|
HIPAA fulfillment of requirements calling for due care to be exercised
concerning the monitoring of security data and incident management: |
|
Information System Activity Review
|
Sec. No. 164.308(a)(1)(4) |
|
Requirement: Implement procedures to regularly review records of information
system activity, such as audit logs, access reports, and security incident
tracking reports.
|
|
Information System Activity Review
|
Sec. No. 164.312(b) |
|
Requirement: Implement hardware, software, and/or procedural mechanisms that
record and examine activity in information systems that contain or use
electronic protected health information.
|