Find White Papers
Home
About Us
List Your Papers
    
> Sigaba > Addressing HIPAA Compliance Issues

Addressing HIPAA Compliance Issues

White Paper Published By: Sigaba

This document details the mandated and proposed rules generally referred to as the "HIPAA requirements" and how they affect healthcare organizations and their business partners transmit medical information electronically.



Tags : 
compliance, policy based management, business management, hipaa compliance, health, hipaa, privacy, sigaba

Sigaba
Published:  Aug 21, 2009
Type:  White Paper
Length:  18 pages

Addressing HIPAA
Compliance IssuesTechnical White Paper
1875 S. Grant Street, 10th Fl. | San Mateo, CA 94402 | (800) 475-8226 | www.sigaba.comSIGABA | WHITE PAPER | ADDRESSING HIPAA COMPLIANCE ISSUES | TABLE OF CONTENTS
Addressing HIPAA Compliance Issues
Introduction 3
Opportunity 4
Regulations 4
HIPAA and Related Acts 4 Privacy Standards 4Security Standards 5 Impacted Organizations 5Liability 6 Other Relevant Issues 6
Security Requirements 6Administrative Requirements 6 Physical Security Requirements 9Technical Security Services 10 Technical Security Mechanisms 11Electronic Signature Standards 12
Sigaba's Security Solutions 15Sigaba Secure Email 15 Sigaba Secure Statements 16Global Authentication 16
Conclusions 17
References 18
All information in this document is subject to change without notice. This document is provided for informational purposes only and Sigaba® makes no warranties, either express or implied, in this document.SIGABA | WHITE PAPER | ADDRESSING HIPAA COMPLIANCE ISSUES | PAGE 3
INTRODUCTION facing healthcare organizations [Joseph Godert, As with all other businesses, healthcare organizations "The Dawn of HIPAA", Health Data Management have, or are, moving rapidly toward transmission of Magazine, April 2000]. Also affected are the myriad information over the Internet to take advantages of the organizations outside the healthcare industry that must associated ?exibility, speed, and inherent cost-savings. handle individual patient data as part of their business However, with the bene?ts of electronic information - including legal, ?nancial, insurance and outsourced IT transfer come the regulations and liabilities associated infrastructure organizations (e.g. ASPs).with privacy and unauthorized access of data, most Existing players in the electronic security industry notably in the form of the Health Insurance Portability are positioning their current product lines as 'HIPAA and Accountability Act of 1996 (HIPAA). solutions', bringing to bear large-scale deployments of A major component of HIPAA addresses administrative complex technologies such as Public Key Infrastructure simpli?cation of how healthcare information is handled. (PKI). Without exception these approaches are expensive, Speci?cally, HIPAA and the related proposed Standards resource intensive to install and maintain, dif?cult for Security and Electronic Signatures (SES) aim to and constraining to use, and not suited for mixed standardize how electronic patient data is accessed as communication with organizations and individuals.well as transmitted between organizations. For healthcare providers and insurers who need to SES mandates requirements in ?ve broad areas: ensure their organizations are fully HIPAA compliant, . Administrative Requirements - covering certi?cation, SigabaT offers an email security solution that ensures policies, controls and auditing the security of their communication and mitigates
. Physical Security Requirements - governing and auditing potential legal exposure. Unlike existing products, physical access to systems and media Sigaba installs in about a half a day and features simple, highly automated administration.. Technical Security Services - systems and software used to protect electronic data Sigaba's solutions are almost completely transparent . Technical Security Mechanisms - including network to end-users and require little or no end-user training. access controls, alarms, auditing and reporting Sigaba upholds comprehensive interoperability with its
. Electronic Signature Standards - auditing and non- standards-based software that works with all leading
repudiation of electronic transactions email platforms, email servers and clients, authentication approaches and techniques, fully leveraging existing With the entry of HIPAA into the Federal Register on IT investments. The solutions offer complete policy 28 December 2000, healthcare organizations of all control that enables system administrators to enforce sizes must move to comply with its mandates - by security policies and provide rigorous, end-to-end April 14, 2003 for large organizations - and April 14, security based on the Federal Advanced Encryption 2004 for small organizations. Never in US history has Standard, AES.such a sweeping set of electronic secu... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search