Sec. 10.25.07.05. Standards for Certification  


Latest version.
  • A. In order to obtain certification, an applicant shall:

    (1) Provide evidence that the applicant is accredited or certified by a qualified accreditation or certification organization; and

    (2) Meet the following standards for certification:

    (a) Demonstrate compliance with the HIPAA privacy standards set forth in 45 C.F.R. §§160 and 164;

    (b) Demonstrate compliance with HIPAA security standards set forth in 45 C.F.R. §§160, 162, and 164;

    (c) Provide evidence of ability to measure technical performance and manage future capacity demands;

    (d) Provide evidence of initial and ongoing employee training in HIPAA privacy and security requirements and customer communication procedures; and

    (e) Provide additional information requested by the Commission as necessary to determine the applicant's compliance with the standards for certification.

    B. The Commission shall issue certification to an applicant that has met all the requirements of §§A and B of this regulation.