements with external professionals or consultants who may have access to patient-specific information. Such information requires protection to secure patient health privacy. The Administrative Simplification provisions under the Health Insurance Portability and Accountability Act of 1996 (HIPAA) address what’s required of covered entities and their business associates (BAs) when it comes to protecting patient information. It is important to establish policies, as required by law, to manage contracts with external sources who will have access to protected health information (PHI).

Key BAA Definitions from HIPAA

HIPAA establishes definitions for various components of business associate agreements and contracts. More detail can be found in 45 CFR 160.103, but here are some of the key definitions: 1