HIPAA Compliance Policy

HIPAA Compliance Policy

Introduction

Anarq Health, LLC (“Anarq Health,” “we,” or “our”) is committed to safeguarding Protected Health Information (PHI) in accordance with the Health Insurance Portability and Accountability Act (HIPAA) and applicable privacy laws. This policy outlines how we protect, manage, and ensure the confidentiality and security of PHI processed in the course of providing healthcare workforce services.

Our Commitment to HIPAA Compliance

Anarq Health is dedicated to maintaining the privacy, integrity, and security of PHI. We:

  • Follow HIPAA privacy and security standards in all business practices
  • Educate and train our workforce members on HIPAA compliance requirements
  • Apply the minimum‑necessary rule when accessing PHI
  • Maintain internal policies to ensure ongoing compliance and accountability

Use & Disclosure of PHI

We may use and disclose PHI only for authorized purposes, including workforce placement, clinical coordination, compliance with legal obligations, and other permitted uses under HIPAA. Anarq Health:

  • Limits PHI use to legitimate business and clinical‑support purposes
  • Does not disclose PHI without proper authorization, unless permitted or required by law
  • Implements safeguards to prevent unauthorized access or disclosure

Patient Rights

Individuals whose PHI may be accessed or managed retain the right to:

  • Request access to their health information
  • Request corrections to their records
  • Receive an accounting of certain disclosures
  • Submit privacy‑related requests or concerns

 

Requests regarding PHI rights may be directed to Anarq Health’s HIPAA Compliance Officer.

Data Security & Protection Measures

Anarq Health maintains physical, administrative, and technical safeguards designed to protect PHI, including:

  • Role‑based access control and secure system authentication
  • Secure transmission and storage of PHI
  • Enforcement of confidentiality requirements for personnel
  • Routine security reviews and policy updates

 

We continually evaluate and strengthen our privacy and cybersecurity practices.

Breach Notification & Incident Response

In the event of a suspected or confirmed HIPAA‑related breach, Anarq Health will follow federal and state requirements including:

  • Notifying affected individuals without unreasonable delay
  • Reporting breaches to the U.S. Department of Health & Human Services when applicable
  • Cooperating with regulatory agencies as required
  • Documenting investigation and corrective action steps

Reporting Concerns or Violations

Anarq Health encourages prompt reporting of suspected privacy violations or concerns related to HIPAA compliance. Reports may be submitted confidentially, and retaliation against good‑faith reporters is strictly prohibited. All reported matters will be investigated promptly and addressed as appropriate.

Contact Information

For HIPAA‑related requests, concerns, or compliance questions, please contact:

Email: info@anarqhealth.com

Phone: +1 (928) 218‑9655

© Anarq Health, LLC — Confidential & Proprietary | 1120 W University Ave, Suite #200, Flagstaff, AZ 86001‑2806

© 2025. All Rights Reserved | Anarq Health