An IT technician is deploying workstation privacy filters and configuring automated screen-lock timeouts for desktop computers located in the patient check-in area of a medical facility. These systems are regularly used to view treatment schedules and diagnostic records. Which of the following compliance regulations primarily mandates these safeguards to protect Protected Health Information (PHI)?
- HIPAA (Health Insurance Portability and Accountability Act)Answer
- BPCI-DSS (Payment Card Industry Data Security Standard)
- CGDPR (General Data Protection Regulation)
- DFERPA (Family Educational Rights and Privacy Act)
Answer
HIPAA (Health Insurance Portability and Accountability Act)
HIPAA (Health Insurance Portability and Accountability Act) is the regulatory standard that governs the protection of Protected Health Information (PHI). Implementing physical controls like privacy filters and technical controls like automated screen-lock timeouts ensures compliance with HIPAA rules for workstations handling medical data.
Step-by-Step Solution
Key Concept
Data Privacy Regulations and Scope (HIPAA / PHI)
Estimated Time:1m 0s