How long does an ISA take and can one be performed for organizations outside of healthcare?
A – The short answers are: … it depends and … yes. The scope of an ISA conducted by Cmac will depend on many factors including: the size of the entity, the location, the number of physical locations PHI or EPHI is created, processed, or stored, the number of computing and non-computing assets that create, process, store, or transmit PHI or EPHI, among other factors. Before a timeframe can be reasonably determined, an organization should contact Cmac and discuss your needs, scope, and the various factors enumerated above. For smaller organizations, Cmac can provide a self assessment package which include hard copy checklists and instruction along with webinars that provide introductory information pertaining to: information assurance, HIPAA Security and Privacy Rules, the respective self assessment checklists, along with other educational and awareness material to improve your organization’s information assurance program. You can obtain these packages by contacting Cmac directly. Regard
Related Questions
- We will be out of town for the summer. Can I have my childs school entry physical exam performed outside of Florida?
- Can I earn CME credit for any type of committee work performed for PA or other healthcare organizations?
- How long does an ISA take and can one be performed for organizations outside of healthcare?