I post at SearchCommander.com now, and this post was published 18 years 10 months ago. This industry changes FAST, so blindly following the advice here *may not* be a good idea! If you're at all unsure, feel free to hit me up on Twitter and ask.
Today I’m leaving for Seattle to do a HIPAA physical security risk assessment for a medical software company. They found me online, and try as I might, I could not convince them that hiring me was not necessary. They aparently have a big budget, and more t olose if they don’t cover all their bases.
I’m going to review their office in seattle where their web servers are located. Since it’s in a data facility, and not their property, there’s some debate over whether or not that’s even a covered entity, but the company will be storing and accessing patient heath information there, so it needs to be secure.
Ny fear is that if it’s not secure, then there are no changes or action plan they can implement, because it’s not their business. Changing hosts might be their only option.
At any rate, it seems it’s hard to find a qualified HIPAA expert in the Pacific Northwest that’s willing to take on the potential liability of a physical HIPAA risk assessment.
After accepting the company’s offer in November, I tried to get out of it and looked for someone to pass it off to. Unfortunately, I could find nobody else, so I’m driving 3 1/2 hours each way today. I guess I should have asked for airfare!
Although I am qualified, and was certified as an expert by the now defunct HIPAA Compliance Alliance, I am completely disinterested in the subject now, and do not wish to pursue that business any more. Although I’m not completely turning down work, I am looking for someone to recommend.
If you are, or you know of, a qualified individual interested in HIPAAassessments and consultation, please comment here. If you don’t happen to know what HIPAA is, here are my webpages about the subject/a> .
In Boise, Brad Franklin is available here , but in Oregon, Northern California and Washington, I’m looking for others. In the meantime, I’ll keep travelling…
Scott,
I’m currently a business analyst with a medical insurance company and am very interested in this project you speak of. I’m currently working with hipaa files 834,835s and 837s. I’d like to speak with you further if you have the time. Thanks in advance.
Darlene