decisionhealth Newsletters, Part B News - 2017 Issue 10 (October)
Target password safety, tighten access to avoid HIPAA fines
Subscribe or sign in to view the full article.
Article Overview
This compliance-focused article discusses why password sharing among healthcare personnel can create HIPAA privacy and security problems, including audit-trail and access-control concerns. It is relevant to compliance officers, privacy and security staff, healthcare administrators, and EHR/IT teams looking to better understand credential management, access governance, and related organizational risk. The article also references survey findings, an HHS settlement, and broad technology and workflow approaches used to discourage shared access.
Why This Topic Matters
Shared credentials can undermine accountability, weaken audit controls, and increase the risk of unauthorized access to protected health information. The topic matters to organizations that need to reduce privacy exposure, strengthen authentication practices, and avoid regulatory penalties.
Article Sections
-
Compliance
Introduces the privacy and security concerns raised by shared login practices in healthcare environments. Summarizes the broader compliance context and why the topic affects HIPAA risk management.
-
Take a common-sense approach
Discusses the concept of appropriate access in relation to workforce roles and protected health information. Addresses how access scope and organizational context factor into privacy compliance.
-
What could go wrong?
Reviews general operational and security risks associated with shared credentials, including accountability and monitoring concerns. Mentions a settlement example as part of the risk discussion.
-
3 ways to stop swaps
Outlines broad approaches intended to reduce credential sharing and improve access control. Covers authentication and workflow options at a high level.
What You Will Learn
- Why shared passwords can create compliance risk in healthcare
- How access control relates to HIPAA privacy expectations
- What organizational and technology practices may reduce credential sharing
- How auditability and accountability can be affected by shared logins
Who Should Read This
- Healthcare compliance professionals
- Privacy and security officers
- Healthcare administrators
- EHR and health IT teams
- Practice managers
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com