Contingency Applications and Data Criticality Analysis Procedures, v1.0

Specifies that a health care related organization must implement procedures to assess the relative criticality of specific applications and data in support of other contingency plan components.

Assessment Step

1
Procedures for Assessing Applications and Data (ProceduresforAssessingApplicationsandData)
Does the covered entity or business associate implement procedures to assess the relative criticality of specific applications and data in support of other contingency plan components?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
A covered entity or business associate must perform these requirements in accordance with Section 164.306 (Security standards: General rules).

Conformance Criteria (1)

Procedures for Assessing Applications and Data
The covered entity or business associate must implement procedures to assess the relative criticality of specific applications and data in support of other contingency plan components.
Citations
HIPAA-Security-Rule
45 CFR Section 164.308(a)(7)(ii)
HIPAA-Security-Rule
45 CFR Section 164.306