Welcome to my site...

A chinese lion statue

Thanks for visiting my website. You can learn more about me and all the many projects I am involved with my browsing this site. Below you will find the most recent articles published in all the different sections of my website. If you want to view articles on a specific area, please cick on one of the category links above. You can also follow the other links to learn more about me and my non-technical interests.

I'm glad you decided to drop in, feel free to leave comments on any article or to use the contact page to get in touch with me.

Web Server Auditing for HIPAA §164.312(a)(1) PDF Print E-mail
Security - Enterprise Security
Thursday, 08 May 2008 05:56

This section of HIPAA is concerned with access control. In the IT infrastructure of a Medical organization, proper access is essential for patient privacy. Furthermore, access must be restricted to a “need to know” basis to prevent leaks to unauthorized third parties. To this end, this audit seeks to a) make sure all access is restricted (that is to say requires some more of credential validation before access) and auditable to a unique single identity (group or individual) and b) to make sure that the user credentials (passwords, pins, etc) are strong and secure within reason. By enforcing the above aspects of HIPAA the organization can be sure that all access is secure and that patient privacy and confidentiality are maintained. This aspect of HIPAA is also important for legal issues that may arise from a lawsuit or employee misconduct.

The exact text for this section is:

Standard: Access control. Implement technical policies and procedures for electronic information systems that maintain electronic protected health and records information to allow access only to those persons or software programs that have been granted access rights as specified in Sec. 164.308(a)(4).

Source: CFR 45 - 164 - 312

You can view the embedded presentation below using the SlideShare applet below. The demo video form YouTube is automatically embedded for your convenience..




Some good references to get started with HIPAA:


If you would like more information, please feel free to contact me



 
<< Start < Prev 1 2 3 4 5 Next > End >>

Page 5 of 5