Video: Every Case Tells a Story| Webinar: ACR/CHEST ILD Guidelines in Practice

An official publication of the ACR and the ARP serving rheumatologists and rheumatology professionals

  • Conditions
    • Axial Spondyloarthritis
    • Gout and Crystalline Arthritis
    • Myositis
    • Osteoarthritis and Bone Disorders
    • Pain Syndromes
    • Pediatric Conditions
    • Psoriatic Arthritis
    • Rheumatoid Arthritis
    • Sjögren’s Disease
    • Systemic Lupus Erythematosus
    • Systemic Sclerosis
    • Vasculitis
    • Other Rheumatic Conditions
  • FocusRheum
    • ANCA-Associated Vasculitis
    • Axial Spondyloarthritis
    • Gout
    • Psoriatic Arthritis
    • Rheumatoid Arthritis
    • Systemic Lupus Erythematosus
  • Guidance
    • Clinical Criteria/Guidelines
    • Ethics
    • Legal Updates
    • Legislation & Advocacy
    • Meeting Reports
      • ACR Convergence
      • Other ACR meetings
      • EULAR/Other
    • Research Rheum
  • Drug Updates
    • Analgesics
    • Biologics/DMARDs
  • Practice Support
    • Billing/Coding
    • EMRs
    • Facility
    • Insurance
    • QA/QI
    • Technology
    • Workforce
  • Opinion
    • Patient Perspective
    • Profiles
    • Rheuminations
      • Video
    • Speak Out Rheum
  • Career
    • ACR ExamRheum
    • Awards
    • Career Development
  • ACR
    • ACR Home
    • ACR Convergence
    • ACR Guidelines
    • Journals
      • ACR Open Rheumatology
      • Arthritis & Rheumatology
      • Arthritis Care & Research
    • From the College
    • Events/CME
    • President’s Perspective
  • Search

What Rheumatologists Need to Know about Payer Audits

Steven M. Harris, Esq.  |  Issue: March 2016  |  March 15, 2016

Bacho/shutterstock.com

Bacho/shutterstock.com

Both government and private payers continue to aggressively monitor providers to prevent and recover overpayments. This is evidenced by the fact that the number of audits conducted in recent years has increased dramatically. A negative audit finding can result in the need to repay five- or seven-figure amounts.

Types of Audits

Private Payer Audits
Private payer audits take two forms: 1) informal reviews and 2) formal audits. These audits can be the result of actual allegations or evidence of non-compliance, or they can be random, in which general compliance is assessed. The procedure for such audits is typically determined by contract or the payer’s provider handbook and in accordance with applicable state law. Prepayment reviews may be conducted, in which the sufficiency of a claim—and its supporting documentation—is determined before payment is made to the provider. Post-payment reviews can also be performed, during which claims are analyzed after the provider has been paid to determine if an overpayment was made. If so, a recoupment will be sought from the provider.

ad goes here:advert-1
ADVERTISEMENT
SCROLL TO CONTINUE

Medicare Audits
The Centers for Medicare and Medicaid Services (CMS) is the agency responsible for Medicare audits. These audits can take one of three forms:

  1. Comprehensive Error Rate Testing (CERT) audits—These typically focus on providers who provide high-cost items or services, have high volume and/or have atypical billing or coding practices.
  2. Recovery Audit Contractor’s Program (RAC) audits—These are performed by private contractors who are paid on a percentage of the amount of the improper payment discovered.
  3. Zone Program Integrity Contractor (ZPIC) audits—These are performed by CMS contractors and are the most serious of the three audit types. Contractors mine the provider’s data for compliance with Medicare coverage and coding policies and investigate fraud, and may prepare cases for civil or criminal referral to CMS or law enforcement agencies.

Medicaid Audits
Medicaid audits focus on compliance with both CMS and applicable state regulations, and investigate fraud. Any instances of fraud that are found will be reported to the state attorney general.

ad goes here:advert-2
ADVERTISEMENT
SCROLL TO CONTINUE

Audit Focus

The primary focus of audits in recent years has been medical necessity. Much of this audit activity is associated with payer concerns about specific fraud and abuse issues. Payers may be tipped off to such issues due to consistent billing by a provider for high volumes of certain high-level services, high volumes of evaluation and management services or by consistent referrals of patients for certain testing.

During audits, payers require documentation of medical necessity. However, private payers often have arbitrary and vague guidelines for defining and determining medical necessity, particularly when dealing with physicians or ordering clinicians. This causes frustration among providers, who often question what role private payers play in determining medical necessity. The definition of medical necessity can vary by payer—and within payer—depending on the underlying plan. Therefore, it is critical that providers read their payer contracts and policy and coverage manuals carefully. When in doubt, it is best to confirm requirements with the payer.

If possible, all requested information should be submitted to the auditor at one time. This is important because if any information is missing, the case can be denied.

Regardless of the definition, medical necessity is a precondition to coverage. The criteria to establish medical necessity can be different from one setting to another because each payer has the ability to establish its own criteria. However, government and private payers generally require proof that the services were reasonable and necessary to diagnose or treat a patient’s medical condition. To prove this, providers should document the diagnosis for all procedures performed and all diagnostic tests ordered. In the case of repeat procedures, providers should clearly note the outcome of the previous procedure and the basis for reordering.

Audit Preparation

The best way to ensure compliance and readiness when an audit comes is to develop and implement a compliance plan well in advance of any audit. Regular and periodic training and education should be conducted regarding audit response obligations and responsibilities. An audit response plan should be implemented to ensure key deadlines are met. As always, the key to compliance is to conduct periodic self-audits or independent audits in order to proactively identify issues and mitigate their impact.

Responding to Audit Requests

All audit requests should be taken very seriously. Payers often follow what other payers are doing. Therefore, a problem audit with one payer can cause other payers to initiate their own audits. For this reason, it is critical to respond appropriately to each audit request. Auditors often check only a few billing records. If errors are found, they will then extrapolate and may penalize providers.

If a provider receives an audit request, it is important to carefully review the audit request and supply everything reasonably requested. If it is not possible to gather the requested material before the auditor’s deadline, an extension should be requested. If possible, all requested information should be submitted to the auditor at one time. This is important because if any information is missing, the case can be denied. Also, additional time often is not granted to resubmit any information that was not included earlier. Therefore, the more information collected and submitted up front, the better. (Editor’s note: The ACR recommends that rheumatology offices have standard policies and procedures for responding to medical record audit requests. All staff should be aware of the policies, and if possible, a contact person who has strong working knowledge of your chart systems and procedures should be assigned. This person should also be well versed in your office’s policies and guidelines in case any questions arise.)

As previously stated, audits are part of an extrapolation process. If an auditor finds a significant error rate in its review of a handful of charts and determines that certain medical information is missing, the auditor will then look back at all the CPT codes involved over the previous two years to calculate the overpayment made to the provider.

When responding to an audit request, providers must be thorough, clear and concise. All necessary information should be submitted with the response. The response and supporting documentation should be submitted in a manner that allows the payer or contractor to quickly review the information and understand the provider’s arguments. It should clearly state what measures the provider has already taken to stop existing problems and prevent additional issues in the future. The response should always be professional and non-confrontational. That said, providers should not hesitate to address procedural, legal or factual flaws in the auditor’s position.

Preparation and periodic compliance training are the best ways to ensure a smooth audit experience with minimal infractions. Unfavorable results can be very difficult to reverse without resorting to an administrative law judge, the Department of Insurance, litigation or lobbying efforts. Therefore, the more training and protections a provider can provide now, the less damaging and expensive an audit will be.


Steven M. Harris, EsqSteven M. Harris, Esq., is a nationally recognized healthcare attorney and a member of the law firm McDonald Hopkins LLC. Contact him via email at [email protected].

Page: 1 2 3 | Multi-Page
Share: 

Filed under:Billing/CodingLegal UpdatesPractice Support Tagged with:AuditsLegalMedicaidMedicarenoncompliancepayerphysician practicePractice Managementrheumatologist

Related Articles

    Different Payer Audits Require Different Preparation & Response

    June 21, 2018

    Wright Studio / shutterstock.com For a provider of healthcare services, payer audits are always a possibility. Both government and private payers consistently monitor providers to prevent fraud, overpayment, and improper billing or coding procedures. Audits can be nerve-racking and intimidating, even if a provider is billing correctly. Improper billing can lead to civil and criminal…

    Understanding & Preparing for Payer Audits

    June 21, 2018

    Audit activity among Medicare and most third-party payers has increased in response to pressure to reduce healthcare costs. The return of billions of dollars to Medicare, Medicaid and third-party programs through these medical audit reviews has also increased. For example, the Government Accountability Office (GAO) 2014 Annual Report estimated that the Centers for Medicare &…

    Phase 2 of HIPAA Audit Program Launches

    May 13, 2016

    Bacho/shutterstock.com With many competing priorities facing physician practices, HIPAA compliance and security is not a topic that usually makes it to the top of the list. But this is not the case with the Department of Health and Human Services’ Office for Civil Rights (OCR), because it has initiated a new phase of audits of…

    Preparing for Increased HIPAA Audits Among Smaller Rheumatology Providers

    May 13, 2016

    love work 51/shutterstock.com Recent enforcement activities of the Department of Health and Human Services’ Office for Civil Rights (OCR) have shown an increase in fines and penalties assessed against smaller providers for failing to comply with the privacy, security and breach notification requirements of the Health Insurance Portability and Accountability Act (HIPAA). Historically, OCR has…

  • About Us
  • Meet the Editors
  • Issue Archives
  • Contribute
  • Advertise
  • Contact Us
  • Copyright © 2025 by John Wiley & Sons, Inc. All rights reserved, including rights for text and data mining and training of artificial technologies or similar technologies. ISSN 1931-3268 (print). ISSN 1931-3209 (online).
  • DEI Statement
  • Privacy Policy
  • Terms of Use
  • Cookie Preferences