## [Enhancing Value While Reducing Risk with Third-Party Vendors](/content/2019/12/27/enhancing-value-while-reducing-risk-with-third-party-vendors/index.html)

Although some of us may wish for simpler times, it would be nearly impossible for today’s health systems to be self-contained as they were in the past. Now that patients seek a more seamless and personalized care experience, hospitals need a way to meet their demand...

## [HIPAA Security Risk Analysis Best Practice Part 2](/content/2019/10/07/hipaa-security-risk-analysis-best-practice-part-2/index.html)

The scope of your SRA should include all IT assets that are involved in the creating, receiving, maintaining, or transmitting of e-PHI in your organization. HIPAA has been a big part of my working life since the Privacy Rule was finalized in August of 2002 and...

## [HIPAA Security Risk Analysis Best Practice Part 1](/content/2019/09/09/hipaa-security-risk-analysis-best-practice-part-1/index.html)

Completing your analysis in accordance with the OCR’s Guidance on Risk Analysis Requirements under the HIPAA Security Rule Per Section 164.308(a)(1)(ii)(A) of the HIPAA Security Rule, an organization must: Conduct an accurate and thorough assessment of the...
