Suppr超能文献

为规模较小的组织合理调整《健康保险流通与责任法案》(HIPAA)的安全合规要求。

Rightsizing HIPAA security compliance for smaller organizations.

作者信息

Proctor Paul E, Davis Nick, Rosenblum Barbara

出版信息

J Healthc Inf Manag. 2003 Summer;17(3):34-40.

Abstract

The HIPAA security and privacy requirements are specifically designed using guidelines rather than hard and fast standards. These guidelines provide flexibility in scaling solutions for small to large organizations to address the law as well as to accommodate advances in technology. However, this very flexibility causes a quandary for smaller organizations because it's unclear how far an organization can scale back and still meet the law's requirements. This is particularly problematic in the security area, where over 20 guidelines permit a wide range of interpretation. This article addresses how much is enough and how to make defensible decisions in HIPAA implementation for smaller healthcare organizations.

摘要

《健康保险流通与责任法案》(HIPAA)的安全和隐私要求是专门依据指导方针而非严格标准制定的。这些指导方针为从小型到大型组织的解决方案扩展提供了灵活性,既能满足法律要求,又能适应技术进步。然而,这种灵活性给较小的组织带来了困境,因为不清楚组织可以缩减到何种程度仍能符合法律要求。这在安全领域尤其成问题,有20多条指导方针允许有广泛的解释。本文探讨了对于较小的医疗组织而言,在实施HIPAA时做到何种程度就足够了,以及如何做出合理的决策。

相似文献

文献AI研究员

20分钟写一篇综述,助力文献阅读效率提升50倍。

立即体验

用中文搜PubMed

大模型驱动的PubMed中文搜索引擎

马上搜索

文档翻译

学术文献翻译模型,支持多种主流文档格式。

立即体验