Subpart C - Security Standards for the Protection of Electronic Protected Health Information

Results for Subpart C - Security Standards for the Protection of Electronic Protected Health Information

Summary:

As per 121025, all reported cases of HIV infection shall not be disclosed, discovered or compelled to be produced in any civil, criminal, administrative, or other proceeding.

Keywords:
HIV/AIDS, judicial
Associated Federal Law(s): 
Summary:

State and local health department employees and contractors must sign confidentiality agreements before accessing confidential HIV related public health records. Such agreements shall include information of penalties for breach of confidentiality and procedures for reporting breach.

Associated Federal Law(s): 

164.306

Security standards: General rules : General requirements: 1) Ensure the confidentiality of all electronic protected health information; 2) Protect against any reasonably anticipated threats to the security or integrity of such information; 3) Protect against any reasonably anticipated uses or disclosures of such information; 4) Ensure compliance by the workforce.

164.306(a)

Security standards: General rules : General requirements: 1) Ensure the confidentiality of all electronic protected health information; 2) Protect against any reasonably anticipated threats to the security or integrity of such information; 3) Protect against any reasonably anticipated uses or disclosures of such information; 4) Ensure compliance by the workforce.

164.306(d)

Security standards: General rules : Implementation specifications - required or addressable.

164.316(b)

Policies and procedures and documentation requirements. : documentation requirements: time limit; availability; updates

164.308(a)(4)(I)

Administrative safeguards : information access management

164.308(a)(7)

Administrative safeguards : Contingency plan in case of systems damage

164.308(a)(8)

Administrative safeguards : Evaluation of entity's security policies and procedures

164.310(a)

Physical safeguards : Implement policies and procedures to limit physical access to electronic information systems
Syndicate content