{"id":18665,"date":"2020-12-23T16:56:46","date_gmt":"2020-12-23T16:56:46","guid":{"rendered":"https:\/\/webhostingprof.com\/saadan-oprettes-en-hipaa-kompatibel-cloudhosting-i-2022\/"},"modified":"2024-01-03T07:39:03","modified_gmt":"2024-01-03T07:39:03","slug":"saadan-oprettes-en-hipaa-kompatibel-cloudhosting-i-2022","status":"publish","type":"post","link":"http:\/\/webhostingprof.com\/da\/saadan-oprettes-en-hipaa-kompatibel-cloudhosting-i-2022\/","title":{"rendered":"S\u00e5dan oprettes en HIPAA-kompatibel cloudhosting i 2023"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"18665\" class=\"elementor elementor-18665 elementor-2876\" data-elementor-post-type=\"post\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-5dabaf2 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"5dabaf2\" data-element_type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-216f989\" data-id=\"216f989\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-inner-section elementor-element elementor-element-a7bea7f elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"a7bea7f\" data-element_type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-inner-column elementor-element elementor-element-0a1de24\" data-id=\"0a1de24\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-44987f8 elementor-widget elementor-widget-heading\" data-id=\"44987f8\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Hvad er HIPAA-overholdelse?<\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0c409e8 elementor-widget elementor-widget-text-editor\" data-id=\"0c409e8\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Health Insurance Portability and Accountability Act (HIPAA) fra 1996 d\u00e6kker alle amerikanske sundhedsv\u00e6senets enheder, der h\u00e5ndterer elektroniske patientoplysninger (ePHI). Den  <\/span><a style=\"font-size: 15px; font-style: normal; font-weight: 400; background-color: #ffffff;\" href=\"https:\/\/webhostingprof.com\/hipaa-compliance-guide\/\" target=\"_blank\" rel=\"noopener\">reglerne for overholdelse af HIPAA er strenge<\/a><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\"> og kr\u00e6ver overholdelse af en r\u00e6kke tekniske, administrative, fysiske og personlige sikkerhedsforanstaltninger, som alle h\u00e5ndh\u00e6ves af <\/span><a style=\"font-size: 15px; font-style: normal; font-weight: 400; background-color: #ffffff;\" href=\"https:\/\/www.hhs.gov\/hipaa\/for-professionals\/index.html\" target=\"_blank\" rel=\"noopener noreferrer\">det amerikanske sundhedsministerium<\/a><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\"> (HHS).<\/span><\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-42c55e1 elementor-widget elementor-widget-heading\" data-id=\"42c55e1\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">HIPAA-kompatibel cloud computing<\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-830b439 elementor-widget elementor-widget-text-editor\" data-id=\"830b439\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">HIPAA-kompatibel cloud computing skaber et unikt s\u00e6t udfordringer for amerikanske sundhedsorganisationer, og mange medicinske fagfolk v\u00e6lger at outsource dette ansvar til en cloud hostingpartner.<\/span><\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-e0f1193 elementor-widget elementor-widget-image\" data-id=\"e0f1193\" data-element_type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<img fetchpriority=\"high\" decoding=\"async\" width=\"900\" height=\"500\" src=\"https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/12\/HIPAA-Compliant-Cloud-Hosting-Setup.png\" class=\"attachment-large size-large wp-image-2878\" alt=\"\" srcset=\"https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/12\/HIPAA-Compliant-Cloud-Hosting-Setup.png 900w, https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/12\/HIPAA-Compliant-Cloud-Hosting-Setup-300x167.png 300w, https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/12\/HIPAA-Compliant-Cloud-Hosting-Setup-768x427.png 768w, https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/12\/HIPAA-Compliant-Cloud-Hosting-Setup-20x11.png 20w\" sizes=\"(max-width: 900px) 100vw, 900px\" \/>\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-1ea5109 elementor-widget elementor-widget-text-editor\" data-id=\"1ea5109\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Det er obligatorisk at overholde HIPAA-reglerne om sikkerhed og beskyttelse af personlige oplysninger, og en underskrevet <\/span><a style=\"font-size: 15px; font-style: normal; font-weight: 400; background-color: #ffffff;\" href=\"https:\/\/www.atlantic.net\/what-is-a-baa\/?utm_source=Prof&amp;utm_medium=Prof&amp;utm_campaign=Prof&amp;utm_term=Prof&amp;utm_content=Prof\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Business Associate Agreement<\/a><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\"> (BAA) skal indg\u00e5s mellem alle enheder.<\/span><\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0a61257 elementor-widget elementor-widget-heading\" data-id=\"0a61257\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\"><h2 style=\"font-style: normal; white-space: normal;\">Tekniske sikkerhedsforanstaltninger<\/h2><\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-d83e35c elementor-widget elementor-widget-text-editor\" data-id=\"d83e35c\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\"><span style=\"font-size: 15px;\">Disse fokuserer p\u00e5 implementering af kontrol af cloud-infrastruktur for at beskytte ePHI. Obligatoriske krav omfatter adgangskontrol for godkendte brugere af platformen, der forventes brug af unikke brugernavne og h\u00e5ndh\u00e6velse af en st\u00e6rk passwordpolitik, der anvender  <\/span><a style=\"font-size: 15px; background-color: #ffffff;\" href=\"https:\/\/www.atlantic.net\/multi-factor-authentication\/?utm_source=Prof&amp;utm_medium=Prof&amp;utm_campaign=Prof&amp;utm_term=Prof&amp;utm_content=Prof\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Multifaktor-autentifikation<\/a><span style=\"font-size: 15px;\"> (MFA) og adgangskontrollister anbefales kraftigt.<\/span><\/p>\n<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Alle ePHI skal krypteres i transit (netv\u00e6rk) og i hvile (lagring) ved hj\u00e6lp af mindst AES256-krypteringsstandarden. Der er mange revisionskontroller, der er n\u00f8dvendige for enhver hardware, software eller infrastruktur, der behandler ePHI. Det er n\u00f8dvendigt at aktivere funktioner som f.eks. forbedret logning, revision af brugeradgang, revision af tilladelser og systembrug.<\/p>\n<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Al cloud-infrastruktur skal v\u00e6re i overensstemmelse med passende niveauer af firmware- og softwaresikkerhedsopdateringer (patching). Denne fremgangsm\u00e5de begr\u00e6nser cloud computing-tjenesternes eksponering for s\u00e5rbarheder i operativsystemer og databrud.<\/p>\n<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Alle BAA-enheder har et ansvar for at beskytte integriteten af ePHI-data. Teknisk kontrol af dataene sikrer, at de ikke tilg\u00e5s, \u00e6ndres eller \u00f8del\u00e6gges p\u00e5 en uautoriseret m\u00e5de. SIEM-platforme (Security Information Event Management) er konfigureret til at kontrollere og advare om alle \u00e6ndringer af ePHI, og alarmerne overv\u00e5ges og eskaleres efter behov.<\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"elementor-section elementor-inner-section elementor-element elementor-element-be21388 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"be21388\" data-element_type=\"section\" data-settings=\"{&quot;background_background&quot;:&quot;classic&quot;}\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-inner-column elementor-element elementor-element-7d76b5d\" data-id=\"7d76b5d\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-9f13af4 elementor-widget elementor-widget-heading\" data-id=\"9f13af4\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Nyttige HIPAA-ressourcer<\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-909f406 elementor-widget elementor-widget-text-editor\" data-id=\"909f406\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul>\n<li style=\"font-size: 15px;\"><a style=\"font-size: 15px;\" href=\"https:\/\/webhostingprof.com\/ssae16-ssae18-difference\/\" target=\"_blank\" rel=\"noopener\">Forskelle mellem SSAE16 og SSAE18  <\/a><\/li>\n<li style=\"font-size: 15px;\"><a style=\"font-size: 15px;\" href=\"https:\/\/webhostingprof.com\/hipaa-vs-hippa\/\" target=\"_blank\" rel=\"noopener\">HIPAA vs. HIPPA  <\/a><\/li>\n<li style=\"font-size: 15px;\"><a href=\"https:\/\/webhostingprof.com\/hipaa-compliance-guide\/\" target=\"_blank\" rel=\"noopener\">Guide til overholdelse af HIPAA  <\/a><\/li>\n<li style=\"font-size: 15px;\"><a style=\"font-size: 15px; background-color: #ebf9f3;\" href=\"https:\/\/webhostingprof.com\/hipaa-compliant-hosting\/\" target=\"_blank\" rel=\"noopener\">HIPAA-kompatibel hosting  <\/a><\/li>\n<li style=\"font-size: 15px;\"><a style=\"font-size: 15px;\" href=\"https:\/\/webhostingprof.com\/blog\/hipaa-compliant-wordpress\" target=\"_blank\" rel=\"noopener\">HIPAA-kompatibel WordPress-hosting<\/a><\/li>\n<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<div class=\"elementor-element elementor-element-2241d20 elementor-widget elementor-widget-spacer\" data-id=\"2241d20\" data-element_type=\"widget\" data-widget_type=\"spacer.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"elementor-spacer\">\n\t\t\t<div class=\"elementor-spacer-inner\"><\/div>\n\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<section class=\"elementor-section elementor-inner-section elementor-element elementor-element-37c49ed elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"37c49ed\" data-element_type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-inner-column elementor-element elementor-element-dd8b98d\" data-id=\"dd8b98d\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-2e6e2be elementor-widget elementor-widget-heading\" data-id=\"2e6e2be\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Fysiske sikkerhedsforanstaltninger<\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-4c76888 elementor-widget elementor-widget-text-editor\" data-id=\"4c76888\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Der er indf\u00f8rt fysiske sikkerhedsforanstaltninger for alle BAA-enheder, is\u00e6r i forbindelse med fysiske faciliteter (bygninger), brug af arbejdsstationer og etikette for elektroniske enheder. Der er indf\u00f8rt bygningskontrol for at kontrollere medarbejdernes adgang til bygninger, serverrum og faciliteter, der indeholder ePHI. Hovedform\u00e5let er at forhindre manipulation eller tyveri af ePHI-data. Enhver adgang kan spores og rapporteres 24\/7.<\/p>\n<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Det omfatter ogs\u00e5 udarbejdelse og afpr\u00f8vning af en katastrofeberedskabsstrategi (DR), hvis prim\u00e6re m\u00e5l er at kunne genoprette adgangen til ePHI i tilf\u00e6lde af en st\u00f8rre h\u00e6ndelse. Almindelige scenarier omfatter adgang til et alternativt DR-kontrolcenter og en teknisk DR-l\u00f8sning, der er hostet i andre lokaler.<\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"elementor-section elementor-inner-section elementor-element elementor-element-7105101 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"7105101\" data-element_type=\"section\" data-settings=\"{&quot;background_background&quot;:&quot;classic&quot;}\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-inner-column elementor-element elementor-element-c15fc42\" data-id=\"c15fc42\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-3790dfe elementor-blockquote--skin-border elementor-blockquote--button-color-official elementor-widget elementor-widget-blockquote\" data-id=\"3790dfe\" data-element_type=\"widget\" data-widget_type=\"blockquote.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<blockquote class=\"elementor-blockquote\">\n\t\t\t<p class=\"elementor-blockquote__content\">\n\t\t\t\tEnhver person eller enhed, der udf\u00f8rer funktioner eller aktiviteter p\u00e5 vegne af en omfattet enhed, som kr\u00e6ver, at forretningspartneren har adgang til PHI, betragtes som en forretningspartner, if\u00f8lge HHS.\n\nDenne person eller organisation kan ogs\u00e5 levere tjenester til en omfattet enhed. Eksempler herp\u00e5 er en konsulent, der foretager en gennemgang af sygehusets anvendelse af oplysningerne, eller en advokat, der har adgang til PHI, n\u00e5r han yder juridiske tjenester til en sundhedsudbyder.\t\t\t<\/p>\n\t\t\t\t\t\t\t<div class=\"e-q-footer\">\n\t\t\t\t\t\t\t\t\t\t\t<cite class=\"elementor-blockquote__author\">Health IT Security<\/cite>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t<\/blockquote>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<div class=\"elementor-element elementor-element-e10c8e9 elementor-widget elementor-widget-spacer\" data-id=\"e10c8e9\" data-element_type=\"widget\" data-widget_type=\"spacer.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"elementor-spacer\">\n\t\t\t<div class=\"elementor-spacer-inner\"><\/div>\n\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<section class=\"elementor-section elementor-inner-section elementor-element elementor-element-0bd54b4 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"0bd54b4\" data-element_type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-inner-column elementor-element elementor-element-f0532b9\" data-id=\"f0532b9\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-2846392 elementor-widget elementor-widget-text-editor\" data-id=\"2846392\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Enhedsetikette er et udfordrende, men obligatorisk krav i HIPAA, og det omfatter alle digitale enheder, arbejdsstationer\/servere og digitale medier. Alle computerterminaler er som standard beskyttet med foranstaltninger, der omfatter automatiske l\u00e5sesk\u00e6rme og software til at forhindre kopiering af data fra en USB-stik.<\/p>\n<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Der indf\u00f8res yderligere kontrol af, hvordan der tages backup af cloud computing-infrastrukturen, herunder politikker for datalagring, replikeringskrav og hardware redundans. Der er ekstra regler for, hvordan data og medier skal destrueres, normalt ved certificeret destruktion.<\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-469d8da elementor-widget elementor-widget-heading\" data-id=\"469d8da\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\"><h2 style=\"font-style: normal; white-space: normal;\"><span style=\"font-size: 2rem;\">Administrative sikkerhedsforanstaltninger<\/span><\/h2><\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-5f3415e elementor-widget elementor-widget-text-editor\" data-id=\"5f3415e\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\"><span style=\"font-size: 15px;\">Dette er de politikker og procedurer, der regulerer BAA-enhedens arbejdsstyrke. Kravene omfatter foranstaltninger til gennemf\u00f8relse af en risikovurdering, risikostyring og h\u00e5ndh\u00e6velse af rapportering og beredskabsplanl\u00e6gning.<\/span><\/p>\n<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Hver BAA-enhed udpeger dedikerede HIPAA-ansvarlige medarbejdere, som f\u00f8rer tilsyn med hele overensstemmelseslandskabet. Sikring af, at alle aftalte processer dokumenteres og l\u00f8bende revideres. Andre opgaver s\u00e5som rapportering, passwordstyring, overv\u00e5gning af login og tildeling af uddannelsesplaner er udf\u00f8rt.<\/p>\n<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">BAA-enhederne skal vide, hvilke ePHI der opbevares, og hvor ePHI&#8217;erne befinder sig i infrastrukturen. Brugerne skal have passende adgang til ePHI for at kunne udf\u00f8re deres arbejde, men adgangen skal kontrolleres og overv\u00e5ges. Adgangsrettigheder b\u00f8r altid tildeles efter princippet om mindste privilegier.<\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-9c5e7f0 elementor-widget elementor-widget-heading\" data-id=\"9c5e7f0\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\"><h2 style=\"font-style: normal; white-space: normal;\">Beskyttelse af privatlivets fred og h\u00e5ndh\u00e6velse<\/h2><\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a6819ec elementor-widget elementor-widget-text-editor\" data-id=\"a6819ec\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Reglerne om beskyttelse af privatlivets fred og h\u00e5ndh\u00e6velse er den lim, der binder HIPAA-lovgivningen sammen. Reglerne om beskyttelse af personlige oplysninger definerer, hvordan ePHI kan behandles, anvendes eller videregives af alle BAA-enheder. Reglen om beskyttelse af privatlivets fred underst\u00f8tter mange af de ovenn\u00e6vnte administrative garantier, som udg\u00f8r en fremtr\u00e6dende politik for beskyttelse af privatlivets fred.<\/span><\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"elementor-section elementor-inner-section elementor-element elementor-element-862806c elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"862806c\" data-element_type=\"section\" data-settings=\"{&quot;background_background&quot;:&quot;classic&quot;}\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-inner-column elementor-element elementor-element-070a698\" data-id=\"070a698\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-4a8cc55 elementor-widget elementor-widget-heading\" data-id=\"4a8cc55\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Hvad er beskyttede sundhedsoplysninger?<\/h3>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-2a2f9d3 elementor-widget elementor-widget-text-editor\" data-id=\"2a2f9d3\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p>PHI henviser til alt, hvad der vedr\u00f8rer sundhed, behandling eller fakturering. Det er alt, der kan identificere en patient, herunder:<\/p>\n<ul class=\"dot-list\">\n<li>Navn<\/li>\n<li>Datoer (f.eks. f\u00f8dselsdato, dato for behandling)<\/li>\n<li>Beliggenhed (gadeadresse, postnummer osv.)<\/li>\n<li>Kontaktnumre (telefonnummer, fax osv.)<\/li>\n<li>Webkontaktoplysninger (e-mail, URL eller IP)<\/li>\n<li>Identifikationsnumre (socialsikringsnummer, k\u00f8rekort, sygesikringskonto, VIN osv.)<\/li>\n<li>Fysiske identitetsoplysninger (foto, fingeraftryk osv.)<\/li>\n<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<div class=\"elementor-element elementor-element-db3fcb2 elementor-widget elementor-widget-spacer\" data-id=\"db3fcb2\" data-element_type=\"widget\" data-widget_type=\"spacer.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"elementor-spacer\">\n\t\t\t<div class=\"elementor-spacer-inner\"><\/div>\n\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<section class=\"elementor-section elementor-inner-section elementor-element elementor-element-f7c8512 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"f7c8512\" data-element_type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-inner-column elementor-element elementor-element-60ba3b7\" data-id=\"60ba3b7\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-aa5e66b elementor-widget elementor-widget-text-editor\" data-id=\"aa5e66b\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Patienterne har ret til at se de sundhedsoplysninger, der opbevares om dem, og personalet er uddannet i privatlivspolitikken, og der er indf\u00f8rt foranstaltninger til at afhj\u00e6lpe overtr\u00e6delser af reglen &#8211; f.eks. afskedigelsessager. Alle BAA-enheder har et ansvar for at sikre, at der ikke sker nogen videregivelse af ePHI, men hvis der sker brud, skal der f\u00f8lges en streng overtr\u00e6delsesproces.<\/p>\n<p style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Hvis en medarbejder i en virksomhed overtr\u00e6der HIPAA-bestemmelserne, selv utilsigtet, kan virksomheden blive id\u00f8mt en b\u00f8de p\u00e5 op til 1,5 millioner dollars (det \u00e5rlige loft pr. virksomhed). Nogle af de mest almindelige overtr\u00e6delser omfatter ePHI med manglende oplysninger, enheder, der undlader at underskrive BAA&#8217;en, brug af b\u00e6rbare computere til opbevaring af ePHI og bortkast af fortrolige sundhedsdokumenter. Vores vejledning om HIPAA-overtr\u00e6delser indeholder mange detaljer om overtr\u00e6delser og h\u00e5ndh\u00e6velsespraksis.<\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-74eb1a0 elementor-widget elementor-widget-heading\" data-id=\"74eb1a0\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\"><h2 style=\"font-style: normal; white-space: normal;\">Valg af en HIPAA-kompatibel hostingpartner<\/h2><\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-6eda2f6 elementor-widget elementor-widget-text-editor\" data-id=\"6eda2f6\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Konsekvenserne af at overtr\u00e6de HIPAA kan v\u00e6re ekstreme. Selv om du ikke f\u00e5r en millionb\u00f8de, er det ikke en god m\u00e5de at bruge penge p\u00e5, og det er ikke sjovt at ende p\u00e5  <\/span><a style=\"font-size: 15px; font-style: normal; font-weight: 400; background-color: #ffffff;\" href=\"https:\/\/ocrportal.hhs.gov\/ocr\/breach\/breach_report.jsf\" target=\"_blank\" rel=\"noopener noreferrer\">HIPAA Wall of Shame<\/a><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">.<\/span><\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0995d42 elementor-widget elementor-widget-image\" data-id=\"0995d42\" data-element_type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<img decoding=\"async\" width=\"358\" height=\"150\" src=\"https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/05\/atlantic-net-logo.png\" class=\"attachment-large size-large wp-image-2055\" alt=\"\" srcset=\"https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/05\/atlantic-net-logo.png 358w, https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/05\/atlantic-net-logo-300x126.png 300w, https:\/\/webhostingprof.com\/wp-content\/uploads\/2020\/05\/atlantic-net-logo-20x8.png 20w\" sizes=\"(max-width: 358px) 100vw, 358px\" \/>\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<div class=\"elementor-element elementor-element-cab93ec elementor-widget elementor-widget-text-editor\" data-id=\"cab93ec\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">Af disse grunde er det ekstraordin\u00e6rt vigtigt at v\u00e6lge en teknologisk partner, der er specialiseret i hosting af sundhedsv\u00e6senet og er <\/span><a style=\"font-size: 15px; font-style: normal; font-weight: 400; background-color: #ffffff;\" href=\"https:\/\/webhostingprof.com\/ssae16-ssae18-difference\" target=\"_blank\" rel=\"noopener noreferrer\">SOC 2 TYPE II- og SOC 3 TYPE II-certificeret<\/a><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\"> og HIPAA- og HITECH-revideret, som f.eks. <\/span><a style=\"font-size: 15px; font-style: normal; font-weight: 400; background-color: #ffffff;\" href=\"https:\/\/www.atlantic.net\/?utm_source=Prof&amp;utm_medium=Prof&amp;utm_campaign=Prof&amp;utm_term=Prof&amp;utm_content=Prof\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Atlantic.Net<\/a><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">. Deres SSD Cloud Servere tilbyder en 100% oppetidsgaranti og kan starte p\u00e5 under 30 sekunder, blot to af de mange grunde til, at de har fortjent vores anbefaling som #1 valg for  <\/span><a style=\"font-size: 15px; font-style: normal; font-weight: 400; background-color: #ffffff;\" href=\"https:\/\/webhostingprof.com\/hipaa-compliant-hosting\/\">HIPAA-kompatibel hosting<\/a><span style=\"font-size: 15px; font-style: normal; font-weight: 400;\">.<\/span><\/p>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Hvad er HIPAA-overholdelse? Health Insurance Portability and Accountability Act (HIPAA) fra 1996 d\u00e6kker alle amerikanske sundhedsv\u00e6senets enheder, der h\u00e5ndterer elektroniske patientoplysninger (ePHI). Den reglerne for overholdelse af HIPAA er strenge og kr\u00e6ver overholdelse af en r\u00e6kke tekniske, administrative, fysiske og personlige sikkerhedsforanstaltninger, som alle h\u00e5ndh\u00e6ves af det amerikanske sundhedsministerium (HHS). HIPAA-kompatibel cloud computing HIPAA-kompatibel cloud &hellip;<\/p>\n<p class=\"read-more\"> <a class=\"\" href=\"http:\/\/webhostingprof.com\/da\/saadan-oprettes-en-hipaa-kompatibel-cloudhosting-i-2022\/\"> <span class=\"screen-reader-text\">S\u00e5dan oprettes en HIPAA-kompatibel cloudhosting i 2023<\/span> L\u00e6s mere &raquo;<\/a><\/p>\n","protected":false},"author":6,"featured_media":23230,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_lmt_disableupdate":"","_lmt_disable":"","site-sidebar-layout":"default","site-content-layout":"default","ast-global-header-display":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","theme-transparent-header-meta":"default","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","footnotes":"","_glsr_average":0,"_glsr_ranking":0,"_glsr_reviews":0},"categories":[919],"tags":[],"modified_by":null,"_links":{"self":[{"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/posts\/18665"}],"collection":[{"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/comments?post=18665"}],"version-history":[{"count":0,"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/posts\/18665\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/media\/23230"}],"wp:attachment":[{"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/media?parent=18665"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/categories?post=18665"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/webhostingprof.com\/da\/wp-json\/wp\/v2\/tags?post=18665"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}