Preview

Task 1

Good Essays
Open Document
Open Document
473 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
Task 1
Heart-Healthy Insurance Information Security Policy
You are the manager of the information security analyst team for a large health insurance company. Your supervisor has asked you to review and provide recommendations for changes to the company’s information security policy. The intent of this review is to ensure that the policy complies with current regulatory requirements, obtains the benefits of industry specific standards, utilizes a recognized framework, is relevant for your company, and meets the requirements of all relevant regulations and standards. The review’s outcome should be to recommend modifications to the policy to ensure alignment with relevant regulatory requirements.
The policy is a large document that discusses confidentiality, integrity, and availability across the spectrum of the electronic information systems that your company utilizes.
Among the services that your company provides are patient-history evaluations for chronic illness indicators, insurance rate underwriting, paying claims to healthcare providers, accepting premium payments from employers, and accepting copayments from claimants.
In addition to regulatory requirements, the U.S. Department of Health and Human Services
(HHS) has set some national standards for identification of employers, providers, transactions, procedure codes, and place of service codes.
The company you work for holds information that is protected by regulatory requirements.
This information includes individual privacy information, personal health information, financial information, and credit information. Information about employees and patients, also known as demographics, contain personally identifiable information, which is covered under the U.S. Federal Privacy Laws. Health information that is personally identifiable, also known as PHI, is required to be protected under HIPAA and HITECH. Because the company is an insurance company the government classifies the company as a financial

You May Also Find These Documents Helpful

  • Better Essays

    Whitman, M., & Mattord, H. (2004). Information Security Policy. In Management of information security(Fourth ed., p. 154). Boston, Mass.: Thomson Course…

    • 2101 Words
    • 8 Pages
    Better Essays
  • Good Essays

    LIT1 Task 1

    • 1514 Words
    • 5 Pages

    Liability – There is unlimited liability in a general partnership. The owners/partners are responsible for all profits and losses. If one partner is unable to pay a debt the other partners will be accountable to pay.…

    • 1514 Words
    • 5 Pages
    Good Essays
  • Satisfactory Essays

    IT255 Project 1

    • 663 Words
    • 2 Pages

    At Richman Investments the personnel is accountable for the appropriate use of IT assets. Therefore, it is in the best interest of the organization to ensure employees handle security procedures with integrity. It is essential to create a strong AUP (Acceptable Use Policy) procedure and as part of the process, require employees sign an agreement to guarantee they understand and conform to implemented rules and regulations. In addition, the company will conduct security awareness training, annual security exercises, notices about securing information, and constant reminders security is everyone’s responsibility.…

    • 663 Words
    • 2 Pages
    Satisfactory Essays
  • Satisfactory Essays

    SEC 402 Week 4 Assignment 1 – Developing the Corporate Strategy for Information Security – Strayer Latest…

    • 514 Words
    • 3 Pages
    Satisfactory Essays
  • Powerful Essays

    Task 3

    • 4254 Words
    • 17 Pages

    Complete a thorough analysis of the mobile device policies. Periodically examine mobile device usage and identify security risks/threat.…

    • 4254 Words
    • 17 Pages
    Powerful Essays
  • Better Essays

    LIT1 Task 2

    • 1171 Words
    • 4 Pages

    Human resource departments are responsible for effectively, legally, fairly, and consistently attempting to maximize an organization’s return on its human capital investment while minimizing financial risk. This is why labor laws and Civil Acts are placed in the work place and other felicities to insure the well fare of others are without risk and effective(WGU).…

    • 1171 Words
    • 4 Pages
    Better Essays
  • Better Essays

    Task 2

    • 2610 Words
    • 11 Pages

    Has a great background in TV (helps in marketing) Would prefer to cling to existing model for organization.…

    • 2610 Words
    • 11 Pages
    Better Essays
  • Good Essays

    Lit1 Task 2

    • 1608 Words
    • 5 Pages

    The FMLA Act of 1993 applies to all public agencies, including state, local and federal employers, local education agencies (schools), and private-sector employers who employed 50 or more employees in 20 or more workweeks in the current or preceding calendar year.…

    • 1608 Words
    • 5 Pages
    Good Essays
  • Satisfactory Essays

    Task One

    • 281 Words
    • 2 Pages

    While evaluating Company Q’s attitude toward social responsibility it seems they made some decisions based on the severe lack of revenue over a period time, which motivated them to close a couple of stores. Those stores, which were located in a major metropolitan area, were also characterized as high-crime areas. By closing those stores, it no doubt had a negative economic impact both directly and indirectly on the people in those store locations. For the now unemployed people they will have to look for another source of income and benefits. The community members that relied on those stores for groceries, will now have to travel to another store possibly at a longer distance and will have to commit more time and money.…

    • 281 Words
    • 2 Pages
    Satisfactory Essays
  • Satisfactory Essays

    Task E5

    • 328 Words
    • 2 Pages

    For each policy, the candidate will give an example of a practical situation where the policy could protect the school, its staff or its children.…

    • 328 Words
    • 2 Pages
    Satisfactory Essays
  • Powerful Essays

    Task 1 P1

    • 1740 Words
    • 5 Pages

    In this essay I am going to be describing, explaining and evaluating the legislation and policies relating to health, safety and security of children in a childcare setting. I will also be describing the procedures for risk assessments and hygiene control in my current placement.…

    • 1740 Words
    • 5 Pages
    Powerful Essays
  • Satisfactory Essays

    Discussion 1

    • 396 Words
    • 2 Pages

    From a management perspective, analyze the overall industry requirements and major organizational challenges of forming a sound information security program, and ascertain the fundamental manner in which regulations and compliancy may factor into the challenges in question.…

    • 396 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    Hitech

    • 455 Words
    • 2 Pages

    * Protects PHI from unauthorized use and disclosure by explicitly requiring business associates to implement comprehensive information security programs…

    • 455 Words
    • 2 Pages
    Good Essays
  • Good Essays

    The Health Insurance Portability and Accountability act of 1996 or HIPAA, was put in place as an attempt to reform health care during the Clinton administration by making it possible for workers, of any profession, to change jobs regardless if the worker, or any member of their family, have a pre-existing medical condition, decreasing paperwork which is associated with the processing of health claims, and by reducing health care abuse and fraud, and by assuring the privacy and security of health information. HIPAA’s standards for privacy of individually identifiable health information or privacy rule includes restrictions which protect the confidentiality and security of health information, and determines a criterion to protect the confidentiality of individually identifiable health information that is maintained or transmitted through electronic means in association with certain administrative and financial transactions such as electronic transfer of health insurance claims. The covered entity, in most cases, is required to obtain an individual’s authorization prior to disclosing any health information. And in most circumstances the patient or a legal representative of the patient controls the disclosure of PHI to any third party.…

    • 1028 Words
    • 5 Pages
    Good Essays
  • Powerful Essays

    Hipaa Privacy Rule

    • 1821 Words
    • 8 Pages

    The wisdom of the HIPAA Privacy Rules was to create national standards to protect the…

    • 1821 Words
    • 8 Pages
    Powerful Essays