Skip to content
Medonix

Glossary · Compliance

Business Associate Agreement (BAA)

A written contract under HIPAA between a covered entity (the practice) and a business associate (a vendor that handles PHI). Required before any PHI is shared with the business associate.

Definition

Business Associate Agreement (BAA).

A written contract under HIPAA between a covered entity (the practice) and a business associate (a vendor that handles PHI). Required before any PHI is shared with the business associate.

Sources

Primary references for this entry.

  • HHS Office for Civil Rights HIPAA Privacy Rule.
  • 45 CFR 164.504(e).

Related terms

Other terms in Compliance.

See full glossary

Frequently asked

About Business Associate Agreement (BAA).

A written contract under HIPAA between a covered entity (the practice) and a business associate (a vendor that handles PHI). Required before any PHI is shared with the business associate.

Talk to RCM

Ready to recover every dollar your practice earns?

See your projected revenue lift in 60 seconds, or talk to a senior RCM strategist now. No commitment. Same-day slots available.

  • 30-day parallel-run guarantee
  • Targets written into the contract
  • HIPAA · SOC 2 Type II · HITRUST
Get a free audit +1-972-944-0367

24/7 · U.S. healthcare only