HIPAA Statement. Sectra PACS. Version 14.1, January 2012



Similar documents
SECTRA BREAST IMAGING PACS. Productivity without limits

XDS-I - CROSS-ENTERPRISE DOCUMENT SHARING FOR IMAGING

WHITE PAPER. HIPAA-Compliant Data Backup and Disaster Recovery

Sectra MEI. Your key to cross-enterprise information management. Sometimes you want to share... Finding the correct information

GoToAssist Remote Support HIPAA compliance guide

An Oracle White Paper December Leveraging Oracle Enterprise Single Sign-On Suite Plus to Achieve HIPAA Compliance

Copyright Telerad Tech RADSpa. HIPAA Compliance

The Second National HIPAA Summit

RAYSAFE S1 SECURITY WHITEPAPER VERSION B. RaySafe S1 SECURITY WHITEPAPER

CHIS, Inc. Privacy General Guidelines

How To Control A Record System

HIPAA, PHI and . How to Ensure your and Other ephi are HIPAA Compliant.

IBM Internet Security Systems. The IBM Internet Security Systems approach for Health Insurance Portability and Accountability Act compliance overview

HIPAA/HITECH Compliance Using VMware vcloud Air

HIPAA: In Plain English

HIPAA PRIVACY AND SECURITY AWARENESS

Solutions Brief. Citrix Solutions for Healthcare and HIPAA Compliance. citrix.com/healthcare

White Paper. BD Assurity Linc Software Security. Overview

The CIO s Guide to HIPAA Compliant Text Messaging

Healthcare Security and HIPAA Compliance with A10

WHITE PAPER. Support for the HIPAA Security Rule RadWhere 3.0

Security Controls What Works. Southside Virginia Community College: Security Awareness

White Paper. Support for the HIPAA Security Rule PowerScribe 360

The Impact of HIPAA and HITECH

Unified Security Anywhere HIPAA COMPLIANCE ACHIEVING HIPAA COMPLIANCE WITH MASERGY PROFESSIONAL SERVICES

An Oracle White Paper December Implementing Enterprise Single Sign-On in an Identity Management System

IBX Business Network Platform Information Security Controls Document Classification [Public]

DIGITECH SYSTEMS AND THE HEALTHCARE MARKETPLACE

Why you need an Automated Asset Management Solution

DATA SECURITY AGREEMENT. Addendum # to Contract #

efolder White Paper: HIPAA Compliance

RSA SecurID Software Token Security Best Practices Guide

HIPAA Security. 4 Security Standards: Technical Safeguards. Security Topics

HIPAA. considerations with LogMeIn

HIPAA: MANAGING ACCESS TO SYSTEMS STORING ephi WITH SECRET SERVER

OBM (Out of Band Management) Overview

University of Illinois at Chicago Health Sciences Colleges Information Technology Group Security Policies Summary

Netwrix Auditor for SQL Server

Heather L. Hughes, J.D. HIPAA Privacy Officer U.S. Legal Support, Inc.

Windows Authentication on Microsoft SQL Server

ESET Secure Authentication

HIPAA/HITECH Act Implementation Guidance for Microsoft Office 365 and Microsoft Dynamics CRM Online

Research Information Security Guideline

Why SaaS (Software as a Service) and not COTS (Commercial Off The Shelf software)?

MANAGED FILE TRANSFER: 10 STEPS TO HIPAA/HITECH COMPLIANCE

White Paper Achieving HIPAA Compliance through Security Information Management. White Paper / HIPAA

C.T. Hellmuth & Associates, Inc.

An Introduction to HIPAA and how it relates to docstar

Security Guide for the BD Remote Instrument Support Solution BD Biosciences workstations

IBM Security SiteProtector System Migration Utility Guide

HIPAA Security. 1 Security 101 for Covered Entities. Security Topics

Healthcare Compliance Solutions

Security FAQs (Frequently Asked Questions) for Xerox Remote Print Services

05.0 Application Development

Develop HIPAA-Compliant Mobile Apps with Verivo Akula

For more information on how to build a HIPAA-compliant wireless network with Lutrum, please contact us today!

Managing for the Long Term: Keys to Securing, Troubleshooting and Monitoring a Private Cloud

LogMeIn HIPAA Considerations

Health Insurance Portability and Accountability Act Enterprise Compliance Auditing & Reporting ECAR for HIPAA Technical Product Overview Whitepaper

General HIPAA Implementation FAQ

Monitoring Nginx Server

Nationwide Review of CMS s HIPAA Oversight. Brian C. Johnson, CPA, CISA. Wednesday, January 19, 2011

VMware vcloud Air HIPAA Matrix

Beyond Good Practice: Why HIPAA only addresses part of the data security problem

PA-DSS Implementation Guide for. Sage MAS 90 and 200 ERP. Credit Card Processing

Solgenia Facsys. Fax and HIPAA Compliance

The Health Insurance Portability and Accountability Act - HIPAA - Using BeAnywhere on a HIPAA context

HIPAA compliance. Guide. and HIPAA compliance. gotomeeting.com

How SUSE Manager Can Help You Achieve Regulatory Compliance

DHHS Information Technology (IT) Access Control Standard

Netwrix Auditor for Active Directory

HIPAA Security Series

FINAL DoIT v.8 APPLICATION SECURITY PROCEDURE

docs.rackspace.com/api

Compliance Challenges. Ali Pabrai, MSEE, CISSP (ISSMP, ISSAP) Member, FBI InfraGard. Increased Audits & On-site Investigations

enicq 5 System Administrator s Guide

HIPAA Security Matrix

Data Security and Integrity of e-phi. MLCHC Annual Clinical Conference Worcester, MA Wednesday, November 12, :15pm 3:30pm

Transcription:

HIPAA Statement Sectra PACS Version 14.1, January 2012

About this document Sectra Imtec AB, Sweden, 2012 Disclaimer Sectra Imtec AB is not responsible for problems caused by changes in the operating characteristics of the computer hardware or operating system, which are made after the delivery of the software, or for problems that occur as a result of the use of Sectra software in conjunction with non-sectra software other than the software explicitly covered in this documentation. For a complete description of warranty, refer to the End User License Agreement supplied with the Sectra product. Feedback As part of our commitment to provide the highest quality products and services, we would like to encourage feedback on the quality of this documentation. If you think we can improve this document in any way, then please send your suggestions to <info.imtec@sectra.se>. About this document ii

Contents About this document.................................... ii 1 Disclaimer........................................... ii 2 Feedback............................................ ii 1 HIPAA statement....................................... 1 Contents iii

1 HIPAA statement The US Congress passed the Health Insurance Portability and Accountability Act (HIPAA) in 1996, which became effective starting from 1997. The Administrative Simplification provision of HIPAA was developed to reduce the costs and administrative burdens of health care by making it possible to replace manual transactions on paper with standardized electronic transactions. The Administration Simplification provisions of HIPAA also address the security and privacy of health data. Sectra has implemented the provisions into our software solutions to provide means for health care providers to comply with the HIPAA regulations. This provision of the law required the Department of Health and Human Services (DHHS) to develop standards (also called rules or regulations) for the maintenance and transmission of these transactions. These standards were developed to: Improve the efficiency and effectiveness of the health care system by standardizing the interchange of electronic data for the specified transactions Protect the security and confidentiality of electronic health information Sectra enables our customers to implement HIPAA-compliant security features due to our proactive product development. Specifically, Sectra PACS allows our customers to enable the following features, policies and restrictions: The ability to implement and administer strong passwords The ability to ensure integrity, authenticity and confidentiality of communication between Sectra PACS components The ability to audit user activity The ability to restrict user access to a specific selection of medical information The ability to prevent unauthorized access to images in the Sectra Workstation's local cache by means of encryption The ability to anonymize images that are displayed or exported by the Sectra Workstation The ability to ensure high availability, which is maintained by the overall system design, its deployment and through system monitoring with Sectra Monitoring Server Sectra PACS software enables functionality, which when properly configured and implemented, allows Sectra PACS customers to be fully compliant with all pertinent aspects of HIPAA. Sectra PACS endorses the security standards raised by HIPAA and we are committed to enabling our customers to protect patient privacy. Privacy and security are essential components of our software solutions. HIPAA statement 1

For more information about how Sectra PACS deals with HIPAA issues, please see www.sectra.com/medical or contact info@sectra.se to receive the Sectra HIPAA white paper. HIPAA statement 2

The quality system of Sectra Imtec AB conforms to the Quality Management Systems standard ISO 9001:2000 and TickIT. All Sectra Imtec AB medical devices meet the provisions of the Medical Devices Directive 93/42/EEC. All Sectra Imtec AB medical devices placed on the North American market have obtained FDA market clearance. Sectra, the Sectra logotype, the Sectra Imtec Handshake picture and the Sectra circles are registered trademarks of Sectra AB. Pronosco and Pronosco X-posure System are registered trademarks of Sectra Imtec AB. OrthoStation is a registered trademark of Sectra North America, Inc. Sectra PACS, Sectra Breast Imaging PACS, Sectra RIS, Sectra Screening RIS, Sectra MicroDose Mammography, IDS5, IDS7, WISE, ImageServer, Clinical Solutions Network, Sectra Medical Interfaces, Clinical Application Interface and Cross Platform Worklist are trademarks of Sectra Imtec AB. PACS-Guard is a servicemark of Sectra North America, Inc. Windows is a registered trademark of Microsoft Corporation in the United States and other countries. UNIX is a registered trademark of The Open Group in the United States and other countries. All other names/products by or are registered trademarks of the respective manufacturer. This product is protected by U.S. patents 6,005,917; 6,411,729; 6,763,257; 7,162,623; Japanese patent 3646122; European patents 0818971; 1046374; and Swedish patents 0203545; 0300951. Patents Pending in the U.S. and other countries. World Headquarters, USA Sweden Spain/Portugal manufacturer Phone: +1 203 925 0899 Phone: + 46 13 23 52 00 Phone: +34 930 010 333 Sectra Imtec AB Teknikringen 20 E-mail: info.na@sectra.com E-mail: info.se@sectra.se E-mail: info.iberia@sectra.com SE-58330 Linköping Germany/Switzerland/Austria Norway Benelux Phone: +49 241 963 2650 Phone: +47 67 58 97 70 Phone: +46 13 23 52 00 Phone: +31 36 540 1970 E-mail: info.de@sectra.com E-mail: info.no@sectra.com E-mail: info.benelux@sectra.com E-mail: info.se@sectra.se 0434 United Kingdom/Ireland Phone: +44 1908 673 107 E-mail: info.uk@sectra.com Denmark Phone: +45 45 65 06 00 E-mail: info.dk@sectra.com Italy Phone: +39 333 1 222 736 E-mail: info.it@sectra.com Australia/New Zealand Phone: + 61 2 9420 1620 E-mail: info.anz@sectra.com Japan E-mail: info.jp@sectra.com For other regions please visit www.sectra.com/medical