CMS Paid $390 Billion in Claims; $36 Billion Paid in Error—2017 CERT Report

The CERT study gives one the opportunity to identify potential errors the same way that the auditors do.

With nearly a million physicians in this country, how do auditing organizations determine who to audit? As of 2011, a total of 100 percent of Medicare fee-for-service claims started being passed through the Fraud Prevention System: a series of predictive analytics algorithms that help identify claims that may have been billed incorrectly.

But while those results help to target particularly high-risk providers, there is much more to the “audit/don’t audit” decision than just risk. For most auditors, because they are private contractors, their remuneration, bonuses, and/or contract continuation are tied to results – and make no mistake, results are measured in dollars returned to the trust fund. So before an auditor embarks on an audit, it may engage in some form of expected value (EV) calculation that they use to determine the return on investment (ROI).

Calculating EV and ROI requires some advance notion of how much the auditor is likely to find in overpayments versus the cost of doing the audit. And for these types of calculations, many will rely upon the CERT, or the Comprehensive Error Rate Testing study.


CERT

The Centers for Medicare & Medicaid Services (CMS) established the CERT program to calculate a national paid claims error rate for all Medicare fee-for-service programs. The CERT program calculates the error rates for all Medicare Administrative Contractors (MACs), carriers, and fiscal intermediaries (FIs). Reading the CERT documentation, one might find themselves under the impression that records are obtained only from the contractor. This, however, is not the case. In order to assess things like medical necessity, proper documentation, and the like, the agency also requests the medical records from the practices that match the claims samples, adding to the administrative costs of doing business. In general, the sampling methodology includes the following:

  • Randomly selecting around 50,000 claims submitted to the payors during a given reporting period.
  • Requesting medical records from the healthcare providers that submitted the claims in the sample.
  • When medical records were submitted by the provider, reviewing the claims in the sample and the associated medical records to see if the claims complied with Medicare coverage, coding, and billing rules (and if not, assigning errors to the claims).
  • When medical records were not submitted by the provider, classifying the case as a “no documentation” claim and counting it as an error.
  • Sending providers overpayment letters/notices or making adjustments for claims that were overpaid or underpaid.

It’s also important to note that CMS counts underpayments as errors, as well as overpayments. For the 2017 fiscal year, CMS paid out some $390 billion in claims, and of these, around $36 billion (9.5 percent) were paid in error. This simply means that, in the opinion of the auditor, the claim was paid in part or full disagreement with established guidelines, rules, and regulations – or in contrast to the documentation provided. Regarding the 9.5 percent error rate, 0.3 percent represented underpayments. Now, while that may seem trivial, 0.3 percent of $390 billion is over $1 billion, which I would not consider to be crumbs. For example, procedure code 99212 was underpaid 16.9 percent of the time. If you reported 10,000 of these last year, it is statistically likely that some 1,700 were underpaid (or under-documented). So while you are creating your risk assessment, it is probably a good idea to create an opportunity assessment as well.

Within the study, CERT specifies the reason for the improper payment. For example, for 2017, a total of 64.1 percent of claims were paid when it was later determined that there was not sufficient documentation to support the procedure or service. A total of 13.1 percent of payments were made in error due to incorrect coding, while medically unnecessary errors accounted for 17.5 percent of all improperly paid claims. I find the latter statistic interesting, because my experience is that many in our industry consider medical necessity to be the most important coding and billing issue. According to CERT, insufficient documentation accounts for nearly five times the number of error determinations.

From the compliance officer’s perspective, CERT can be a gold mine for building a risk assessment because the study looks at error rates for specific procedure codes, which brings us back to our point on profiling. If CERT identifies specific procedure codes that are associated with high error rates, then it’s only a matter of time before those same codes are used by the auditing agencies as a primer to develop an audit risk profile. Looking at the error rate also provides the auditors with the base data for their EV calculations.

Looking at the 2017 report, for example, we see that CERT reported that of all the 99233 codes reviewed, over 50 percent were paid in error. Of the 99214 codes reviewed, 7.1 percent were paid in error. For calendar year 2016, a total of 23,702,514 claims that included 99233 were submitted to CMS, which paid out $1.8 billion to those providers. If, as stated above, half were paid in error, then nearly $900 million was paid improperly. Imagine for a moment that you are an auditor and you come across a practice that got paid a million dollars on code 99233 last year. Statistically speaking, that means that there is a 50 percent probability that at least half of those were overpaid. This is an easy step from EV to ROI. For 99214, CMS paid out around $7 billion for 103 million encounters, at an error rate of 7.1 percent; this would account for nearly $500 million in potential improper payments. And the list goes on.

The point is this: these auditing agencies, some of which are paid a commission on what they are able to recover from a practice, are going to go for the low-hanging fruit first. So a practice that is reporting a higher number of these 99233 and 99214 codes than their peers may substantially increase their risk of audit and review.

The takeaway here, at least for me, is that the CERT study gives me the opportunity to identify potential errors the same way that the auditors do. And for my money, that’s something you can take to the bank.

And that’s the world according to Frank.

Facebook
Twitter
LinkedIn

Frank Cohen, MPA

Frank Cohen is Senior Director of Analytics and Business Intelligence for VMG Health, LLC. He is a computational statistician with a focus on building risk-based audit models using predictive analytics and machine learning algorithms. He has participated in numerous studies and authored several books, including his latest, titled; “Don’t Do Something, Just Stand There: A Primer for Evidence-based Practice”

Related Stories

Leave a Reply

Please log in to your account to comment on this article.

Featured Webcasts

2026 IPPS Masterclass 3: Master MS-DRG Shifts and NTAPs

2026 IPPS Masterclass Day 3: MS-DRG Shifts and NTAPs

This third session in our 2026 IPPS Masterclass will feature a review of FY26 changes to the MS-DRG methodology and new technology add-on payments (NTAPs), presented by nationally recognized ICD-10 coding expert Christine Geiger, MA, RHIA, CCS, CRC, with bonus insights and analysis from Dr. James Kennedy.

August 14, 2025
2026 IPPS Masterclass Day 2: Master ICD-10-PCS Changes

2026 IPPS Masterclass Day 2: Master ICD-10-PCS Changes

This second session in our 2026 IPPS Masterclass will feature a review the FY26 changes to ICD-10-PCS codes. This information will be presented by nationally recognized ICD-10 coding expert Christine Geiger, MA, RHIA, CCS, CRC, with bonus insights and analysis from Dr. James Kennedy.

August 13, 2025
2026 IPPS Masterclass 1: Master ICD-10-CM Changes

2026 IPPS Masterclass Day 1: Master ICD-10-CM Changes

This first session in our 2026 IPPS Masterclass will feature an in-depth explanation of FY26 changes to ICD-10-CM codes and guidelines, CCs/MCCs, and revisions to the MCE, presented by presented by nationally recognized ICD-10 coding expert Christine Geiger, MA, RHIA, CCS, CRC, with bonus insights and analysis from Dr. James Kennedy.

August 12, 2025

Trending News

Featured Webcasts

The Two-Midnight Rule: New Challenges, Proven Strategies

The Two-Midnight Rule: New Challenges, Proven Strategies

RACmonitor is proud to welcome back Dr. Ronald Hirsch, one of his most requested webcasts. In this highly anticipated session, Dr. Hirsch will break down the complex Two Midnight Rule Medicare regulations, translating them into clear, actionable guidance. He’ll walk you through the basics of the rule, offer expert interpretation, and apply the rule to real-world clinical scenarios—so you leave with greater clarity, confidence, and the tools to ensure compliance.

June 19, 2025
Open Door Forum Webcast Series

Open Door Forum Webcast Series

Bring your questions and join the conversation during this open forum series, live every Wednesday at 10 a.m. EST from June 11–July 30. Hosted by Chuck Buck, these fast-paced 30-minute sessions connect you directly with top healthcare experts tackling today’s most urgent compliance and policy issues.

June 11, 2025
Open Door Forum: The Changing Face of Addiction: Coding, Compliance & Care

Open Door Forum: The Changing Face of Addiction: Coding, Compliance & Care

Substance abuse is everywhere. It’s a complicated diagnosis with wide-ranging implications well beyond acute care. The face of addiction continues to change so it’s important to remember not just the addict but the spectrum of extended victims and the other social determinants and legal ramifications. Join John K. Hall, MD, JD, MBA, FCLM, FRCPC, for a critical Q&A on navigating substance abuse in 2025.  Register today and be a part of the conversation!

July 16, 2025

Trending News

Happy National Doctor’s Day! Learn how to get a complimentary webcast on ‘Decoding Social Admissions’ as a token of our heartfelt appreciation! Click here to learn more →

CYBER WEEK IS HERE! Don’t miss your chance to get 20% off now until Dec. 2 with code CYBER24