BA, BAA, HIPAA – who is it, what is it, and why should you care?
The U.S. Department of Health and Human Services (HHS) defines a business associate as a “subcontractor that creates, receives, maintains or transmits protected health information on behalf of another business associate.”
BAAs lay out all the responsibilities of the vendor as it relates to the handling of personal information; they also lay out the obligations in the event of breaches.