Skip to main content

How to Conduct a HIPAA Security Risk Assessment per NIST guidance


Overview
This course will cover the proper methodologies on conducting a HIPAA Risk Assessment based on the formula used by Federal auditors and via the guidelines of the NIST (National Institute of Standard for Technologies). The course will also cover the most important aspects to be aware of in terms of the Federal auditing process as well as the new risks regarding patients suing for wrongful disclosures.
Why should you attend this webinar?
Have your done a HIPAA Security Risk Assessment? What about a full scope HIPAA Security/Privacy Risk Assessment?
Do you know a risk assessment is the first thing the Feds will ask for in an OCR audit and may also be required should litigation be brought against the organization?
Is your risk assessment adequate?
Do you have written policies in place for every single one of the implementation specification of the HIPAA Security Rule (even ones that don't apply) - do you know this is required!!
I will show how to conduct a PROPER risk assessment point by point and how to also avoid scams in the market. We will also be discussing the absolute importance of doing a risk assessment and that this is the first thing the OCR will ask for. I will instruct the listeners on how to write proper policies and procedures which are to be based upon the findings of the risk assessment and how to word the policies to satisfy the Fed. We will also discuss the importance of having policies which are consistent with your procedures and also discuss the negative ramification of cookie cutter templates in the eyes of the Federal government.
Areas Covered in the Session:
  • Updates for 2018
  • Policies and Procedures
  • Risks
  • Business associates and the increased burden
  • Conduct a NIST based HIPAA Security Risk Assessment for a hypothetical organization
  • Practice managers
  • Any business associates who work with medical practices or hospitals (i.e. billing companies, transcription companies, IT companies, answering services, home health, coders, attorneys, etc)
  • MD's and other medical professionals
Who can Benefit:

  • Private practice
  • Hospitals
  • Billing companies
  • Transcriptions companies
  • Home health groups
  • Health insurance
  • Ambulatory
  • IT companies
  • Attorneys
  • Practice Managers Associations
  • Healthcare and any entities doing business with healthcare as "business associate"

Comments

Popular posts from this blog

Risk and Controls Matrix for SOX, Assurance and Internal Audit

Compliance Key INC  -  SOX Training Online Overview This webinar is created to equip young risk and compliance professionals with the skills necessary to prepare a Risk and Controls Matrix, including the following: Discover the objectives, components and requirements of effective internal controls Leveraging internal control frameworks to create a risk and controls matrix Developing risk identification and management strategies to implement now Learning how to design internal controls Learning how to evaluate the design and operating effectiveness of internal controls Why should you attend this webinar? Whether you are planning a SOX engagement, or an internal audit, regulatory compliance requirements, or other separate evaluations, just where do you start with planning for the engagement? How do you complete the necessary risk and control documentation that you will need to successfully complete the engagement? Attend this webinar to learn more. Areas...

Essentials of Affirmative Action and OFCCP Compliance

Compliance Key INC  -  Human Resource Training Online                                                                  Janette Levey Frisch Janette Levey Frisch is Keynote Speaker at Compliance key Inc. She is founder of  The EmpLAWyerologist Firm, has over 20 years of legal experience, more than 10 of which she has spent in Employment Law. It was during her tenure as sole in-house counsel for a mid-size staffing company headquartered in Central New Jersey, with operations all over the continental US, that she truly developed her passion for Employment Law.   Webinar Id:   CICJE001  10.00 AM PT | 01.00 PM ET   01/09/2018  Duration: 90 mins  Overview If you are a federal contractor, having a firm grasp on the essentials ...

The 5 most Dangerous Risks Under New HIPAA Laws

Compliance Key  -   Online hipaa training for employees in US Overview This 90-minute webinar will be addressing how practice/business managers (or compliance offers) need to get their HIPAA house in order before the imminent audits occur. It will also address major changes under the Omnibus Rule and any other applicable updates for 2018. We will go into detail about the 5 biggest "gotcha's" related to compliance with this enigmatic law. I will also speak of multiple litigated cases I have been involved with involving HIPAA compliance (or lack there of areas also covered will be texting, email, encryption, medical messaging, voice data and risk factors as they relate to IT.  The primary goal is to ensure everyone is well educated on what is myth and what is reality with this law, there is so much misleading information regarding the do's and don'ts with HIPAA - I want to add clarity for compliance officers and what you guys need to do and how to best im...