San Bernardino header
File #: 1708   
Type: Consent Status: Passed
File created: 2/4/2020 Department: County Administrative Office
On agenda: 2/11/2020 Final action: 2/11/2020
Subject: v Agreement with Plante & Moran, PLLC for Privacy and Security Risk Analysis Services
Attachments: 1. CON-CAO-021120-HIPAA HITECH Privacy and Security Risk Analysis -Plante Moran 1.31.pdf, 2. Item #31 Executed BAI, 3. 20-77 Executed Contract
REPORT/RECOMMENDATION TO THE BOARD OF SUPERVISORS
OF THE COUNTY OF SAN BERNARDINO
AND RECORD OF ACTION

February 11, 2020

FROM
GARY McBRIDE, Chief Executive Officer, County Administrative Office

SUBJECT
Title v
Agreement with Plante & Moran, PLLC for Privacy and Security Risk Analysis Services
End

RECOMMENDATION(S)
Recommendation
Approve Agreement with Plante & Moran, PLLC for Health Insurance Portability and Accountability Act/Health Information Technology for Economic and Clinical Health Act of 2009 Privacy and Security Risk Analysis services in an amount not to exceed $603,000 for the period of February 11, 2020 to February 10, 2021, with three, one-year options to extend.
(Presenter: Gary McBride, Chief Executive Officer, 387-5418)
Body

COUNTY AND CHIEF EXECUTIVE OFFICER GOALS & OBJECTIVES
Improve County Government Operations.
Operate in a Fiscally-Responsible and Business-Like Manner.
Provide for the Safety, Health and Social Service Needs of County Residents.

FINANCIAL IMPACT
This item will not result in the use of additional Discretionary General Funding (Net County Cost). The total estimated cost for Plante & Moran, PLLC (Plante Moran) to conduct a Health Insurance Portability and Accountability Act (HIPAA)/Health Information Technology for Economic and Clinical Health Act of 2009 (HITECH) Privacy and Security Risk Analysis (HIPAA/HITECH Risk Analysis) services is $603,000. Adequate appropriation and revenue exist in the 2019-20 budgets for Arrowhead Regional Medical Center, County Administrative Office (CAO), Department of Behavioral Health, Department of Public Health, and Information Services Department to fund the $603,000 cost of this agreement and will be included in future recommended budgets. This HIPAA/HITECH Risk Analysis includes department costs for both technical (Mandatory) and non-technical (Optional) aspects of complying with privacy and security standards, as detailed in the table below.

Department
Mandatory Cos...

Click here for full text