Our Services

Get 15% Discount on your First Order

[rank_math_breadcrumb]

Compliance Audit in Action

 

Compliance Audit in Action

Module 5: Compliance Audit in Action

For this assignment, you will need to review the Case Study presented perform a compliance audit to determine gaps in privacy and security compliance.

 Expand AllPanels Collapse AllPanels


Case Study

DeVry Medical Group provides primary care, pediatric care, and urology services. Recently, the Medical Group implemented an electronic health record system that interfaces with their laboratory management system for streamlined syncing of patient lab results in their charts. Post implementation, concerns have come about on the quality of the privacy and security measures in place. As the Privacy & Security Officer, you have determined that a compliance audit is needed to ensure DeVry medical Group is in compliance with HIPAA regulations.

The compliance audit has revealed potential compliance issues related to the new electronic health record system, there are inadequate access controls, lack of encryption for data transmittals, and less than half of the employees on staff have been trained properly on privacy and security measures.


Action Plan

You are tasked with identifying the gaps and proposing strategies to assist with being compliant with HIPAA Privacy and Security Rules.

Steps you will complete as part of your proposed strategies to meet HIPAA compliance:

1. Assess the access control mechanisms for the electronic health record to determine that patient data is accessible only to authorized personnel.

2. Evaluate data protection measures, including encryption protocols for data at rest and data in transit.

3. Review the employee training programs on the use of the electronic health record and HIPAA compliance.

4. Propose strategies to correct issues you have identified during steps 1-3.

Your deliverable method can be either in the form of a half-page to full page proposal or PowerPoint slides that outline each of the strategies you are proposing with an action plan for implementing them. For PowerPoint slides, the slides should outline your key points/recommendations and utilize the Notes section under your slides to provide complete sentences for your report as if you were presenting to a board for approval to implement.

Note: If you utilize your textbook or any references to support your recommendations, provide a reference list.

Action

Select the Start Assignment button to begin.

Once you have uploaded your file, select Submit Assignment.

Rubric

M5 Compliance Audit in Action

M5 Compliance Audit in Action

Criteria

Ratings

Pts

This criterion is linked to a Learning OutcomeParameter

Parameters
Paper Option
-Uses standard double-spacing without extra spaces between bullets or paragraphs
-Minimum length 1/2 page, maximum length 1 page
-Free of grammatical & spelling errors
-Uses APA in-text citations and reference list IF applicable

PowerPoint Option
-No more than 5 bullets per slide
-Keep slides uncluttered so easy to follow
-Notes Section of slides should contain a detailed outline of what slide is presenting (speaker notes)
-Free of grammatical & spelling errors
-Uses APA in-text citations and reference list on a reference slide IF applicable

5 pts

Meets or Exceeds

Student submission clearly encompasses all of PowerPoint presentation parameters -Minimum of 5 content slides, Maximum of 8 content slides -Includes a title slide -Includes a reference slide if needed -Presentation developed from perspective as if being presented to the board -No more than 5 bullets per slide -Keep slides uncluttered so easy to follow -Includes use of graphical representations to give visual emphasis & credibility to presentation -Notes Section of slides should contain a detailed outline of what slide is presenting (speaker notes) -Free of grammatical & spelling errors -Uses APA in-text citations and reference list on a reference slide IF applicable

3 pts

In Progress

Student submission clearly encompasses all paper or PowerPoint parameters -Free of grammatical & spelling errors -Uses APA in-text citations and reference list IF applicable

1 pts

Little Evidence

Student submission does not clearly meet the paper or PowerPoint parameters -Has 4 or more grammatical & spelling errors -does not use APA in-text citations and reference list IF applicable

0 pts

No Evidence

Student submission clearly does not meet the required Parameters

5 pts

This criterion is linked to a Learning OutcomeControl Mechanisms

Control Mechanisms
-Assesses control mechanisms in place or in absence of control mechanisms identifies what should be in place
CO5

7 pts

Meets or Exceeds

Student submission provides clear summary of current or lacking control mechanisms for accessing patient data

5 pts

In Progress

Student submission mostly provides a summary of current or lacking control mechanisms for accessing patient data – may be missing pertinent information

2 pts

Little Evidence

Student submission is off topic for control mechanisms or does not identify current or lacking control mechanisms for accessing patient data

0 pts

No Evidence

Student submission does not clearly meet the expectations for identifying control mechanisms for accessing patient data

7 pts

This criterion is linked to a Learning OutcomeData Protection Measures

Data Protection Measures
-Addresses encryption protocols for data at rest
-Addresses encryption protocols for data in transit
-Any other potential deficiencies
CO5

7 pts

Meets or Exceeds

Student submission on Data Protection Measures clearly -Addresses encryption protocols for data at rest -Addresses encryption protocols for data in transit -Any other potential deficiencies

5 pts

In Progress

Student submission on Data Protection Measures mostly -Addresses encryption protocols for data at rest -Addresses encryption protocols for data in transit -Any other potential deficiencies

2 pts

Little Evidence

Student submission on Data Protection Measures does not all issues -Data at Rest -Data in Transit -Any other potential deficiencies

0 pts

No Evidence

Student submission on Data Protection Measures clearly does not meet expectations or nothing submitted

7 pts

This criterion is linked to a Learning OutcomeTraining Programs

Training Programs
-Findings of review on training program deficiencies encompasses assessment on proper use/protocols on electronic health record and HIPAA compliance
CO5

7 pts

Meets or Exceeds

Student submission on Training Programs clearly addresses findings of review on training program deficiencies and encompasses assessment on proper use/protocols on electronic health record and HIPAA compliance

5 pts

In Progress

Student submission on Training Programs mostly addresses findings of review on training program deficiencies and encompasses assessment on proper use/protocols on electronic health record and HIPAA compliance but may be lacking details

2 pts

Little Evidence

Student submission on Training Programs is off topic or does not clearly address findings of a review covering training program deficiencies relating to use/protocols on electronic health record and/or HIPAA compliance

0 pts

No Evidence

Student submission clearly does not meet expectations on addressing training program review findings or nothing submitted

7 pts

This criterion is linked to a Learning OutcomeStrategy Proposals

Strategy Proposals
Proposes strategies to correct issues on
-Access control mechanisms for electronic health records
-Data protection measurs
-Employee training programs
CO5

9 pts

Meets or Exceeds

Student submission of Proposed Strategies clearly addresses ways to correct issues on -Access control mechanisms for electronic health records -Data protection measurs -Employee training programs

6 pts

In Progress

Student submission of Proposed Strategies mostly addresses ways to correct issues on -Access control mechanisms for electronic health records -Data protection measurs -Employee training programs

3 pts

Little Evidence

Student submission of Proposed Strategies is off topic or does not clearly give a minimum of 2 risks with the greatest potential impact or is proposing strategies for risks that are not the highest priority based on potential impact

0 pts

No Evidence

Student submission does not clearly meet expectations to provide recommendations for threats or nothing is submitted

9 pts

Total Points: 35

Share This Post

Email
WhatsApp
Facebook
Twitter
LinkedIn
Pinterest
Reddit

Order a Similar Paper and get 15% Discount on your First Order

Related Questions

mu

Assignment Prompt: Identify an historically significant action that was made by someone (an individual artist and/or group) in Twentieth-Century American Popular Music. Describe its genre and place it in the historical context. Objectives: The student is expected to listen and respond critically to music and to articulate an informed, personal

WEEK 3 assigment

   ONE QUESTION Considering a Woman’s Individual Identity: Lepucki’s Use of Rhetorical Writing Strategies Jane Dough English Department ENC 1101: English Composition I Keiser University August 20, 2025 2 Considering a Woman’s Individual Identity: Lepucki’s Use of Rhetorical Writing Strategies In the essay “Our Mothers as We Never Saw Them”

week3

Annotating a LITERARY Text: Poem Annotating involves interacting with the text and making meaning of what you are reading rather than simply reading for theme. Every so often, stop and record OBSERVATIONS about different elements that you see in your poem such as tone,  speaker, language,  imagery, symbolism, or other

English homework

Discussion Board 5: The Victorian Age and Modernist Age   For this discussion board, you will choose any one of the following prompts. Once you have made your selection, please draft your initial post based on the instructions below. a.  The poem, The Last Duchess” is called a dramatic monologue

English english homework

DISCUSION 4 :REPLY Post 1) The book  Gulliver’s Travels by Jonathan Swift contains several stories, but the one involving the Yahoos is the most interesting and reflective. The Yahoos were human-like brutes, or at least that is how Gulliver viewed them. Throughout the story, the Yahoos are portrayed as selfish and

mus

Mamie Smith, Gertrude “ma Rainey”  and Bessie Smith, very emotional singers, with strong and personal styles. PROMPT: 1/What role did women play in blues song/music during 1920s and 1930s? 2/What are some examples of the relationship between music and identity in American popular music? I am looking forward to reading your statements

WWE6

Imagine the group you have been designing has had the opportunity to meet for at least two sessions. Over the two group sessions, some topics have surfaced that are challenging for group members. Choose three of the topics from the following list that have surfaced in your group. o  

Week 6

Week 6 Introduction “Since you cannot do this very little thing, why do you worry about the rest? Consider how the wild flowers grow. They do not labor or spin. Yet I tell you, not even Solomon in all his splendor was dressed like one of these. If that is

Week 5

Week 6 Introduction “Since you cannot do this very little thing, why do you worry about the rest? Consider how the wild flowers grow. They do not labor or spin. Yet I tell you, not even Solomon in all his splendor was dressed like one of these. If that is

English HOMEWORK

Week Two: June 16-22 This week you will read a selection of literary works from the Tudor Age to the Age of Revolution. Students will study works of prose, poetry, drama, and fiction in relation to their historical and cultural contexts. Texts will be selected from among a diverse group

English Homework

Interview a Fictional Character Completing this assignment will fulfil the requirements for the Dallas College Critical Thinking Core Competency Assignment. The Critical Thinking Core Objective allows students to develop a wide variety of skills: · Analyze issues · Complex/creative problem solving: anticipate problems, solutions and consequences · Knowledge application: apply

English homework

As with all discussion boards, your initial response should be at least 300 words. Then reply to two (2) other posts. Your response should be of at least 100 words each.  Feel free to exceed these minimum requirements. Try to pick students who do not have any comments yet. When commenting, please add

English homework

1) To that end, please begin your post with the following statements: ”I have not used AI to write any part of this post for me. I would not do that, because I am not a dishonest person.” I will deduct 10 points if these statements are missing from your

Week4

Week 4 Overview We will be studying “the most significant psychologist of the twentieth century:” The person-centered therapy of Carl Rogers. The foundational principles he developed expound on the creation of a strong healing relationship with a client. These principles have become germane to most of the therapies we will

English Homework

26 April 2024 Form 1009W, Special Assessing Writing Analytical Essay Version 2.1 1 SHARP THE NCO LEADERSHIP CENTER of EXCELLENCE Senior Leader Course NCO Common Core Competencies Form 1009W, Special, Assessing Writing STUDENT’S NAME: ASSIGNMENT TITLE: Analytical essay DATE: FACILITATOR’S NAME: RATING: Unsatisfactory 0% Did Not Meet Standard 69% Met

HelP

Lets Talk Research Essay Assignment Overview The major project in this class is your persuasive research essay. Your research essay must be a 10-12 page (approximately 2500-3000 word) essay that takes a clearly definable stance regarding an issue, supports it with credible research, and defends it effectively in an appropriate

gcu wee

1.1 Discuss how your understanding of group dynamics, communication patterns, and developmental stages can inform your decision-making process when selecting and adapting group exercises. Based on your Christian worldview, how might this knowledge enhance your ability to meet the unique needs of your group? Include at least one scholarly source

grop

As the counseling group you have been designing grows and you are considering how to generate new members, you also need to consider how new members will be selected. When determining which new members to add, it is suggested you follow a screening process to ensure they are a good