CMS posts HIPAA security FAQs
Compliance Monitor, August 25, 2004
Want to receive articles like this one in your inbox? Subscribe to Compliance Monitor!
CMS posted answers August 12 to 12 new frequently asked questions about the HIPAA Security Rule. The post included one updated answer as well (highlighted by an asterisk below). Here are the questions:
1. Does the HIPAA Security Rule allow for sending electronic PHI in an email or over the Internet?
2. What does the HIPAA Security Rule mean by physical safeguards?
3. Do the HIPAA Security Rule requirements for access control apply to employees who work from home?
4. What is the difference between Risk Analysis and Risk Management in the HIPAA Security Rule?
5. How will we know if our organization and our systems are compliant with the HIPAA Security Rule's requirements?
6. Are covered entities required to use the NIST guidance documents referred to in the final Security Rule?
7. Does the HIPAA Security Rule apply to written and oral communications?
8. Are we required to "certify" our organization's compliance with the HIPAA security standards?
9. Does the Security Rule mandate minimum operating system requirements for personal computer systems?
10. Does the HIPAA Security Rule require the use of an electronic or digital signature?
11. What is a system vulnerability?
12. What is encryption?
13. *Is mandatory encryption in the HIPAA Security Rule?
To see all 28 FAQs, click here.
Want to receive articles like this one in your inbox? Subscribe to Compliance Monitor!
Related Products
Most Popular
- Articles
-
- Q/A: Volume requirement for reporting hydration services
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Catch up on what's new with injections and infusions
- Identify potential Medicaid RAC target areas
- HIPAA Q&A: Level of encryption needed for email
- Topic: CMS, OESS post new security compliance review information, checklist
- Capturing all necessary codes for IUD insertion and removal can be challenging
- What does case-mix index mean to you?
- OB services: Coding inside and outside of the package
- QA:Coding multiple initial infusions
- E-mailed
-
- Q/A: Volume requirement for reporting hydration services
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- CMS has reformulated payments for some bilateral procedures
- HIPAA Q&A: Level of encryption needed for email
- Q&A: Follow CMS' coding guidelines when using modifier -25
- What does case-mix index mean to you?
- Catch up on what's new with injections and infusions
- New conflicts of interest create new challenges
- Q/A. One injection code or two?
- Cohesive History and Physical Requirements
- Searched
