Security is a major cause of concern in today”s techno savvy global corporate environment. With organizations and healthcare facilities going towards a paperless environment, most of the information transfer and storage is in digital formats. Organizations, healthcare institutions and hospitals are faced with security challenges of their records and personnel. The need to protect the privacy of employees or patients involves a critical issue of the access to the electronic information.
Through a forward looking approach with view to address the current problems of IT compliance and security requirements of the healthcare industry and corporate sectors, various regulatory controls were put in place. This includes healthcare compliance in the form of Health Information Technology for Economic and Clinical Health (HITECH) Act, signed as a part of the American Recovery and Reinvestment Act of 2009. The Act, besides adding requirements for security breaches, has also laid down security standards for maintaining electronic health records. This Act also expands the privacy provisions beyond the Health Insurance Portability and Accountability (HIPAA) Act.