Sample – EPHI (HIPAA) – Administrative Technical Controls
February 16, 2012Thank you for your visit.
If you like what you have found on our site please backlink our site and blog.
|
Standards |
Sections |
Description |
| Security Management Process | § 164.308(a)(1) | Risk Analysis |
| Risk Management | ||
| Sanction Policy | ||
| Information System Activity Review | ||
| Assigned Security Responsibility | § 164.308(a)(2) | |
| Workforce Security | § 164.308(a)(3) | Authorization and/or Supervision |
| Workforce Clearance Procedure | ||
| Termination Procedures | ||
| Information Access Management | § 164.308(a)(4) | Isolating Health Care Clearinghouse Functions |
| Access Authorization | ||
| Access Establishment and Modification | ||
| Security Awareness and Training | § 164.308(a)(5) | Security Reminders |
| Protection from Malicious Software | ||
| Log-in Monitoring | ||
| Password Management | ||
| Security Incident Procedures | § 164.308(a)(6) | Response and Reporting |
| Contingency Plan | § 164.308(a)(7) | Data Backup Plan |
| Disaster Recovery Plan | ||
| Emergency Mode Operation Plan | ||
| Testing and Revision Procedures | ||
| Applications and Data Criticality Analysis | ||
| Evaluation | § 164.308(a)(8) | |
| Business Associate Contracts and Other Arrangements | § 164.308(b)(1) | Written Contract or Other Arrangement |
www.bestitdocuments.com