Navigating HIPAA Compliance: Pt. 3 Workforce Security

Workforce Security (§164.308(a)(3))

At the heart of healthcare...

Adhering to the Health Insurance Portability and Accountability Act (HIPAA) transcends mere compliance,

It becomes a sacred commitment to the trust and safety of patients,

Recognizing the daunting challenges and intricacies this commitment entails,

I am excited to announce a series of articles designed,

To provided clarity for healthcare professionals, executives, and developers,

Striving to not only meet but soar beyond the demands of HIPAA compliance,

Say hello to valuable insights, actionable strategies, and real-world applications.

Our journey continues with the principle of Workforce Security:

This moment calls for us to acknowledge the importance of policies and procedures,

Ensuring all workforce members have the appropriate access to protected health information.

Subscribe!

Job Descriptions: Define roles and responsibilities for all job functions.

e.g., Roles & Responsibilities defined in organizational policy

Knowledge & Skills Criteria: Ensure staff members have necessary knowledge and skills; include in hiring process.

e.g., job description with skills criteria

Full job description (Associate IS Analyst)

What you will do

Let’s do this. Let’s change the world. In this vital role you will work remotely. The ISA is responsible for the design, development, delivery, and life cycle of the companies websites.

Responsibilities:

  • Support day-to-day operations and service management within the Web Platform Team

  • Assist with testing, implementation, and support of key projects deployed by the Web team

  • Documents end user procedures, and meeting results

  • Facilitate user communications and organizational change, when changes are being implemented (outages, upgrades, attribute changes, etc.)

  • Ensures risk and compliance by adhering to legal and regulatory guidelines and policies and Standard Operating Procedures

Basic Qualifications:

Bachelor’s degree Or Associate’s degree and 4 years of Information Systems experience

Preferred Qualifications:

  • Familiarity with web technologies such as HTML, CSS, JavaScript, DNS, SSL and Web CMS.

  • Demonstrated ability to work in a fast-paced team environment while consistently demonstrating flexibility, resiliency, and resourcefulness

  • Proven experience in MS Office Suite and Collaboration tools, including development of sophisticated Excel spreadsheets, PPT, Teams and SharePoint

  • Excellent problem-solving, team and time leadership skills

  • Good interpersonal skills and the ability to communicate and collaborate with others

  • Resourceful and proactive in capturing information and sharing ideas

  • Experience with Microsoft Power Automate, ChatGPT, .Net Framework, Agile/SAFe, and AWS is a plus but not required

Onboarding: Develop onboarding procedures to authorize to access to PHI to workforce. Screen and train personnel as part of procedures before accessing systems.

e.g., Onboarding Policy

Offboarding: Develop offboarding procedures for terminating access to PHI upon employment termination.

e.g., Offboarding Policy

Stay tuned as we continue on this informative journey together, breaking down the complexities of HIPAA into manageable, digestible pieces.

Questions about HIPAA?

Interact with our curated HIPAA GPT: HIPAA Expert

Download our HIPAA Compliance Guide: Scroll to Free Resources

L Trotter II

As Founder and CEO of Inherent Security, Larry Trotter II is responsible for defining the mission and vision of the company, ensuring execution aligns with the business purpose. Larry has transformed Inherent Security from a consultancy to a cybersecurity company through partnerships and expert acquisitions. Today the company leverages its healthcare and government expertise to accelerate compliance operation for clients.

Larry has provided services for 12 years across the private industry developing security strategies and managing security operations for Fortune 500 companies and healthcare organizations. He is influential business leader who can demonstrate the value proposition of security and its direct link to customers.

Larry graduated from Old Dominion University with a bachelor’s degree in Business Administration with a focus on IT and Networking. Larry has accumulated certifications such as the CISM, ISO27001 Lead Implementer, GCIA and others. He serves on the Board of Directors for the MIT Enterprise Forum DC and Baltimore.

https://www.inherentsecurity.com
Previous
Previous

Navigating HIPAA Compliance: Pt. 4 Information Access Management

Next
Next

Navigating HIPAA Compliance: A Comprehensive Guide Pt. 1