Online Safety Community

A HIPAA audit is very important for service providing organizations, because the penalties for violations can bring their business down. It is important to understand the nuances of a HIPAA audit if one has to be successful.

A HIPAA audit is, for many service providing organizations, a make or break situation. This is because HIPAA audits are considered stringent. Violations can attract huge penalties, which is why getting it right the first time is extremely important. An entry level HIPAA violation can cost the organization upwards of $200,000, and the highest can run into multiple seven-figure amounts. So, an organization has to ensure that it gets its HIPAA audit right.

Risk analysis is the heart of the matter

Insulating oneself from heavy HIPAA audit violations requires service providers to be compliant with HIPAA audit requirements. Conducting a comprehensive risk analysis is the perfect solution to a HIPAA audit. These may appear to be no-brainers, but at its core, a HIPAA audit looks for these critical areas, so it is all the wiser for organizations to ensure these basic requirements to get the audit of their Security Rule and Privacy Rule right.

A thorough and comprehensive risk analysis has to be done to offset HIPAA violations, since a HIPAA audit can happen across the broad for a large number of parameters. HIPAA expects the service providers it audits to not only have these; they should also demonstrate so.

What practices are necessary for passing a HIPAA audit?

While being compliant with the risk analysis requirements is at the core of being compliant with HIPAA audit requirements; other tips can go some way in helping organizations understand ways by which to deal with HIPAA audits:

  • Any plans relating to the service provider's data management, security, training and notification should be documented
  • A secure access password policy has to be put in place
  • Although not a strict HIPAA requirement, encrypting Protected Health Information, irrespective of whether the PHI is in a database or in files on a remote server, is a good practice
  • Using SSL whenever there is web access of sensitive data is a good idea
  • Only some, select members of the organization should have knowledge of the techniques relating to encryption and the way they work
  • Scans and images should be encrypted and should contain no personally identifiable information
  • Avoid using public FTP
  • Only VPN access is best used for remote access
  • A disaster recovery plan should be documented

Read More : http://www.mentorhealth.com/control/w_product/~product_id=800893LIVE/

Views: 17

Comment

You need to be a member of Online Safety Community to add comments!

Join Online Safety Community

Take our poll!

Take our poll!

Latest Activity

John Robinson posted a blog post

Regulations in the US and EU Dealing with Combination Products

Registering and maintaining combination products in the US and the EU is a bit tricky, because these are disparate markets that are governed by different sets of regulations which are independent of each other. So, any business that wants to market combination products into the US or the EU must be completely aware of the nature and meaning of all the regulations. Such businesses…See More
yesterday
Adam Fleaming posted blog posts
yesterday
Alex posted a blog post

3 essential electrical safety tips for new students

Living away from home for the first time is an exciting, invigorating, and pretty daunting experience. While your first days at uni will be the time of your life, living away from your parents also comes with a new set of challenges.Aside from cooking and cleaning, one thing we take for granted is our parents’ knowledge of how to keep us safe. Electrical safety, in particular, is something not many first-time students know a lot about, but electrical accidents are…See More
yesterday
Training Doyens posted events
yesterday

Forum

Occupational Health and Safety 5 Replies

Health and safety are important aspects of an organisation’s smooth and effective functioning.  Did you know that workplace health & safety injuries cost Australian businesses over $60 billion…Continue

Tags: Safety, and, Health, Occupational

Started by WHS Solutions. Last reply by Tara safe on Thursday.

QlikView for its Safety Strategic Business Intelligence Solution Worldwide

QlikTech (NASDAQ:QLIK), a leading…Continue

Tags: Qlikview, safety

Started by nicolewells on Wednesday.

What's your favorite motivational/safety quote? 102 Replies

Favorite Motivational Quote: If you want something, you'll find a way - If not, you'll find an excuse.Favorite Safety Quote: Don't learn safety by accident!Continue

Started by Michelle Sears. Last reply by David Collins on Tuesday.

Business Intelligence with Big Data happens at Unipê

the college center of João Pessoa will preserve the 1st assembly at big records, geared toward professionals inside the regions of administration, economics, public control and facts technologies.…Continue

Tags: qliksensetraining, qliksenseonline, qliksense

Started by Soujanya Naganuri Nov 1.

Road Safety Solutions 13 Replies

The Road Safety Signs ,Barriers,Humps,Hazard Markers and Visual Warnings are some of the important marks to be observed. Signs such as "keep left",stop, "give way" should not be casually treated.…Continue

Tags: safety, gear, wear, Equipment, &

Started by Enna Henry. Last reply by Barry Oct 26.

Badge

Loading…

© 2017   Created by Safety Community.   Powered by

Badges  |  Report an Issue  |  Terms of Service