What is HIPAA Compliance?
What is HIPAA Compliance? HIPAA, the Health Insurance Portability and Accountability Act, sets the standard for protecting sensitive patient data. Any company that deals with protected health information (PHI) must ensure that all the required physical, network, and process security measures are in place and followed.
HIPAA Technical Requirements
- Unique User Identification: (R) Assign a unique name and/or number for identifying and tracking user identity.
- Emergency Access: (R) Establish (and implement as needed) procedures for obtaining necessary electronic protected health information during an emergency.
- Automatic Logoff: (A) Implement electronic procedures that terminate an electronic session after a predetermined time of inactivity.
- Encryption and Decryption: (A) Implement a mechanism to encrypt and decrypt electronic protected health information when deemed appropriate.
- Audit Controls: (R) Implement hardware, software, and/or procedural mechanisms that record and examine activity in information systems that contain or use electronic protected health information.
- ePHI Integrity: (A) Implement policies and procedures to Protect electronic protected health information from improper alteration or destruction.
- Authentication: (R) Implement procedures verifying a person or entity seeking access to electronic protected health information is the one claimed.
- Transmission Security: (A) Implement technical security measures to guard against unauthorized access to electronic protected health information that is transmitted over an electronic communications network.
August eTech can help you with the Hipaa Technical Requirements. Just contact us!
