Compliance Date for Security Implementation - Small Health Plan, v1.0

Specifies a health care related organization's starting compliance date for the Security Rule, based on the type of organization.
The health care entity must abide by the compliance date depending on the type of entity.


This assessment in only applicable if the health care provider is a small health plan.

Assessment Step

1
Small Health Plan Organization (SmallHealthPlanOrganization)
If the health care provider is a small health plan, does it comply with the applicable requirements of this subpart (Section 164.300-399) no later than April 20, 2006?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
Compliance dates for the Security Rule vary by type of health care entity.

Conformance Criteria (1)

Organization is a Small Health Plan
If the organization is a small health plan, it must comply with the applicable requirements of this subpart (Section 164.300-399) no later than April 20, 2006.
Citation
HIPAA-Security-Rule
45 CFR Section 164.318(a)(2)