Laserfiche WebLink
<br />EXHIBIT B <br />BUSINESS ASSOCIATE AGREEMENT <br /> <br /> <br />This Business Astered into by and between City of Roseville on <br />behalf of the Plan and MEDSURETY, LLC. siness <br />I. Purpose <br />A. Business Associate is contractually obligated to provide certain services related to one or <br />morntities and regulated under HIPAA. The parties <br />to this Agreement acknowledge that (1) Business Associa <br />that term is defined and regulated under the Health Insurance Portability and <br />Accountability Act of 199and (2) Business Associate provides <br />rm is defined and regulated under <br />HIPAA. <br />B. This Agreement is intended to cent between the <br />Plan, as a Covered Entity, and the Business Associate, as required under the privacy and <br />security provisions of HIPAA, as amended. Portions of HIPAA apply directly to Business <br />Associate as provided in the Heath Information Technology for Economic and Clinical <br />Health Act American Recovery and Reinvestment Act of 2009 <br />s under this Agreement may be the same as, or <br />in some cases in addition to, Business s under HIPAA as <br />provided in HITECH. <br />II. Special Definitions <br />The following definitions are used by this Agreement: <br /> <br />A. Agreement means this Business Associate Agreement, which is an agreement <br />required under 45 C.F.R. Section 164.314(a)(2) between a Business Associate and a <br />Covered Entity. <br />B. ARRA means the American Recovery and Reinvestment Act of 2009. <br />C. Breach means the unauthorized acquisition, access, use, or disclosure of Protected <br />Health Information regarding a Covered Individual that compromises the security or <br />privacy of the Protected Health Information as determined in accordance with 45 C.F.R. <br />Section 164.402. Notwithstanding the foregoing, a Breach does not include: (1) any <br />unintentional acquisition, access, or use of Protected Health Information by an employee <br />or individual acting under the authority of Covered Entity or Business Associate and in <br />the scope of the employment or relationship between the employee or individual and <br />Covered Entity or Business Associate, provided such information is not further acquired, <br />accessed, used, or disclosed by any person without authorization; (2) any inadvertent <br />disclosure by an individual who is authorized to access Protected Health Information at <br />acility to another similarly situated individual at <br />the same facility, provided such information is not further acquired, accessed, used, or <br />disclosed by any person without authorization; and (3) a disclosure of Protected Health <br />Information in a situation in which Business Associate has a good faith belief that the <br />person(s) to which the unauthorized disclosure was made would not reasonably have <br />been able to retain such information. <br />MEDSURETY, LLC <br />25 <br />Administration Agreement (Non-ERISA) Exhibit <br />Business Associate Agreement <br /> <br />