Finance & Management Services

Security


The Federal government has completed the HIPAA security regulations. DHSS has produced a Combined and Annotated Privacy & Security Regulations for ease of use. Combined & Annotated Privacy & Security

PDF Icon Regulations
PDF Icon Index


The security regulations apply to the administrative procedures, technical and physical safeguards that ensure the integrity, confidentiality and availability of protected health information. The proposed security standard is divided into four categories:

  • Administrative Procedures: These are the document, formal procedures for selecting and executing information security measures. The procedures also address staff responsibility for the protection of data.

  • Physical Safeguards: These safeguards protect the physical computer systems and related building and equipment from fire, and other environmental hazards, as well as intrusion.

  • Technical Security Data Issues: These include the processes used to protect, control and monitor information access.

  • Technical Security Mechanisms: These include process used to
    prevent unauthorized access to data transmitted over a communications network.

As with the privacy rule, the security rule requires extensive documentation regarding compliance with all requirements.

The US Department of Health and Human Services website contains additional information and frequently asked questions about the security standards proposed rule.