What Will Be in My HIPAA Compliance Report? The 4 Main Components to a HIPAA Compliance Report

by Sarah Harvey / December 22, 2022

You’ve partnered with a third party, you’ve properly scoped your environment, you’ve conducted a HIPAA Risk Analysis, you’ve remedied any non-compliant findings, you’ve worked with your auditor, you’ve completed your HIPAA audit, and now you’re finally receiving your HIPAA compliance report. Congratulations! So, what’s actually included in a HIPAA compliance report? Here are the 4 main components of a HIPAA compliance report:     The 4 Main Components to a…

What are HIPAA Physical Safeguards?

by Sarah Harvey / December 22, 2022

The HIPAA Security Rule requires that business associates and covered entities have physical safeguards and controls in place to protect electronic Protected Health Information (ePHI). These safeguards provide a set of rules and guidelines that focus solely on the physical access to ePHI. Stephanie Rodrigue discusses the HIPAA Physical Safeguards What are Physical Safeguards? According to the Security Rule, physical safeguards are, “physical measures, policies, and procedures to protect a…

What Are HIPAA Administrative Safeguards to Protect ePHI?

by Sarah Harvey / December 19, 2022

One of the HIPAA Security Rule requirements is that covered entities and business associates have administrative controls in place. Once you have completed your HIPAA risk analysis, you should have a good idea of what administrative controls are appropriate for your organization to protect ePHI. Having administrative safeguards in place is important for both the prevention and mitigation of a data breach. Stephanie Rodrigue discusses HIPAA Administrative Safeguards What are…

The HIPAA Risk Analysis

by Sarah Harvey / December 19, 2022

The HIPAA risk analysis is the starting point for any HIPAA audit, and the most important component for achieving and maintaining HIPAA compliance. If risk analysis is such a critical part of HIPAA compliance, why is it the number one finding by the Office for Civil Rights (OCR)? Unfortunately, this means that a lot of business associates and covered entities, who are required to comply with HIPAA laws, just aren’t…

Who must be HIPAA Compliant?

by Sarah Harvey / December 19, 2022

Who must be HIPAA Compliant, and how can they prepare? If you are just beginning to learn about HIPAA, you may be wondering, "Who must be HIPAA Compliant?" Up until 2009, the answer was simple: Covered Entities. But when the Health Information Technology for Economic and Clinical Health (HITECH) Act passed, it expanded the oversight of the Office for Civil Rights (OCR) to Business Associates. The HITECH Act was passed…