HIPAA Compliance and HIPAA Risk Assessments
Security Rule § 164.308(a)(1)(ii)(A) of HIPAA compliance requires that orgnanizations must perofrm a risk analysis. The purpose of a risk assessment is to identify conditions where ePHI could be disclosed without proper authorization, improperly modified, or unavailable when needed. The outcome of risk assessment information is then used to make risk management decisions on whether the HIPAA-required implementation specifications are sufficient or what additional addressable implementation specifications are needed to reduce risk to an acceptable level.
The HIPAA compliance assessment is performed using guidelines as prescribed in the Security Standards for the Protection of Electronic Protected Health Information (the Security Rule). The HIPAA assessment report includes a comprehensive and detailed list of findings and recommendations regarding the implementation of Administrative, Physical, and Technical Safeguards as prescribed by the HIPAA Security Rule.
Contact us