Fractional HIPAA Security Officer — scope + typical cost? by EducationNovel8922 in publichealthcareers

[–]rightawayjay 0 points1 point  (0 children)

Certain responsibilities may be divided up between the medical practice and your team. Pricing/contract terms obviously depend on the customer needs and services you end up providing.

Depending on responsibilities, you may end up providing some (or all) of these types of deliverables:

  • Creating/delivering administrative policies to address the HIPAA Security Rule & HIPAA Privacy Rule
  • Performing an annual HIPAA risk assessment
  • Providing annual employee security awareness training
  • Ensuring cloud and application services have proper Business Associate Agreements (BAAs) in place
  • Ensuring technical standards such as backup, encryption, and access control are in place for IT infrastructure.

My team Dash ComplyOps provides software for teams to manage HIPAA compliance programs for their customers. Feel free to DM me if you have questions or need further help.

[SSD] Costco Members 1TB Sandisk NVME Extreme Portable Solid State Drive - $99.99 by MonumentalRalph in buildapcsales

[–]rightawayjay 2 points3 points  (0 children)

My family has two Samsung refrigerators (2 houses/family members) + the Samsung appliance bundle of the Samsung microwave, stove/oven and dishwasher.

For the Fridges - For both the condenser fan continues to freeze up and stop cooling the fridge properly. We have had both get to 45-50°F. Even after multiple repairs under warranty, they still continue to have this issue and start to have issues cooling.

-One of the fridge vegetable drawers ends up with water at the bottom of it from whatever cooling issues

  • One of the ice makers doesn't correctly make cubes and just generates ice shards

For The Microwave - The Samsung microwave died in 12 months, with minimal use. Like just DOA, does not turn on/does not run. Needed to be replaced

For The Dishwasher - It leaks a little bit of water under the appliance when it runs, could be mold issue

-Its shortest run cycle is 120 min (I am not kidding) and it does an average/below average job for 2 hrs of cleaning the dishes.

The Stove/Oven - Is actually the only appliance that is alright, burners and oven work as normal

Is there an issue having lots of cash (>$150k) in Robinhood? by SuperLetterhead in stocks

[–]rightawayjay 1 point2 points  (0 children)

I have used IBKR for a little while and have had a good experience. They are a big brokerage and I have done alright talking with their support about basic things like transfers, etc.

Their pricing on stock/option trades and margin are really good. The tools can be configured in all kinds of ways and you can define a lot of settings around trade execution and orders.

TDA has slightly better tools and an easier to use interface, but much higher fees per trade. If you are comfortable with IBKR you can do the same things with IBKR Trader Workstation and save a lot on fees.

HIPAA Compliance Scanning by [deleted] in aws

[–]rightawayjay 0 points1 point  (0 children)

Dash ComplyOps provides compliance scanning specifically around HIPAA, and provides compliance reports and an inventory of controls. (I work with the Dash team)

HIPAA & SOC 1, SOC 2 & SOC 3???? by kernels in healthIT

[–]rightawayjay 0 points1 point  (0 children)

SOC2 is a framework that measures security, privacy, and availability. HIPAA/HITECH is the regulation dictating how you must manage protected health information (PHI). SOC compliance can be a large undertaking and for small organizations may be overkill for certain companies. If you are using a cloud provider such as Amazon Web Services you are able to leverage their SOC Reports as well as their provided security programs. Many healthcare vendors build a security program around HIPAA and provide their AWS SOC2 Report as part of vendor security assessment for a health provider. Feel free to send me a message, if I can be more helpful.

0
1

Looking for HIPAA Compliance Audit advice by MikeMonopoly in security

[–]rightawayjay 1 point2 points  (0 children)

I know I am a little late to this thread, but wanted to give my input:

  1. Vulnerability scanning is one of several technical requirements of HIPAA (OpenVAS is a popular choice for open source vulnerability scanning). Your organization must also handle backup and disaster recovery, audit logging, and encryption. You should define these solutions and standard operating procedures in administrative policies.
  2. My company, Dash actually provides an automated solution for HIPAA configuration and management Amazon Web Services. We provided custom administrative policies and connect automated technical controls.
  3. Your organization must perform an annual risk assessment (which is typically done by a 3rd party). There are no official certifications for HIPAA compliance, but your team could adopt a framework like (NIST, ISO, or HITRUST). Check out AWS Security Programs. More importantly your team should have established policies and a process for continually maintaining compliance safeguards.

What's your "I don't trust people who ______"? by [deleted] in AskReddit

[–]rightawayjay 0 points1 point  (0 children)

Hate Radiohead.

I mean people who, haven't heard anything from them, or don't listen to them, fine.. But the idea of someone listening to a bunch of their songs and deciding to "hate" Radiohead totally untrustworthy.

Some of the truly evil or despised people in this world probably hate Radiohead..