HIPAA & Data Security
Last Updated: August 17, 2026
At ONEX OMS LLC, protecting the privacy and security of healthcare information is an important part of our medical billing and revenue cycle management services.
When providing services that involve Protected Health Information (PHI), ONEX follows applicable HIPAA requirements and maintains safeguards designed to protect sensitive healthcare information.
1. HIPAA & Protected Health Information
ONEX provides medical billing and healthcare administrative services that may involve access to Protected Health Information (PHI).
We use PHI only for authorized purposes related to billing, healthcare operations, and the services provided to our clients.
2. Confidentiality
We are committed to maintaining the confidentiality of PHI and preventing unauthorized use, disclosure, or misuse of healthcare information.
Access to PHI is restricted to authorized personnel who require access to perform their responsibilities.
3. Security Safeguards
ONEX uses administrative, technical, and organizational safeguards designed to protect PHI, including:
- Secure systems and appropriate security measures
- Encryption and protection of sensitive information
- Restricted access to authorized personnel
- Employee confidentiality requirements
These measures are designed to help protect information from unauthorized access, use, disclosure, alteration, or loss.
4. Business Associate Agreements
Where ONEX acts as a Business Associate under HIPAA, the applicable Business Associate Agreement (BAA) establishes the responsibilities and requirements for handling PHI.
Our BAA framework addresses PHI confidentiality, security safeguards, breach notification, subcontractor requirements, and the return or secure destruction of PHI when applicable.
5. Breach Notification
Unauthorized access to or disclosure of PHI is addressed in accordance with applicable requirements and contractual obligations. Our BAA provides for notification of an unauthorized access or data breach within 72 hours of discovery.
6. Subcontractors
Where subcontractors are involved in handling PHI, applicable HIPAA compliance and confidentiality requirements are extended to those parties.
7. PHI on Our Website
Please do not submit patient medical records, PHI, or other sensitive patient information through general website contact or consultation forms.
If you need to provide PHI to ONEX, please use an appropriate secure method provided or approved by ONEX.
8. Contact Us
If you have questions about ONEX’s HIPAA-related practices or data security, please contact us:
ONEX OMS LLC
30 N Gould St STE 5320
Sheridan, WY 82801
Email: info@onexbillinghub.com
Phone: 307-271-6806
