Medical Privacy - National Standards to Protect the Privacy of Personal Health Information
The Health Insurance Portability and Accountability Act of 1996 (HIPAA), Public Law 104-191, 42 U.S.C. 201 et seq, was passed by the US Congress to reform the insurance market and simplify health care administrative processes.
A portion of the law, the provisions relating to Administrative Simplification, provide regulatory guidelines to regulate the transmission, use and disclosure of individually identifiable health information. In order to adequately demonstrate regulatory compliance, it is recommended that organisations in the healthcare sector establish a comprehensive audit and event logging regime, across data stores, applications and operating systems.
The Snare Server, from InterSect Alliance, provides a centralised collection, analysis, reporting and archival function for a variety of audit log sources, and is used by several organisations to meet federal guidelines associated with HIPAA.