<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Reasonable, appropriate, adequate&#8230;security (Part I)</title>
	<atom:link href="http://blog.crackpassword.com/2009/06/reasonable-appropriate-adequate-security-part-i/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.crackpassword.com/2009/06/reasonable-appropriate-adequate-security-part-i/</link>
	<description>«...This blog is about &#60;a href=&#34;/?s=password+recovery&#34;&#62;cracking passwords&#60;/a&#62;, &#60;a href=&#34;/?s=forensic&#34;&#62;forensics solutions&#60;/a&#62;,&#60;br&#62;&#60;a href=&#34;/?s=security&#34;&#62;computer and network security&#60;/a&#62;, &#60;a href=&#34;/?s=system+recovery&#34;&#62;system recovery&#60;/a&#62; and other things...»</description>
	<lastBuildDate>Fri, 26 Apr 2013 14:47:50 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
	<item>
		<title>By: Online HIPAA Security Training</title>
		<link>http://blog.crackpassword.com/2009/06/reasonable-appropriate-adequate-security-part-i/comment-page-1/#comment-6628</link>
		<dc:creator>Online HIPAA Security Training</dc:creator>
		<pubDate>Thu, 31 Dec 2009 13:47:20 +0000</pubDate>
		<guid isPermaLink="false">http://blog.crackpassword.com/?p=868#comment-6628</guid>
		<description><![CDATA[I would like to further add few points on &lt;strong&gt;HIPAA Security Standards: Technical Safeguards&lt;/strong&gt;
&#160;
&lt;i&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPS-ItalicMT&quot;&gt;Technical safeguards &lt;/span&gt;&lt;/i&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;are hardware, software, applications, etc. that can be implemented and/or used to act as barriers to inappropriate access or disclosure, limit access to authorized users, and act as filters protecting against any inappropriate electronic traffic (firewalls, web filters, etc.). These safeguards enforce privacy and security without necessarily requiring active participation of workforce members. However, they should be regularly monitored and tested by appropriate staff. Examples of technical safeguards&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;are:&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Computers automatically logging off when inactive for extended periods&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Using password-protected and timed screen savers&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Being sure anti-virus, anti-spam, and anti-spy software and a firewall are installed and active and that signature files and patches are current&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Requiring some kind of authentication for access (passwords, smart cards, biometrics, etc.)&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Assigning access appropriate to job or business needs; all other access is automatically denied&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Setting audit alerts to notify IT when certain unauthorized actions occur &lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Blocking certain Internet sites and e-mail content&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Disabling copying mechanisms and potentially the ability to print certain documents on computers (networked or standalone)&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Automatically encrypting transmissions of PHI and e-mail containing PHI&lt;/span&gt;
&lt;span style=&quot;font-size: 11pt;font-family: SymbolMT&quot;&gt;&#8226; &lt;/span&gt;&lt;span style=&quot;font-size: 11pt;font-family: TimesNewRomanPSMT&quot;&gt;Using a VPN (virtual private network) for transmitting data and for remote user communication&lt;/span&gt;]]></description>
		<content:encoded><![CDATA[<p>I would like to further add few points on <strong>HIPAA Security Standards: Technical Safeguards</strong><br />
&nbsp;<br />
<i><span style="font-size: 11pt;font-family: TimesNewRomanPS-ItalicMT">Technical safeguards </span></i><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">are hardware, software, applications, etc. that can be implemented and/or used to act as barriers to inappropriate access or disclosure, limit access to authorized users, and act as filters protecting against any inappropriate electronic traffic (firewalls, web filters, etc.). These safeguards enforce privacy and security without necessarily requiring active participation of workforce members. However, they should be regularly monitored and tested by appropriate staff. Examples of technical safeguards</span><br />
<span style="font-size: 11pt;font-family: TimesNewRomanPSMT">are:</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Computers automatically logging off when inactive for extended periods</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Using password-protected and timed screen savers</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Being sure anti-virus, anti-spam, and anti-spy software and a firewall are installed and active and that signature files and patches are current</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Requiring some kind of authentication for access (passwords, smart cards, biometrics, etc.)</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Assigning access appropriate to job or business needs; all other access is automatically denied</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Setting audit alerts to notify IT when certain unauthorized actions occur </span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Blocking certain Internet sites and e-mail content</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Disabling copying mechanisms and potentially the ability to print certain documents on computers (networked or standalone)</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Automatically encrypting transmissions of PHI and e-mail containing PHI</span><br />
<span style="font-size: 11pt;font-family: SymbolMT">&bull; </span><span style="font-size: 11pt;font-family: TimesNewRomanPSMT">Using a VPN (virtual private network) for transmitting data and for remote user communication</span></p>
]]></content:encoded>
	</item>
</channel>
</rss>
