HIPAA & HITECH Part 3: Assessments & Risk Analysis

所在平台: Udemy

课程主页: https://www.udemy.com/course/hipaa-hitech-part-3-assessments-risk-analysis/

课程评论:没有评论

第一个写评论        关注课程

课程简介

**课程名称:** HIPAA & HITECH 第 3 部分:评估与风险分析 **课程概述:** 本课程聚焦于 HIPAA/HITECH 法案强制要求的行政保障措施,即隐私和安全评估以及风险分析。课程旨在帮助学员理解和掌握如何有效地管理受保护健康信息 (PHI) 和电子受保护健康信息 (ePHI)。 课程内容涵盖: * **PHI/ePHI 的数据流分析:** 学习如何绘制 PHI/ePHI 在不同部门和分支机构之间的映射,了解其使用和披露情况。 * **灾难事件下的 PHI/ePHI 保护计划:** 制定在各类突发灾难事件中保护 PHI/ePHI 的策略。 * **重要性:** 强调通过这些评估和分析产生的文档对于制定可行的合规计划至关重要,并且是 OCR(卫生与公众服务部民权办公室)审计时首批可能被要求审查的文件。 **课程结构(共 5 个部分):** * **第一部分:** 隐私评估指南 * **第二部分:** 安全评估指南 * **第三部分:** 风险分析指南 * **第四部分:** 将评估和分析数据纳入合规计划的指南 * **第五部分:** 进一步的合规计划整合指南 **最终目标:** 学员通过学习本课程获得的文档,能够在 OCR 审计中有效展示其在 HIPAA/HITECH 合规方面的努力。

课程评论(0条)

课程详情

Privacy and Security Assessments and Risk Analysis processes are administrative safeguards mandated by HIPAA/HITECH. The private and secure management of PHI requires mapping out how PHI/ePHI moves into and through various departments and divisions, how PHI/ePHI is used and disclosed by each department and division, and plans for protection of PHI/ePHI in various types of catastrophic events. Documentation derived from these assessments and analyses is essential to a viable Compliance Plan and some of the first documents likely to be requested for review in an OCR audit. In 5 Sections, Part 3 provides guidelines for conducting: Privacy Assessments - Section 1Security Assessments - Section 2Risk Analysis - Section 3Part 3 also provides guidelines for incorporating the data derived from these processes into its documented Compliance Plan (Sections 4 and 5). Documentation developed from Part 3 can be produced at OCR audits to demonstrate HIPAA/HITECH Compliance efforts.

课程标签

0人关注该课程

主题相关的课程