Healthcare

Health Insurance Portability and Accountability Act

U.S. federal law establishing standards for electronic healthcare transactions and national identifiers, and security and privacy of health data (PHI).

5Categories
57Controls
Readiness

Control Categories

Administrative Safeguards

22 controls

Security management, workforce security, information access, security awareness, and contingency planning.

Not started

Physical Safeguards

10 controls

Facility access, workstation security, and device/media controls.

Not started

Technical Safeguards

14 controls

Access control, audit controls, integrity mechanisms, and transmission security.

Not started

Organizational Requirements

6 controls

Business associate agreements, group health plan requirements, and policies.

Not started

Breach Notification Rule

5 controls

Individual notification, media notification, HHS notification, and breach risk assessment.

Not started