Legal · Regulated engagements

Business Associate Agreement

When an audit engagement touches a Covered Entity's Protected Health Information (PHI), kolm may act as a Business Associate under 45 CFR Parts 160 and 164. This agreement sets the permitted uses and disclosures of PHI, the safeguards we apply, and each party's obligations for the life of the engagement.

Orientation / Does this apply to you?
01 / The agreement
02 / Execute

Start a regulated engagement.

For audit engagements that involve Protected Health Information, email us to initiate the BAA process. No sales call required to countersign.

Compiler-ready Signed artifacts Sample report

Scope is contractual. Permission posture, redaction and audit-trail integrity are assessed. Injection is tested and reported, not warranted.

One email starts the paperwork.

The template arrives the same business day, and a countersigned PDF follows within two business days of final text.

Caveats: Scope is contractual. Permission posture, redaction and audit-trail integrity are assessed. Injection is tested and reported, not warranted.