155k views
3 votes
What does Security Rule require covered entities to do under Physical Safeguards?

User Surazzarus
by
7.9k points

1 Answer

4 votes

Final answer:

The Security Rule requires covered entities to implement Physical Safeguards to protect electronic protected health information (ePHI) from unauthorized access. These measures include facility access controls, workstation security, and device and media controls.

Step-by-step explanation:

The Security Rule requires covered entities to implement Physical Safeguards to protect electronic protected health information (ePHI) from unauthorized access. These measures include:

  • Facility Access Controls: Implementing policies and procedures to limit physical access to authorized personnel only. This can be done through the use of keys, keycards, or biometric identification.
  • Workstation Security: Ensuring that workstations that access ePHI are secure and supervised, and that unauthorized individuals cannot view the information.
  • Device and Media Controls: Safeguarding the storage and disposal of electronic media and devices that contain ePHI, such as laptops and USB drives, to prevent unauthorized access or loss of data.
User Gesha
by
8.9k points