Openness and Transparency - Access History, v1.0

Defines privacy requirements related to individuals' ability to review who has accessed their sensitive information.

Assessment Step

1
Openness And Transparency - Access History (OpennessAndTransparency-AccessHistory)
Does the organization require persons and entities, that participate in a network for the purpose of electronic exchange of sensitive information, to provide reasonable opportunities for individuals to review who has accessed their sensitive information?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
Parameter
Information Typesrequired
ENUM_MULTI : Select the type(s) of sensitive information that apply.
  • PII
  • PHI
  • III
  • IIHI
  • Other

Conformance Criteria (1)

C-1
Persons and entities, that participate in a network for the purpose of electronic exchange of individually identifiable health information, should provide reasonable opportunities for individuals to review who has accessed their individually identifiable health information.
Citation
HHS-PSF
Section II, Openness and Transparency