Table of Contents
Guidelines for Implementation, Maintenance and Management of
Overview: Understanding HIPAA Security
Introduction to HIPAA Security
HIPAA Security Policies and Procedures
Administrative Safeguards
Security Management Process
Risk Analysis
Sanction Policy
Information System Activity Review
Assigned Security Responsibility
Announcement Memo
Job Description
Workforce Security
Authorization and Supervision
Termination Procedures
Information Access Management
Isolating Health Care Clearinghouse Functions
Access Authorization
Access Establishment and Modification
Security Awareness and Training
Security Reminders25
Protection from Malicious Software
Log-In Monitoring
Password Management
Security Incident Procedures
Response and Reporting
Stolen or wrongly obtained passwords
Corrupted backup
Virus Attack
Physical Break-Ins Failure to Terminate Passwords
Providing Media Access Unauthorized
Contingency Plan
Data Backup Plan
Disaster Recovery Plan
Emergency Mode Operations Plan
Testing and Revision Procedures
Application and Data Criticality Analysis
Evaluation
Documentation
Time Limit
Documentation Availability
Documentation Updates
Physical Safeguards
Facility Access Controls
Contingency Operations
Facility Security Plan
Access Control and Validation Procedures
Maintenance Records
Workstation
Workstation Use
Workstation Security
Device and Media Controls
Disposal
Media Re-Use
Accountability
Data Backup and Storage
Technical Safeguards
Facility Access Control
Unique User Identification
Emergency Access Procedures
Automatic Log Off
Encryption and Decryption
Audit Controls
Integrity
Mechanism to Authenticate EPHI
Person or Entity Authentication
Transmission Security
Integrity Controls
Encryption
HHS Breach Notification Regulation
Business Associate Contracts
HIPAA Security Training Agenda
Confidentiality (Non-Compliance) Policy
HIPAA Security FAQ’s
HIPAA Privacy and Security Training Test and Test Key
HIPAA Security Checklist
Risk Analysis and Plan (Using, Documentation and Form)
Other Forms
Definitions
Certificate of Completion
Sample Interview and Documentation Request for Compliance Audit