What is NNMC doing to comply with the proposed HIPAA Security regulations?
NNMC has been actively addressing the HIPAA security regulations even though the security regulations are not final. We implemented a comprehensive security program that mirrors best practices in the health care industry. In September 2002, we completed a DITSCAP assessment; several initiatives are underway to improve overall security at NNMC. All security requirements needed to comply with the privacy regulations are currently in place or will be in place by 14 April 2003. Future HIPAA security activities will include creating or revising policies, installing additional tools, reengineering work processes and conducting security training for all beneficiaries of the workforce to ensure certification will be achieved by the effective date of the security regulations.