decisionhealth Newsletters, Answer Books - 2006 Issue 3 (March)
Program_Memos / 2001 / AB-01-136
Subscribe or sign in to view the full article.
Article Overview
This article explains supplemental CMS guidance for Medicare contractor and business partner systems security activities. It addresses the annual compliance audit, the use of a SAS-70 audit under specified conditions, funding remaining from FY 01 self-assessment allocations, and references to the CMS Business Partners Systems Security Manual and related security planning materials. It is relevant to organizations responsible for Medicare contractor security compliance, audit preparation, and system security planning.
Why This Topic Matters
It helps readers determine how CMS expected business partners to document systems security compliance, what timing applied for FY 01, and how remaining self-assessment funds were to be redirected toward longer-term security planning.
Article Sections
-
Subject: Supplemental Instructions on CMS Business Partners Systems Security Requirements
Introduces the memorandum’s purpose and the two major topics addressed in the guidance. It sets the context for CMS business partner systems security activities.
-
I. Annual Compliance Audit
Discusses the annual compliance audit requirement and the general scope of the review. It also covers reporting expectations, audit alternatives, and timing information tied to the FY 01 requirement.
-
II. FY 01 Medicare Contractor Self-Assessment Funding
Explains how remaining self-assessment funds were to be redirected and identifies the broader security planning effort CMS emphasized for subsequent fiscal years. It also points readers to supporting manual and methodology resources.
-
Systems Security Questions and Concerns
Provides contact and support information for questions about the memorandum. It also mentions follow-up and web-based FAQ support.
What You Will Learn
- The scope of CMS supplemental guidance for business partner systems security activities
- How the annual compliance audit requirement is framed at a high level
- What the memorandum says about self-assessment funding and future security planning
- Where the guidance directs readers to seek follow-up information and questions
Who Should Read This
- Medicare contractors
- CMS business partners
- Systems security professionals
- Compliance and audit staff
- Health care administrative support organizations
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com