Templates
Information Security
HIPAA IT Security Checklist
🔒

HIPAA IT Security Checklist

1
Prepare a HIPAA compliance policy document
2
Identify all ePHI data within the system
3
Perform risk assessment to identify potential threats and vulnerabilities to ePHI
4
Approval: Risk Assessment
5
Deploy encryption on all electronic devices that store, process, or transmit ePHI
6
Define and implement procedures for obtaining necessary ePHI during an emergency
7
Develop a disaster recovery plan
8
Train all staff members on HIPAA requirements and the organization's policies and procedures
9
Approval: Training Completion
10
Set up strong authentication measures
11
Implement and test backups of all ePHI data
12
Perform regular updates and patches to system software and equipment
13
Set up audit controls and activity logs to record and examine system activity
14
Conduct regular audits to ensure compliance
15
Enforce protocols to limit physical and digital access to ePHI
16
Set up firewalls and secure the network
17
Implement procedures for regular review of system logs
18
Approval: System Log Review
19
Establish incident response plan
20
Approval: Incident Response Plan