decisionhealth Newsletters, Part B News - 2023 Issue 5 (May)
Implement 6 HIPAA security compliance tips for a strong 2023
Subscribe or sign in to view the full article.
Article Overview
This article is a compliance-oriented overview for healthcare administrators, privacy officers, and other staff responsible for HIPAA security. It discusses broad areas of HIPAA security readiness, including device disposal, encryption, employee education, risk assessment, incident response planning, and breach notification preparation, with context from a compliance expert and federal cybersecurity concerns.
Why This Topic Matters
The article helps organizations evaluate whether their HIPAA security program is addressing common operational and preparedness gaps that can increase privacy risk. It is relevant for teams responsible for safeguarding PHI and maintaining security compliance processes.
Article Sections
-
Secure disposal
Introduces secure handling of devices and other assets that may store protected health information. The section focuses on disposal-related preparedness and inventory awareness.
-
Encryption
Discusses encryption as part of a broader device and data protection approach. The section also places encryption within a general security strategy that may include other safeguards.
-
Employee training
Covers staff education as a HIPAA compliance measure. The section addresses organizational awareness, privacy practices, and the role of training in risk management.
-
Regular risk assessments
Reviews the use of recurring assessments to identify weaknesses and support ongoing security oversight. The section emphasizes maintaining awareness of changes in systems and safeguards.
-
Incident response plan
Describes the importance of having a defined process for responding to potential violations or incidents. The section focuses on planning and workflow readiness.
-
Breach notification
Addresses preparedness for notifying affected individuals after a breach. The section discusses general planning for different incident sizes and rehearsal of notification procedures.
What You Will Learn
- How HIPAA security priorities are framed for healthcare organizations
- Why device disposal and asset inventory matter in security planning
- How encryption fits into a broader protection strategy
- Why employee training is part of HIPAA compliance readiness
- How routine risk assessments support identification of security gaps
- What elements belong in an incident response and breach notification plan
Who Should Read This
- HIPAA privacy officers
- Compliance professionals
- Healthcare administrators
- Medical group leadership
- Security and risk management staff
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com