HIPAA Risk Assessment and Security Rule
This HIPAA Risk Assessment and Security Rule Assessment Playbook is based on the U.S. Department of Commerce NIST Special Publication 800-66 Revision 1 - Health Insurance Portability and Accountability Act (HIPAA).
A covered entity is required to comply with all “standards” of the Security Rule and “required” implementation specifications with respect to all electronic private health information (EPHI). For “addressable” implementation specifications, covered entities must perform an assessment to determine whether the implementation specification is a reasonable and appropriate safeguard for implementation in the covered entity’s environment. Covered entities are required to document these assessments and all decisions. The HIPPA Playbook facilitates this process.
The HIPAA Risk Assessment and Security Rule Assessment Playbook addresses the following:
- HIPAA Security Rule – Risk Assessment
- HIPAA Security Rule – Administrative Safeguards
- HIPAA Security Rule – Physical Safeguards
- HIPAA Security Rule – Technical Safeguards
- HIPAA Security Rule – Organizational Requirements
- HIPAA Security Rule – Policies and Procedures and Documentation Requirements Document the Risk Assessment Results
Note: You must first install the GRC Playbook software before you can open and use the encrypted Playbooks.
All Playbooks are encrypted to protect the privacy and confidentiality of your data. The GRC Playbook software automatically generates and applies the password to programmatically unencrypt a Playbook and open it for use.
Save the downloaded Playbooks to a secure location on your system. Open your Playbooks from your secure location. GRC Playbook Limited does not have visibility into any of the data you enter into your downloaded Playbooks.