| |
Day 1: Material: HIPAA Professional Manual |
Lesson 4: HIPAA Security Rule |
- Threats
- Definition and Terminology
- Security
- Security Services
- Security Mechanisms
- Security Rules
- Categories of Safeguards
- Implementation Specifications
- Approach and Philosophy
- Security Principles
- Administrative Safeguards
- Physical Safeguards
- Technical Safeguards
- Organizational Requirements
- Policies and Procedures, and Documentation
Standards
- Electronic Signatures (proposed
rule)
|
Lesson 5: Crafting a Plan (Getting Started) |
- HIPAA and e-Business
- Developing a Compliance Strategy
- Planning for Privacy Compliance
- Key Privacy Policy Documents
- PHI Data Exchange Scenarios
- Privacy Officer Responsibilities
- Addressing Business Associates
- Releasing PHI to Third Parties
- Planning for Security Compliance
- Security Manager Job Description
- Establishing the Security Compliance Framework
- Possible Framework for Compliance
- Step 1: Training and Awareness
- Step 2: Security Assessment
- Step 3: Business Risk Analysis
- Step 4: Implementation
- Step 5: Auditing and Enforcement
|
Day 2: Material: HIPAA Security Specialist
Manual, PowerPoint, Quick Reference cards and Security
Policy templates |
Lesson 2: Administrative Safeguards |
- Administrative Safeguards
- Security Management Process
- Assigned Security Responsibility
- Workforce Security
- Information Access Management
- Security Awareness and Training
- Security Incident Procedures
- Contingency Plan
- Evaluation
- Business Associate Contracts Standard
|
Lesson 3: Physical Safeguards |
- Requirements
- Facility Access Controls
- Workstation Use
- Workstation Security
- Device and Media Controls
- Physical Safeguards Review
|
Lesson 4: Technical Safeguards (Part
I) |
- Requirements
- Access Control
- Audit Controls
- Integrity
- Person or Entity Authentication
- Security Compliance process: Risk
Analysis, Vulnerability Assessment, Remediation, Contingency
Planning, Audit & Evaluation
- Transmission Security
|
Lesson 4: Technical Safeguards (Part
II) |
- TCP/IP Network Infrastructure
- Firewall Systems
- Virtual Private Networks (VPNs)
- Wireless Transmission Security
- Encryption
- Kerberos Authentication
- Overview of Windows XP Security
|
Day 3 |
Lesson 5: Digital Signatures & Certificates |
| Requirements |
- Digital Signatures
- Digital Certificates
- Public Key Infrastructure (PKI)
- Solution Alternatives
- Identity theft prevention & HIPAA
|
Lesson 6: Security Policy |
- Threat, Risk Management and Policy
- ISO 17799 and BS 7799 Security Standards
- Security Policy Considerations
|
| |
PowerPoint, Practice Test, Security Policy Templates |
Additional topics to be covered outside
the manual |
- Cross over of HIPAA with NIST, SOX
and other compliance regulations
- Enforcement Rule info
- Sample Security Policies
- Practice test questions
- Security Compliance steps
|