Difference between revisions of "Administrative Safeguards"

From Clinfowiki
Jump to: navigation, search
(Created page with "Administrative safeguards refers to measures put in place to secure and protect the computer hardware and information from external threats. Questions that need to be considered...")
 
Line 1: Line 1:
Administrative safeguards refers to measures put in place to secure and protect the computer hardware and information from  external threats.
+
'''Administrative safeguards''' refers to measures put in place to secure and protect the computer hardware and information from  external threats.
Questions that need to be considered in building administrative safeguards includes:
+
 
Terminals can not be used or viewed by unauthorized users?
+
== Questions that need to be considered in building administrative safeguards ==
Workstations in publicly-accessible areas log off if left idle?
+
 
Evidence of physical security for all system hardware components?
+
* Terminals can not be used or viewed by unauthorized users?
Remote access to clinical applications is secured via 2-factor authentication?
+
* Workstations in publicly-accessible areas log off if left idle?
All patient-identifiable information that is transmitted outside the organization should be encrypted?
+
* Evidence of physical security for all system hardware components?
Record of the ratio of user-initiated system logouts to total system logouts?
+
* Remote access to clinical applications is secured via 2-factor authentication?
% of workstations with up-to-date virus protection software?
+
* All patient-identifiable information that is transmitted outside the organization should be encrypted?
“Recycling” bins for paper / print-outs containing patient-identifiable data should be made of metal and be locked?
+
* Record of the ratio of user-initiated system logouts to total system logouts?
All system hardware kept in locked rooms and portable devices secured?
+
* % of workstations with up-to-date virus protection software?
 +
* [[Removing Paper|“Recycling” bins for paper]]/print-outs containing patient-identifiable data should be made of metal and be locked?
 +
* All system hardware kept in locked rooms and portable devices secured?
 +
 
 +
== References ==
 +
<references/>
 +
 
 +
[[Category: Definition]]

Revision as of 06:17, 11 October 2014

Administrative safeguards refers to measures put in place to secure and protect the computer hardware and information from external threats.

Questions that need to be considered in building administrative safeguards

  • Terminals can not be used or viewed by unauthorized users?
  • Workstations in publicly-accessible areas log off if left idle?
  • Evidence of physical security for all system hardware components?
  • Remote access to clinical applications is secured via 2-factor authentication?
  • All patient-identifiable information that is transmitted outside the organization should be encrypted?
  • Record of the ratio of user-initiated system logouts to total system logouts?
  •  % of workstations with up-to-date virus protection software?
  • “Recycling” bins for paper/print-outs containing patient-identifiable data should be made of metal and be locked?
  • All system hardware kept in locked rooms and portable devices secured?

References