HEALTHOFFICE COMPLIANCE


Information Access Control:

HIPAA REQUIREMENT
(Limits access to application by)

Compliance

User ID and Password

   YES

Role based access

   YES

User based access

   YES

Note: HIPAA requires at least one access control mechanism to be present.

 

Auto Screen saver:  

Auto screen saver with system lock mechanism if no activity occurs within designated time (10 Mins)

   YES

 

Account Lockout:  

Mechanism which locks the user account if logon attempt fail for three times.

   YES

 

Audit Log: Provides adequate report on

Logon (Failure)

   YES

Accessed

   YES

Changed (add or edit)

   YES



User Authentication: Uniquely identifies the user by 


Password format is 8-digit alpha numeric to meet complexity.


   YES


Password is stored as reversible encryption


   YES