Subpart C - Security Standards for the Protection of Electronic Protected Health Information

Results for Subpart C - Security Standards for the Protection of Electronic Protected Health Information

164.312(a)

Technical safeguards : Access control. Implement technical policies and procedures to restrict access to protected electronic health information to authorized persons

164.312(b)

Technical safeguards : audit controls (record and examine activity in information systems that contain or use electronic protected health information)

164.312(c)

Technical safeguards : Integrity (protect electronic protected health information from improper alteration or destruction);

164.316(a)

Policies and procedures and documentation requirements. : implement reasonable and appropriate polices and procedures to comply with the standards, implementation specifications, and other requirements.

164.312(d)

Technical safeguards : Person or entity authentication

164.308(a)(1)(i)

Administrative safeguards : Security management process: implement policies and procedures to prevent, detect, contain, and correct security violations. Implementation specifications.

164.308(a)

Administrative Safeguards : Workforce Clearance Procedure
Summary:

Persons making reports shall not be hindered from making reports nor be subject to sanctions for making reports. Supervisors and administrators may promulgate internal procedures to ensure confidentiality of reports.

Associated Federal Law(s): 
164.308(a)(1)(i)
Summary:

A willful and unauthorized violation of professional confidences is unprofessional conduct.

Associated Federal Law(s): 
164.316(a)
Summary:

The primary attending health care practitioner shall obtain prior written consent from each patient for whom a billing is requested, authorizing the release of the patient's billing.

Associated Federal Law(s): 
164.308(a)(7)
Syndicate content