HIPAA Data Security Requirements
The proposed security regulation is designed to protect a patient's health information (PHI) while permitting the appropriate access and use of that information by providers, clearinghouses and insurers. This proposed standard requires healthcare entities that electronically maintain or transmit PHI, to assess their own security needs and risks, and to implement and maintain appropriate security to address their business requirements.
The following must be regularly documented and maintained:
- Administrative procedures, to ensure that security plans, policies, procedures and training are in place.
- Physical safeguards, to provide security controls over all media and devices.
- Technical security services, to provide specific authentication, authorization, access and audit controls to prevent improper access to electronically stored information.
- Technical security mechanisms, to establish controls over communications/networking, in order to avoid the risk of interception or alteration of data during electronic transmission.
elligence's Security Features allow you to comply with every part of the HIPAA security requirements.