Trust

How we handle protected health information

Medical billing requires us to work with sensitive healthcare information.

When VeroRCM handles protected health information on behalf of a physician practice, we do so as a business associate and use that information for the billing and revenue cycle work we have been asked to perform.

Common questions

HIPAA questions we get asked

Is VeroRCM HIPAA certified?

There is no official HHS-issued HIPAA certification or government HIPAA seal. When Vero handles PHI for a practice, we do so as a business associate and operate under the applicable Business Associate Agreement.

Does Vero sign a BAA?

When our work requires us to access PHI as a business associate, the appropriate BAA is put in place before that work begins.

Who can access our PHI?

Access is limited according to the work being performed on the account.

Do you use patient information for marketing?

No. PHI received as part of a billing relationship is used for the authorized billing and revenue cycle work, not to market to the practice's patients.

Where should a patient send a records request?

Patients should contact their physician practice or healthcare provider directly.

Questions

Have a question about how we handle healthcare data?

Email team@verorcm.com or use our contact form.

For information about the public website, see our Privacy Policy.