<?xml version="1.0" encoding="UTF-8"?>
<mods xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://www.loc.gov/mods/v3" version="3.1" xsi:schemaLocation="http://www.loc.gov/mods/v3 http://www.loc.gov/standards/mods/v3/mods-3-1.xsd">
  <titleInfo>
    <title>Protecting patient information : a decision-maker's guide to risk, prevention, and damage control</title>
  </titleInfo>
  <name type="personal">
    <namePart>Cerrato, Paul</namePart>
    <role>
      <roleTerm authority="marcrelator" type="text">creator</roleTerm>
    </role>
    <role>
      <roleTerm type="text">author.</roleTerm>
    </role>
  </name>
  <name type="personal">
    <namePart>Andress, Jason</namePart>
    <role>
      <roleTerm type="text">editor.</roleTerm>
    </role>
  </name>
  <typeOfResource>text</typeOfResource>
  <genre authority="">Electronic books.</genre>
  <genre authority="">Electronic book.</genre>
  <originInfo>
    <place>
      <placeTerm type="code" authority="marccountry">ne</placeTerm>
    </place>
    <dateIssued encoding="marc">2016</dateIssued>
    <issuance>monographic</issuance>
  </originInfo>
  <language>
    <languageTerm authority="iso639-2b" type="code">eng</languageTerm>
  </language>
  <physicalDescription>
    <form authority="gmd">electronic resource</form>
    <extent>1 online resource</extent>
  </physicalDescription>
  <tableOfContents>Cover ; Title Page; Copyright Page; Disclaimer; Dedication; Contents; About the Author; Preface; Chapter 1 -- Dissecting a Book Title; Chapter 2 -- How Well Protected is Your Protected Health Information? Perception Versus Reality; The Cost of Insecurity is Steep; A Closer Look at Data Breach Fines; Do not ignore individual states in breach investigations; Fines are Only Part of the Problem; Factoring in the Meaningful Use Program; Calculating the Cost of Security; References; Chapter 3 -- Regulations Governing Protected Health Information; Defining the Crown Jewels.</tableOfContents>
  <tableOfContents>HIPAA Privacy Versus Security Rules: Related But DifferentTechnology is only part of the equation; Enforcing HIPAA Regulations; A closer look at the HIPAA Security Rule; The HIPAA Breach Notification Rule; The Role of the Federal Trade Commission; Do not forget State Laws; References; Chapter 4 -- Risk Analysis; Learning the jargon; Vulnerability; Threat Versus Risk; Compliance Versus Management; The ONC Approach to Risk Analysis and Security Management; Step 1; Step 2; Step 3; Step 4; Finding the Right Analysis Tools; Tapping the HHS Resources.</tableOfContents>
  <tableOfContents>Beware the "Required" Versus "Addressable" ConfusionMoving Beyond a Checklist of Security Questions; References; Chapter 5 -- Reducing the Risk of a Data Breach; Seeing the larger picture; The best mindset: guilty until proven innocent; Passwords, Policies, and Procedures; Establishing Effective Governance; Technological Solutions; Encryption; Firewalls; Antimalware/Antiviral Software; Access Control; Intrusion Detection and Intrusion Prevention Systems; Faxing Solutions; Auditing Your Computer Systems; Making Email More Secure; Establishing Physical Safeguards; Protecting Big Data.</tableOfContents>
  <tableOfContents>Testing Your Network SecurityCybersecurity Insurance; References; Chapter 6 -- Mobile Device Security; Thinking strategically; Covering the Basics; BYOD: Bring Your Own Disaster?; Mobile Device Management Software; The Virtues of Virtual Private Networks; Appreciating the Difference Between Http and Https; References; Chapter 7 -- Medical Device Security; How real is the threat?; Taking a closer look at the "pathology" behind medjacking; What is the FDA Doing?; Dealing with Existing Medical Device Vulnerabilities; How are medical device companies coping?; Firming up the Firmware.</tableOfContents>
  <tableOfContents>Are medical device manufacturers HIPAA accountable?Weighing Your Security Options; References; Chapter 8 -- Educating Medical and Administrative Staff; Culture before education; Seeing the Bigger Picture; Understanding the Psychology of Change; Managing the Training Process; What Should the Training Consist of?; References; Chapter 9 -- HIPAA, HITECH, and the Business Associate; Evaluating the Threat; Are you a Business Associate?; Formal Agreements are a Must; More Exceptions to the Rule; What Should a Business Associate Agreement Look Like?; References.</tableOfContents>
  <tableOfContents>Chapter 10 -- Preparing for and Coping With a Data Breach.</tableOfContents>
  <note type="statement of responsibility">Paul Cerrato ; Jason Andress, technical editor.</note>
  <note>Includes index.</note>
  <note>Includes bibliographical references and index.</note>
  <subject>
    <geographicCode authority="marcgac">e-uk---</geographicCode>
  </subject>
  <subject authority="lcsh">
    <topic>Medical records</topic>
    <topic>Access control</topic>
  </subject>
  <subject authority="lcsh">
    <topic>Data protection</topic>
    <geographic>Great Britain</geographic>
  </subject>
  <subject authority="lcsh">
    <topic>Confidential communications</topic>
    <topic>Physicians</topic>
  </subject>
  <subject authority="bisacsh">
    <topic>BUSINESS &amp; ECONOMICS</topic>
    <topic>General</topic>
  </subject>
  <subject authority="fast">
    <topic>Confidential communications</topic>
    <topic>Physicians</topic>
  </subject>
  <subject authority="fast">
    <topic>Data protection</topic>
  </subject>
  <subject authority="fast">
    <topic>Medical records</topic>
    <topic>Access control</topic>
  </subject>
  <subject authority="fast">
    <geographic>Great Britain</geographic>
  </subject>
  <subject authority="mesh">
    <topic>Electronic Health Records</topic>
  </subject>
  <subject authority="mesh">
    <topic>Computer Security</topic>
  </subject>
  <subject authority="mesh">
    <topic>Confidentiality</topic>
  </subject>
  <subject authority="mesh">
    <topic>Decision Making</topic>
  </subject>
  <subject authority="mesh">
    <topic>Risk</topic>
  </subject>
  <subject authority="mesh">
    <topic>Health Information Management</topic>
    <topic>standards</topic>
  </subject>
  <classification authority="lcc">RA976</classification>
  <classification authority="ddc" edition="23">651.504261</classification>
  <classification authority="nlm">2016 F-929</classification>
  <classification authority="nlm">WX 175</classification>
  <identifier type="isbn">9780128044117</identifier>
  <identifier type="isbn">012804411X</identifier>
  <identifier type="isbn" invalid="yes"/>
  <identifier type="isbn" invalid="yes"/>
  <identifier type="uri">http://www.sciencedirect.com/science/book/9780128043929</identifier>
  <location>
    <url displayLabel="ScienceDirect">http://www.sciencedirect.com/science/book/9780128043929</url>
  </location>
  <recordInfo>
    <recordContentSource authority="marcorg">N$T</recordContentSource>
    <recordCreationDate encoding="marc">160420</recordCreationDate>
    <recordChangeDate encoding="iso8601">20190328114814.0</recordChangeDate>
    <recordIdentifier source="OCoLC">ocn946997515</recordIdentifier>
    <languageOfCataloging>
      <languageTerm authority="iso639-2b" type="code">eng</languageTerm>
    </languageOfCataloging>
  </recordInfo>
</mods>
