Health IT and Electronic Health Activate your FREE membership today |  Log-in
30 pts.
 Is a HIPAA Risk Analysis a project or a process?
With the emphasis on EHR meaningful use attestation, we've see a great opportunity for healthcare organizations to institutionalize their security processes? Agree? Here's our take: http://wp.me/pymfm-D2
ASKED: March 20, 2011  9:44 PM
UPDATED: November 3, 2011  5:43 pm

Answer Wiki:
HIPAA risk analysis must be part of every Healthcare organization's IT process. Because of the sensitivity of the data as well as higher penalties associated with data breach it is very important to make it a top priority for hospital CIOs. I did review your blog entry and I do see value in what you are suggesting. I do wonder if monthly assessment would be enough. I think there needs to be systems in place to monitor 24/7/365 all systems with health data. There is also the need to ensure continued education of staff as well.
Last Wiki Answer Submitted:  March 27, 2011  7:29 pm  by  RedaChouffani   1,785 pts.
All Answer Wiki Contributors:  RedaChouffani   1,785 pts.
To see all answers submitted to the Answer Wiki: View Answer History.


Discuss This Question:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _


 

The article How to perform a security risk assessment in a health IT environment also provides some insight into this process.

 490 pts.

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to: