General Surgery Coding Alert - 2017 Issue 12
Compliance: The OIG's IT Audit Director Reveals Audit Details
Subscribe or sign in to view the full article.
Article Overview
This article explains how the OIG approaches health information technology audits and why healthcare organizations should pay attention to cybersecurity and privacy safeguards. It is aimed at compliance, privacy, and IT stakeholders who need a high-level understanding of audit focus areas, current concerns in health IT, and the kinds of risks that can draw government scrutiny. The discussion covers protected health information security, risk assessment, and penetration testing in a general compliance context.
Why This Topic Matters
Healthcare organizations handle highly sensitive patient data, and the article highlights why safeguarding that information matters to regulators and to the organizations themselves. It helps readers understand the broader audit landscape around health IT security and the importance of reviewing system access, vulnerabilities, and internal controls.
Article Sections
-
Health Records Worth More Than Gold to Thieves
This section discusses why protected health information is a valuable target and why organizations should pay attention to safeguarding sensitive records. It also introduces the government’s interest in reviewing how well entities protect those records.
-
Have You Changed Your Default Passwords?
This section focuses on health IT security review activities described at a high level, including network access testing and common system vulnerabilities. It centers on the importance of evaluating access controls and default configuration risks.
What You Will Learn
- How the OIG frames health information technology audits
- Why protected health information is a target for thieves
- What kinds of security issues auditors may look for in healthcare systems
- Why risk assessment and penetration testing are discussed in compliance settings
- Why default software settings can be a concern for healthcare organizations
Who Should Read This
- Compliance professionals
- Healthcare IT staff
- Privacy officers
- Practice managers
- Hospital administrators
- Security officers
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com