Case Study - HIPAA and IT Audits

Assignment Help Other Subject
Reference no: EM132401332

Case Study - HIPAA and IT Audits

Imagine you are the Information Security Officer at a medium-sized hospital chain. The CEO and the other senior leadership of the company want to ensure that all of their hospitals are and remain HIPAA compliant. They are concerned about the HIPAA Security and Privacy Rules and its impact on the organization. You begin looking at the information provided by the Department of Health and Human Services. Specifically, you are asked to provide an analysis of two (2) of the cases found here with emphasis on what was done to resolve the compliance issues.

Section 1 - Written Paper

Non-compliance with HIPAA regulations can result in significant fines and negative publicity. To help ensure that your organization remains in compliance with HIPAA regulations you have been asked to write a three page paper in which you:

1a. Create an overview of the HIPAA Security Rule and Privacy Rule.

1b. Analyze the major types of incidents and breaches that occur based on the cases reported.

1c. Analyze the technical controls and the non-technical controls that are needed to mitigate the identified risks and vulnerabilities.

1d. Analyze and describe the network architecture that is needed within an organization, including a medium-sized hospital, in order to be compliant with HIPAA regulations.

1e. Analyze how a hospital is similar to and different from other organizations in regards to HIPAA compliance.

1f. List the IT audit steps that need to be included in the organization's overall IT audit plan to ensure compliance with HIPAA rules and regulations.

1g. Use at least three (3) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

Section 2 - Network Architecture

2a. Create a network architecture diagram (using Visio or an open-source equivalent to Visio for creating diagrams), based on the description of the network architecture that you defined above for the organization to be compliant with HIPAA regulations.

2b. Include in the diagram the switches, routers, firewalls, IDS / IPS, and any other devices needed for a compliant network architecture.

The specific course learning outcomes associated with this assignment are:

Describe the process of performing effective information technology audits and general controls.

Explain the role of cybersecurity privacy controls in the review of system processes.

Describe the various general controls and audit approaches for software and architecture to include operating systems, telecommunication networks, cloud computing, service-oriented architecture and virtualization.

Use technology and information resources to research issues in information technology audit and control.

Write clearly and concisely about topics related to information technology audit and control using proper writing mechanics and technical style conventions.

Need 900 words content + title page + references with in-text citations. + Section 2 Diagram.

Attachment:- Assignment File - HIPAA.rar

Reference no: EM132401332

Questions Cloud

Triple-bottom-line approach for strategy : What other industries do you think could productively use this approach? How would it change customer's perceptions if it did?
What differences exist in social and economic status : What differences exist in social and economic status among the four people described? How can social and economic status influence how people interact.
Motivation theories does management practice support : What type of motivation theories does management practice support at target corporations? 2. What type of leadership would be most effective at target
Provide an analysis of the broad environment : Provide an analysis of the broad environment (using the PEST model) in which all industries and businesses operate.
Case Study - HIPAA and IT Audits : Case Study - HIPAA and IT Audits. Create an overview of the HIPAA Security Rule and Privacy Rule. Create a network architecture diagram
HRM 3113 Career Development and Planning Assignment : HRM 3113 Career Development and Planning Assignment Help and Solution, Higher Colleges of Technology, Abu Dhabi - Assessment Writing Service - Personal Career
What is the cage distance framework : What is the CAGE Distance Framework that firms should consider when choosing which foreign markets to enter?
Effective at target corporations : Can you explain what type of leadership would be most effective at target corporations?
Change management project plan : 1. Make draft for a change development plan. provide a tempelate with your answer.

Reviews

len2401332

11/15/2019 9:07:12 PM

Your assignment must follow these formatting requirements: Be typed, double spaced, using Times New Roman font (size 12), with one-inch margins on all sides; citations and references must follow APA or school-specific format. Check with your professor for any additional instructions. Include a cover page containing the title of the assignment, the student's name, the professor's name, the course title, and the date. The cover page and the reference page are not included in the required assignment page length.

Write a Review

Other Subject Questions & Answers

  How would you respond to someone who presents this criticism

Critics of qualitative research often posit that it is subjective due to the fact that the researcher collects the data. Therefore, the researcher's own prior experiences, prejudices, and attitudes may bias the data, and therefore, the results of ..

  Public key infrastructure is combination of software

Public Key Infrastructure (PKI) is a combination of software, hardware, and policies used to secure communications over an insecure medium.

  Evaluate dashboard metrics against the benchmarks set

Evaluate dashboard metrics against the benchmarks set by local, state, or federal health care laws or policies. Which metrics are below the mandated benchmarks.

  List ten journals that can be used as sources of information

List ten journals that can be used as sources of information about natural systems and processes that could be useful for natural computing.

  Examine the most common methods of ballistics analysis

Define ballistics. Examine the most common methods of ballistics analysis. Specify why that process/analysis is the most significant.

  Which area has more impact on human development

Which area has more impact on human development, and why? Discuss in terms of a global impact and specific issues such as personality development, intelligence.

  BN309 Computer Forensics Assignment Problem

BN309 Computer Forensics Assignment Help and Solution, Melbourne Institute of Technology - Assessment Writing Service - Prepare a forensic image with the record

  Which ethical system closely matches personal ethical system

Which ethical system is most prevalent in the United States today? In the World? Explain your answer and support your response. Which ethical system most closely matches your personal ethical system? Why do you think so? Explain your position.

  Energy and mass are equivalent

Einstein discovered that energy and mass are equivalent. What is one technological development that has emerged from the knowledge and is the human race better or worse off with it?

  Mobile computing and social networking

Mobile computing has dramatically changed how information is accessed and shared. Wireless networking has been an enabler of mobile computing.

  Create your mission and vision statements

Identify a healthcare related business of which you are the sole owner. Identify the 5 P's of healthcare marketing in your organization. Create your Mission and Vision Statements.

  Major legal and ethical issues

Does Jerry's medical training qualify him to issue this refill order? Why or why not?

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd