By barry, on July 21st, 2010
It is very strange that when you look around you can find many, many training courses and seminars on HIPAA. From a providing information point of view, the market is well provided for. Yet walk into you local doctor’s office or local hopsital, and ask a few basic questions and blam, they don’t know HIPAA [Click to Read more...]
By Barry, on August 11th, 2009
Previous steps
Step 3 : Risk Assessment
Now we need to consider the threats, both actual and perceived. Identify and discuss them, then list cost-effective solutions. In the solutions identify what is needed and possible methods to implement the solution. After all threats have been identified you might find a single solution that will address more than [Click to Read more...]
By Barry, on August 9th, 2009
One question I love asking coverd entities, “What and when was the latest change made to HIPAA?” I ask this for two reasons, One: to see what they know and how up to date they are, and Two: because HIPAA always changes. In a previous post I have already indicated the change in 2008 from [Click to Read more...]
By Barry, on August 7th, 2009
HIPAA audits are just like any audit or project they require the proper steps.
Step 1 : Project Planning
The planning and scoping of a project is often one of the hardest parts of project management. Audits, like a HIPAA audit, are a targeted project with findings or shortcomings as their project deliverables. If the audit scope [Click to Read more...]
By Barry, on July 29th, 2009
Most Security regulations like HIPAA, SOX, GLBA and PCI (which is an industry standard Not a regulation), all call for a risk analysis audit. To many this is an unknown or difficult process, so I thought I would present the common goals for a Risk-based Analysis Audit
GOAL 1: The network defined
We need to [Click to Read more...]