Over the last several weeks, I’ve been posting a blog series around nine HIPAA network considerations.
- HIPAA Audits will continue
- The HIPAA Audit Protocol and NIST 800-66 are your best preparation
- Knowledge is a powerful weapon―know where your PHI is
- Ignorance is not bliss
- Risk Assessment drives your baseline
- Risk Management is continuous
- Security best practices are essential
- Breach discovery times: know your discovery tolerance
- Your business associate(s)must be tracked
This week we focus on #5 – Risk Assessment drives your baseline.
Read More »
Tags: healthcare, HIPAA, PCI Compliance, security
The fourth consideration in this 9 HIPAA Network Considerations blog series, we look at whether ‘not knowing’ is a valid defense post-breach. Is Ignorance Bliss, or will that get you into trouble?
Remember, the HIPAA Omnibus Rule was released January 23, 2013, became effective March 26, 2013 with compliance to the updates se for September 23, 2013. Audits will also start up again for covered entities and business associates in late 2013 or early 2014. Read More »
Tags: healthcare, HIPAA, PCI Compliance
Next in this 9 HIPAA Network Considerations blog series, I cover the third network consideration focusing on knowing where your PHI is. Remember, the HIPAA Omnibus Rule was released January 23, 2013, became effective March 26, 2013 with compliance to the updates se for September 23, 2013. Audits will also start up again for covered entities and business associates in late 2013 or early 2014.
Read More »
Tags: byod, healthcare, HIPAA, PCI Compliance, privacy, security
Continuing the thread from the last blog where I discussed the first HIPAA network consideration, ‘HIPAA Audits will continue’, in this blog I’ll discuss the second network consideration on the list below. Remember, The HIPAA Omnibus Final Rule, released January 2013, introduced some significant changes and updates. The 2012 HIPAA audits concluded with some initial findings released from The Department of Health and Human Services (HHS) Office of Civil Rights (OCR). These two events may impact how you govern your internal organization and network for patient privacy and protection of PHI. The deadline for compliance with the updates to the HIPAA Omnibus Final Rule is September 23, 2013.
Read More »
Tags: Audit Program Protocol, healthcare, HIPAA, PCI Compliance
Most of us are familiar with the famous lines novice farmer Ray Kinsella heard whispered in his cornfield: “If you build it, he will come.” Not unlike the baseball diamond that appeared in the middle of Dyersville, Iowa, in the film Field of Dreams is the state-of-the-art children’s hospital in Madera County, California.
Children’s Hospital Central California (CHCC) began as the vision of five civic-minded women who saw the need for a dedicated pediatric hospital in Central California. Nearly 60 years later, CHCC has grown to a 348-bed, nationally respected regional pediatric medical center on a 50-acre campus with a medical staff of more than 525 physicians. Built on land donated by a farmer, CHCC is humbly referred to as the “Field of Dreams” by the Cisco account team. Read More »
Tags: healthcare, Patient Care, TelePresence