Building a HIPAA-Compliant Cybersecurity Program: Using NIST 800-30 and CSF to Secure Protected Health Information
Language: English
Published by APress, 2017
- Softcover
- Used

Seller: World of Books (was SecondSale), Montgomery, IL, U.S.A.World of Books (was SecondSale)
AbeBooks seller since December 20, 2007
Condition: Used - Good
£ 17.52
Quantity: 1 available
Add to basketItem description from seller
Use this book to learn how to conduct a timely and thorough Risk Analysis and Assessment documenting all risks to the confidentiality, integrity, and availability of electronic Protected Health Information (ePHI), which is a key component of the HIPAA Security Rule. The requirement is a focus area for the Department of Health and Human Services (HHS) Office for Civil Rights (OCR) during breach investigations and compliance audits. This book lays out a plan for healthcare organizations of all types to successfully comply with these requirements and use the output to build upon the cybersecurity program. With the proliferation of cybersecurity breaches, the number of healthcare providers, payers, and business associates investigated by the OCR has risen significantly. It is not unusual for additional penalties to be levied when victims of breaches cannot demonstrate that an enterprise-wide risk assessment exists, comprehensive enough to document all of the risks to ePHI.Why is it that so many covered entities and business associates fail to comply with this fundamental safeguard? Building a HIPAA Compliant Cybersecurity Program cuts through the confusion and ambiguity of regulatory requirements and provides detailed guidance to help readers: Understand and document all known instances where patient data existKnow what regulators want and expect from the risk analysis processAssess and analyze the level of severity that each risk poses to ePHIFocus on the beneficial outcomes of the process: understanding real risks, and optimizing deployment of resources and alignment with business objectivesWhat You?ll Learn Use NIST 800-30 to execute a risk analysis and assessment, which meets the expectations of regulators such as the Office for Civil Rights (OCR)Understand why this is not just a compliance exercise,but a way to take back control of protecting ePHILeverage the risk analysis process to improve your cybersecurity programKnow the value of integrating technical assessments to further define risk management activitiesEmploy an iterative process that continuously assesses the environment to identify improvement opportunities Who This Book Is For Cybersecurity, privacy, and compliance professionals working for organizations responsible for creating, maintaining, storing, and protecting patient information.…
Seller Inventory # 00110058847
- Title
- Building a HIPAA-Compliant Cybersecurity Program: Using NIST 800-30 and CSF to Secure Protected Health Information
- Author
- Eric C Thompson
- Publisher
- APress
- Publication year
- 2017
- Condition
- Good
- Binding
- Paperback
- Language
- English
- ISBN 10
- 1484230590
- ISBN 13
- 9781484230596
Shows readers how to examine the current risk analysis and, if necessary, take immediate actions to improve the process
Creates a life cycle of continuous improvement and uses more technical and focused assessments to feed the risk assessment and analysis process
"Synopsis" may belong to another edition of this title.
About the Author
Eric C. Thompson is an accomplished governance, risk, and compliance professional. In his GRC role as the Director of Compliance at Blue Health Intelligence (BHI), Eric leads efforts to increase cyber security maturity in several domains including, governance, policy and controls, risk management, cyber security strategy and business alignment. He established the risk management function which includes assessment, analysis, and treatment of risk, threat, and vulnerability management strategy and creating due diligence assessment requirements related to third-party risk. Eric also evaluates cyber security technology capabilities and makes recommendations for enhancing current solutions and investing in new implementations that meet risk reduction requirements.
Prior to BHI, Eric spent seven years at Ernst & Young (EY) in the Advisory practice where he specialized in helping healthcare organizations (providers, payers, and business associates) solve problems related to information security, risk management, and compliance. Eric led the HITRUST Common Security Framework (CSF), cybersecurity program management, and third-party risk management assessments.
Eric is also a proud member of the SANS Mentor team.
"About the title" may belong to another edition of this title.
World of Books (was SecondSale)
Montgomery, IL, U.S.A.
AbeBooks seller since December 20, 2007
Shipping rates within U.S.A.
| Item | 4 to 12 business days | 3 to 6 business days |
|---|---|---|
| First item | £ 0.00 | £ 8.27 |
Payment methods
Store description
Founded in 2002, World of Books is a leading online destination for buying and selling both preloved and new books, committed to making sustainable reading accessible to all. With a mission to help people read more and waste less, World of Books offers a huge range of affordable, high-quality books — giving both new and preloved titles a second life. The company also operates World of Books – Sell Your Books, an easy-to-use platform that allows customers to trade in unwanted books for cash, helping to keep books in circulation while promoting sustainability. As a Certified B Corp, World of Books is driven by a vision to become the world’s largest and most sustainable dedicated online bookstore. The company measures its success through the positive environmental impact it creates, the value it provides to customers, and its ability to operate profitably while supporting its sustainable mission …
Seller's business information
SBYB, Inc.
900 Knell Rd
Montgomery, IL U.S.A. 60538
Terms of sale
We guarantee the condition of every book as it's described on the Abebooks web sites. If you're dissatisfied with your purchase (Incorrect Book/Not as Described/Damaged) or if the order hasn't arrived, you're eligible for a refund within 30 days of the estimated delivery date. If you've changed your mind about a book that you've ordered, please use the Ask bookseller a question link to contact us and we'll respond within 2 business days.
Right of withdrawal
If you are a consumer you can withdraw from the contract in accordance with the following. Consumer means any natural person who is acting for purposes which are outside his trade, business, craft or profession.
Information regarding the right of withdrawal
Statutory right to withdraw
You have the right to withdraw from this contract within 14 days without giving any reason.
The withdrawal period will expire after 14 days from the day on which you acquire, or a third party other than the carrier and indicated by you acquires, physical possession of the last good or the last lot or piece.
To exercise the right of withdrawal, electronically fill in and submit a clear statement on our website, under "My Purchases" in "My Account". We will communicate to you an acknowledgement of receipt of such a withdrawal on a durable medium (e.g. by e-mail) without delay.
To meet the withdrawal deadline, it is sufficient for you to send your communication concerning your exercise of the right of withdrawal before the withdrawal period has expired.
Effects of withdrawal
If you withdraw from this contract, we will reimburse to you all payments received from you, including the costs of delivery (except for the supplementary costs arising if you chose a type of delivery other than the least expensive type of standard delivery offered by us).
We may make a deduction from the reimbursement for loss in value of any goods supplied, if the loss is the result of unnecessary handling by you.
We will make the reimbursement without undue delay, and not later than 14 days after the day on which we are informed about your decision to withdraw from this contract.
We will make the reimbursement using the same means of payment as you used for the initial transaction, unless you have expressly agreed otherwise; in any event, you will not incur any fees as a result of such reimbursement.
We may withhold reimbursement until we have received the goods back, or you have supplied evidence of having sent back the goods, whichever is the earliest.
You shall send back the goods or hand them over to World of Books (was SecondSale), Montgomery, Illinois, U.S.A., without undue delay and in any event not later than 14 days from the day on which you communicate your withdrawal from this contract to us. The deadline is met if you send back the goods before the period of 14 days has expired. You will have to bear the direct cost of returning the goods. You are only liable for any diminished value of the goods resulting from the handling other than what is necessary to establish the nature, characteristics and functioning of the goods.
Exceptions to the right of withdrawal
The right of withdrawal does not apply to:
- The delivery of newspapers, journals or magazines with the exception of subscription contracts; and
- The supply of digital content which is not supplied on a tangible medium (e.g. on a CD or DVD) if you accepted when you placed your order that we could start to deliver it, and that you could not withdraw once delivery had started.
Shipping terms
Shipping costs are based on books weighing 2.2 LB, or 1 KG. If your book order is heavy or oversized, we may contact you to let you know extra shipping is required.