SEC 360 Week 2 DQ 1 Compliance Legislation
How can we utilize the four types of security policies to develop a HIPAA security program
for organizations? What kinds of information does HIPAA protect? What kinds of
organizations does HIPAA cover?
This section lists options that can be used to view responses.
Collapse All Print View Show Options
Responses are listed below in the following order: response, author and the date and time
the response is posted.
Sort byResponse Sort byAuthor Sort byDate/Tim
(an instructor response)
HIPAA &
HITECH Professor Koonjbearry 5/8/2016 7:55:08 PM
What are the differences between HIPAA and HITECH?
RE:
HIPAA 5/9/2016 12:02:31 PM
Mitchell Thompson
&
HITECH
HIPAA laid the groundwork for privacy and security of health information. The main points were the
Privacy, Security and Enforcement Rules. These required covered entities – hospitals, carriers and
doctors – to implement protections for PHI.
HITECH enhanced the enforcement of HIPAA and extended provisions of HIPAA to business
associates. HITECH had extended the Privacy and Security Rules of HIPAA to business associates:
agents of carriers. It also imposed new requirements regarding breaches - covered entities are now
obligated to report large data breaches to the government and the affected individuals.
More information: https://www.linkedin.com/pulse/what-difference-between-hipaa-hitech-bridgette-
o-connor
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:27:42 AM
HITECH
You are correct Mitchell. HIPAA is the regulation and HITECH define the penalties
RE:
HIPAA
Salvador Rodriguez 5/9/2016 11:25:53 PM
&
HITECH
Our book, Information Security Principles and Practice (Merkow & Jim, 2006) discusses the
information that HIPAA protects and the information it covers. THE Health Insurance Portability and
, Accountability Act (HIPAA) protect sensitive about patients. More specifically, entities such as health
care providers and plan providers cannot divulge health-related information to an individual’s
employer under most circumstances. Now the kind of information involved regards an individual’s
medical history and payments related to health care for instance.
Bibliography
Merkow, M., & Jim, B. (2006). Information Security Principles and Practice. Upper Saddle River:
Pearson Education, Inc.
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:28:34 AM
HITECH
and also, if you go to the U.S Department of Health and Human Services, you will find good details.
RE:
HIPAA
James Seyler 5/10/2016 3:54:39 PM
&
HITECH
HIPAA was the basics of what privacy and security of health systems should be, and are. It provides
protection for the people and their health insurance. While HITECH enhanced and extended
provisions for HIPAA and HIPAA business associates. It added more technical requirements to
hospitals and doctors to protect the information the have on file.
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:28:51 AM
HITECH
Modified:5/12/2016 9:29 AM
You are correct. HIPAA is the regulation and HITECH defines the penalties
RE:
HIPAA
Roland Cheyson 5/10/2016 6:59:39 PM
&
HITECH
HIPAA stands for Health Insurance Portability and Accountability Act. This
act was initiated in 1996. It was designed to protect confidential
healthcare information by improving security standards and federal
privacy legislation. Now HITECH on the other hand is the intimidating force
behind HIPAA which holds agents accountable for any information leakage.
, The different between HIPAA and HITECH could be further explained as;
the HIPAA is a federal law for guarding information while the HITECH is the
technicality of how and why the information needs to be guarded,
together with the consequences of not securing the information.
(Information Security Principles and Practice. Page 397.)
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:29:22 AM
HITECH
You are correct. HIPAA is the regulation and HITECH defines the penalties
RE:
HIPAA
Kelvin Ortiz 5/10/2016 7:55:04 PM
&
HITECH
HIPAA laid the groundwork for privacy and security of health information. HIPAA was enacted to
provide a variety of protections for individuals and their health insurance, including access,
portability, fraud and abuse protections and administrative simplification. The main points we focus
on are the privacy, security and enforcement rules.
HITECH was enacted in 2009 as part of the American Recovery and Reinvestment Act to promote
the adoption of health information technology. This added more technical requirements to hospitals
and doctors who were using electronic health records. A section of HITECH also improved provisions
of HIPAA. This was when carriers began issuing business associate agreements with all their
agents.
http://www.producersweb.com/r/pwebmc/d/contentFocus/?
pcID=a2b0cd7a8d9e6ba5e980f46d3f2688a8#
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:29:57 AM
HITECH
You are right Kelvin. HIPAA is the regulation and HITECH defines the penalties
RE:
HIPAA
Jack Andrei Evangelio 5/10/2016 10:58:43 PM
&
HITECH
HITECH (Health Information Technology for Economic and Clinical Health) and HIPAA (Health
Insurance Portability and Accountability Act) are somewhat different by the
How can we utilize the four types of security policies to develop a HIPAA security program
for organizations? What kinds of information does HIPAA protect? What kinds of
organizations does HIPAA cover?
This section lists options that can be used to view responses.
Collapse All Print View Show Options
Responses are listed below in the following order: response, author and the date and time
the response is posted.
Sort byResponse Sort byAuthor Sort byDate/Tim
(an instructor response)
HIPAA &
HITECH Professor Koonjbearry 5/8/2016 7:55:08 PM
What are the differences between HIPAA and HITECH?
RE:
HIPAA 5/9/2016 12:02:31 PM
Mitchell Thompson
&
HITECH
HIPAA laid the groundwork for privacy and security of health information. The main points were the
Privacy, Security and Enforcement Rules. These required covered entities – hospitals, carriers and
doctors – to implement protections for PHI.
HITECH enhanced the enforcement of HIPAA and extended provisions of HIPAA to business
associates. HITECH had extended the Privacy and Security Rules of HIPAA to business associates:
agents of carriers. It also imposed new requirements regarding breaches - covered entities are now
obligated to report large data breaches to the government and the affected individuals.
More information: https://www.linkedin.com/pulse/what-difference-between-hipaa-hitech-bridgette-
o-connor
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:27:42 AM
HITECH
You are correct Mitchell. HIPAA is the regulation and HITECH define the penalties
RE:
HIPAA
Salvador Rodriguez 5/9/2016 11:25:53 PM
&
HITECH
Our book, Information Security Principles and Practice (Merkow & Jim, 2006) discusses the
information that HIPAA protects and the information it covers. THE Health Insurance Portability and
, Accountability Act (HIPAA) protect sensitive about patients. More specifically, entities such as health
care providers and plan providers cannot divulge health-related information to an individual’s
employer under most circumstances. Now the kind of information involved regards an individual’s
medical history and payments related to health care for instance.
Bibliography
Merkow, M., & Jim, B. (2006). Information Security Principles and Practice. Upper Saddle River:
Pearson Education, Inc.
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:28:34 AM
HITECH
and also, if you go to the U.S Department of Health and Human Services, you will find good details.
RE:
HIPAA
James Seyler 5/10/2016 3:54:39 PM
&
HITECH
HIPAA was the basics of what privacy and security of health systems should be, and are. It provides
protection for the people and their health insurance. While HITECH enhanced and extended
provisions for HIPAA and HIPAA business associates. It added more technical requirements to
hospitals and doctors to protect the information the have on file.
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:28:51 AM
HITECH
Modified:5/12/2016 9:29 AM
You are correct. HIPAA is the regulation and HITECH defines the penalties
RE:
HIPAA
Roland Cheyson 5/10/2016 6:59:39 PM
&
HITECH
HIPAA stands for Health Insurance Portability and Accountability Act. This
act was initiated in 1996. It was designed to protect confidential
healthcare information by improving security standards and federal
privacy legislation. Now HITECH on the other hand is the intimidating force
behind HIPAA which holds agents accountable for any information leakage.
, The different between HIPAA and HITECH could be further explained as;
the HIPAA is a federal law for guarding information while the HITECH is the
technicality of how and why the information needs to be guarded,
together with the consequences of not securing the information.
(Information Security Principles and Practice. Page 397.)
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:29:22 AM
HITECH
You are correct. HIPAA is the regulation and HITECH defines the penalties
RE:
HIPAA
Kelvin Ortiz 5/10/2016 7:55:04 PM
&
HITECH
HIPAA laid the groundwork for privacy and security of health information. HIPAA was enacted to
provide a variety of protections for individuals and their health insurance, including access,
portability, fraud and abuse protections and administrative simplification. The main points we focus
on are the privacy, security and enforcement rules.
HITECH was enacted in 2009 as part of the American Recovery and Reinvestment Act to promote
the adoption of health information technology. This added more technical requirements to hospitals
and doctors who were using electronic health records. A section of HITECH also improved provisions
of HIPAA. This was when carriers began issuing business associate agreements with all their
agents.
http://www.producersweb.com/r/pwebmc/d/contentFocus/?
pcID=a2b0cd7a8d9e6ba5e980f46d3f2688a8#
(an instructor response)
RE:
HIPAA & Professor Koonjbearry 5/12/2016 9:29:57 AM
HITECH
You are right Kelvin. HIPAA is the regulation and HITECH defines the penalties
RE:
HIPAA
Jack Andrei Evangelio 5/10/2016 10:58:43 PM
&
HITECH
HITECH (Health Information Technology for Economic and Clinical Health) and HIPAA (Health
Insurance Portability and Accountability Act) are somewhat different by the