| HIPAA Compliance
from an IAM Perspective
HIPAA [Health Insurance Portability and Accountability
Act] compliance is about auditable and demonstrable
actions to protect the confidentiality and privacy
of patient information. HIPAA compliance means
implementing security standards that govern how
healthcare plans, providers, and clearinghouses
transmit, access, and store protected health information
in electronic form.
HIPAA privacy regulations demand that the usage
of a patient’s personal health information
(PHI) be limited to the minimal information necessary
to treat the patient. Such limitations must consider
the effects of various provisions for parents
and minors, use in marketing, research, payment,
and government access on authorization decisions.
Hospitals, Health organizations are required
to put in place systems, procedures, policies
to govern access to PHI. The governance rules
for accessing PHI, keeping track of access privileges,
modifications, to account and access privileges
are to be maintained. HIPAA demands that access
to PHI be governed through systems which are audit-able
and track-able.
The Administrative Simplification Requirements
of HIPAA consist of four parts:
- Electronic transactions and code sets;
- Security;
- Unique identifiers;
- Privacy.
Enterprise or the health care service provider
to ensure that its transactions are being conducted
in compliance with HIPAA, whether or not it contracts
a third party biller or clearinghouse to conduct
any of the transactions.
IAM solutions can assist enterprises in the health
sector and related to health sector in complying
with HIPAA, in the following ways:
- On demand User Provisioning and De-Provisioning
- User authentication capabilities which support
a range of methods, from passwords to other
authentication methods.
- Administer and enforce access to all applications,
enterprise wide and related data.
- Role / Governance based access control
- Comprehensive Auditing and reporting for each
and every access
- Enterprise wide Access Management
- Automated Password Management system
For more
details, Please
email
or
call us on the for an ILANTUS representative to
contact you.
|