A HIPAA assessment is an audit for validating compliance with the Health Insurance Portability and Accountability Act (HIPAA) and the Health Information Technology for Economic and Clinical Health Act (HITECH Act). These security rules require administrative physical and technical safeguards to protect the confidentiality, integrity and availability of electronic protected health information (ePHI).
HIPAA/HITECH compliance practices apply to:
- Covered entities – doctors, dentists, retirement homes and other health care providers who transmit ePHI
- Business associates – accountants, law firms and other entities that perform activities for covered entities involving use or disclosure of ePHI
There are two assessments offered by CyberGate IT to determine your risk level in accordance with the HIPAA/HITECH security rules:
- HIPAA Network Security Assessment
- HIPAA Risk Assessment
A HIPAA network security assessment is provided as a free service by CyberGate IT for all of our prospective clients. The network security assessment establishes a baseline report with an ongoing quarterly or annual HIPAA security assessment to ensure continued compliance. The assessment includes:
- HIPAA risk analysis report
- External vulnerability scan detail report
A HIPAA risk assessment is based upon the HIPAA network security assessment, number of seats, locations and other factors. It includes an onsite walkthrough with a survey of locations during work hours. You’ll meet with one of our HIPAA-certified vCIOs to answer any detailed and technical questions you may have. HIPAA risk assessments provide baseline HIPAA compliance reports and remediation for a business and includes the following confidential reports:
- HIPAA risk analysis report
- HIPAA management plan
- HIPAA policies and procedures report
- Disk encryption report
- File scan report
- External vulnerability scan detail report
- User identification worksheet
- Computer identification worksheet
- Network share identification worksheet